VYPR

rpm package

suse/kernel-syms-rt&distro=SUSE Real Time Module 15 SP6

pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP6

Vulnerabilities (3,740)

  • CVE-2025-21802MedFeb 27, 2025
    affected < 6.4.0-150600.10.29.1fixed 6.4.0-150600.10.29.1

    In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix oops when unload drivers paralleling When unload hclge driver, it tries to disable sriov first for each ae_dev node from hnae3_ae_dev_list. If user unloads hns3 driver at the time, because it rem

  • CVE-2025-21799MedFeb 27, 2025
    affected < 6.4.0-150600.10.29.1fixed 6.4.0-150600.10.29.1

    In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: fix freeing IRQ in am65_cpsw_nuss_remove_tx_chns() When getting the IRQ we use k3_udma_glue_tx_get_irq() which returns negative error value on error. So not NULL check is not suffi

  • CVE-2024-58034HigFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: memory: tegra20-emc: fix an OF node reference bug in tegra_emc_find_node_by_ram_code() As of_find_node_by_name() release the reference of the argument device node, tegra_emc_find_node_by_ram_code() releases som

  • CVE-2025-21796CriFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: clear acl_access/acl_default after releasing them If getting acl_default fails, acl_access and acl_default will be released simultaneously. However, acl_access will still retain a pointer pointing to the

  • CVE-2025-21795HigFeb 27, 2025
    affected < 6.4.0-150600.10.29.1fixed 6.4.0-150600.10.29.1

    In the Linux kernel, the following vulnerability has been resolved: NFSD: fix hang in nfsd4_shutdown_callback If nfs4_client is in courtesy state then there is no point to send the callback. This causes nfsd4_shutdown_callback to hang since cl_cb_inflight is not 0. This hang la

  • CVE-2025-21794HigFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: HID: hid-thrustmaster: fix stack-out-of-bounds read in usb_check_int_endpoints() Syzbot[1] has detected a stack-out-of-bounds read of the ep_addr array from hid-thrustmaster driver. This array is passed to usb_

  • CVE-2025-21793MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: spi: sn-f-ospi: Fix division by zero When there is no dummy cycle in the spi-nor commands, both dummy bus cycle bytes and width are zero. Because of the cpu's warning when divided by zero, the warning should be

  • CVE-2025-21792HigFeb 27, 2025
    affected < 6.4.0-150600.10.39.1fixed 6.4.0-150600.10.39.1

    In the Linux kernel, the following vulnerability has been resolved: ax25: Fix refcount leak caused by setting SO_BINDTODEVICE sockopt If an AX25 device is bound to a socket by setting the SO_BINDTODEVICE socket option, a refcount leak will occur in ax25_release(). Commit 9fd75

  • CVE-2025-21791HigFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: vrf: use RCU protection in l3mdev_l3_out() l3mdev_l3_out() can be called without RCU being held: raw_sendmsg() ip_push_pending_frames() ip_send_skb() ip_local_out() __ip_local_out() l3mdev_ip_ou

  • CVE-2025-21790MedFeb 27, 2025
    affected < 6.4.0-150600.10.29.1fixed 6.4.0-150600.10.29.1

    In the Linux kernel, the following vulnerability has been resolved: vxlan: check vxlan_vnigroup_init() return value vxlan_init() must check vxlan_vnigroup_init() success otherwise a crash happens later, spotted by syzbot. Oops: general protection fault, probably for non-canoni

  • CVE-2025-21787MedFeb 27, 2025
    affected < 6.4.0-150600.10.39.1fixed 6.4.0-150600.10.39.1

    In the Linux kernel, the following vulnerability has been resolved: team: better TEAM_OPTION_TYPE_STRING validation syzbot reported following splat [1] Make sure user-provided data contains one nul byte. [1] BUG: KMSAN: uninit-value in string_nocheck lib/vsprintf.c:633 [inli

  • CVE-2025-21785HigFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: arm64: cacheinfo: Avoid out-of-bounds write to cacheinfo array The loop that detects/populates cache information already has a bounds check on the array size but does not account for cache levels with separate

  • CVE-2025-21784MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: bail out when failed to load fw in psp_init_cap_microcode() In function psp_init_cap_microcode(), it should bail out when failed to load firmware, otherwise it may cause invalid memory access.

  • CVE-2025-21782HigFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: orangefs: fix a oob in orangefs_debug_write I got a syzbot report: slab-out-of-bounds Read in orangefs_debug_write... several people suggested fixes, I tested Al Viro's suggestion and made this patch.

  • CVE-2025-21781MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix panic during interface removal Reference counting is used to ensure that batadv_hardif_neigh_node and batadv_hard_iface are not freed before/during batadv_v_elp_throughput_metric_update work is

  • CVE-2025-21780HigFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user provides a small pptable through sysfs and then a bigger pptable, it may cause buffer overflow attack in function smu_sys_set

  • CVE-2025-21779MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Reject Hyper-V's SEND_IPI hypercalls if local APIC isn't in-kernel Advertise support for Hyper-V's SEND_IPI and SEND_IPI_EX hypercalls if and only if the local API is emulated/virtualized by KVM, and

  • CVE-2025-21776MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: USB: hub: Ignore non-compliant devices with too many configs or interfaces Robert Morris created a test program which can cause usb_hub_to_struct_hub() to dereference a NULL or inappropriate pointer: Oops: gen

  • CVE-2025-21775MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: can: ctucanfd: handle skb allocation failure If skb allocation fails, the pointer to struct can_frame is NULL. This is actually handled everywhere inside ctucan_err_interrupt() except for the only place. Add t

  • CVE-2025-21773MedFeb 27, 2025
    affected < 6.4.0-150600.10.34.1fixed 6.4.0-150600.10.34.1

    In the Linux kernel, the following vulnerability has been resolved: can: etas_es58x: fix potential NULL pointer dereference on udev->serial The driver assumed that es58x_dev->udev->serial could never be NULL. While this is true on commercially available devices, an attacker cou

Page 69 of 187