Month: February 2026
CVE-2024-8096 OCSP stapling bypass with GnuTLS
Information published. Continue reading CVE-2024-8096 OCSP stapling bypass with GnuTLS
CVE-2025-38208 smb: client: add NULL check in automount_fullpath
Information published. Continue reading CVE-2025-38208 smb: client: add NULL check in automount_fullpath
CVE-2025-40914 Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow
CVE-2022-27649 A flaw was found in Podman where containers were started incorrectly with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers were started incorrectly with non-empty inheritable Linux process capabilities. This flaw allows an attacker with access to programs with inheritable file capabilities to elevate those capabilities to the permitted set when execve(2) runs.
CVE-2024-6603 In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
CVE-2025-39711 media: ivsc: Fix crash at shutdown due to missing mei_cldev_disable() calls
CVE-2024-39479 drm/i915/hwmon: Get rid of devm
Information published. Continue reading CVE-2024-39479 drm/i915/hwmon: Get rid of devm
