Month: February 2026
CVE-2025-22010 RDMA/hns: Fix soft lockup during bt pages loop
Information published. Continue reading CVE-2025-22010 RDMA/hns: Fix soft lockup during bt pages loop
CVE-2024-47742 firmware_loader: Block path traversal
Information published. Continue reading CVE-2024-47742 firmware_loader: Block path traversal
CVE-2023-52284 Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) before 1.3.0 can have an “double free or corruption” error for a valid WebAssembly module because push_pop_frame_ref_offset is mishandled.
CVE-2021-33195 Go before 1.15.13 and 1.16.x before 1.16.5 has functions for DNS lookups that do not validate replies from DNS servers and thus a return value may contain an unsafe injection (e.g. XSS) that does not conform to the RFC1035 format.
CVE-2024-38540 bnxt_re: avoid shift undefined behavior in bnxt_qplib_alloc_init_hwq
CVE-2025-38078 ALSA: pcm: Fix race of buffer access at PCM OSS layer
Information published. Continue reading CVE-2025-38078 ALSA: pcm: Fix race of buffer access at PCM OSS layer
