Month: February 2026
CVE-2025-38190 atm: Revert atm_account_tx() if copy_from_iter_full() fails.
Information published. Continue reading CVE-2025-38190 atm: Revert atm_account_tx() if copy_from_iter_full() fails.
CVE-2024-2756 __Host-/__Secure- cookie bypass due to partial CVE-2022-31629 fix
CVE-2024-42230 powerpc/pseries: Fix scv instruction crash with kexec
Information published. Continue reading CVE-2024-42230 powerpc/pseries: Fix scv instruction crash with kexec
CVE-2023-45287 Before Go 1.20, the RSA based key exchange methods in crypto/tls may exhibit a timing side channel
CVE-2025-22064 netfilter: nf_tables: don’t unregister hook when table is dormant
CVE-2022-46392 An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. An adversary with access to precise enough information about memory accesses (typically an untrusted operating system attacking a secure enclave) can recover an RSA private key after observing the victim performing a single private-key operation if the window size (MBEDTLS_MPI_WINDOW_SIZE) used for the exponentiation is 3 or smaller.
CVE-2024-11187 Many records in the additional section cause CPU exhaustion
Information published. Continue reading CVE-2024-11187 Many records in the additional section cause CPU exhaustion
