CVE Database

53059+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-28131
4.6 MEDIUM

A Broken Access Control vulnerability in Nagios Network Analyzer 2024R1.0.3 allows low-privilege users with "Read-Only" access to perform administrative actions, including stopping system services and …

Apr 1, 2025
CVE-2025-25041
5.5 MEDIUM

A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow malicious users to overwrite arbitrary files as NT AUTHORITY\SYSTEM (root). A …

Apr 1, 2025
CVE-2025-21986
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: switchdev: Convert blocking notification chain to a raw one A blocking notification chain uses …

Apr 1, 2025
CVE-2025-21984
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm: fix kernel BUG when userfaultfd_move encounters swapcache userfaultfd_move() checks whether the PTE entry is …

Apr 1, 2025
CVE-2025-21982
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: pinctrl: nuvoton: npcm8xx: Add NULL check in npcm8xx_gpio_fw devm_kasprintf() calls can return null pointers on …

Apr 1, 2025
CVE-2025-21981
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ice: fix memory leak in aRFS after reset Fix aRFS (accelerated Receive Flow Steering) structures …

Apr 1, 2025
CVE-2025-21980
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: sched: address a potential NULL pointer dereference in the GRED scheduler. If kzalloc in gred_init …

Apr 1, 2025
CVE-2025-21978
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/hyperv: Fix address space leak when Hyper-V DRM device is removed When a Hyper-V DRM …

Apr 1, 2025
CVE-2025-21977
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: fbdev: hyperv_fb: Fix hang in kdump kernel when on Hyper-V Gen 2 VMs Gen 2 …

Apr 1, 2025
CVE-2025-21976
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: fbdev: hyperv_fb: Allow graceful removal of framebuffer When a Hyper-V framebuffer device is unbind, hyperv_fb …

Apr 1, 2025
CVE-2025-21975
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: handle errors in mlx5_chains_create_table() In mlx5_chains_create_table(), the return value of mlx5_get_fdb_sub_ns() and mlx5_get_flow_namespace() must …

Apr 1, 2025
CVE-2025-21974
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: return fail if interface is down in bnxt_queue_mem_alloc() The bnxt_queue_mem_alloc() is called to …

Apr 1, 2025
CVE-2025-21972
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: mctp: unshare packets when reassembling Ensure that the frag_list used for reassembly isn't shared …

Apr 1, 2025
CVE-2025-21971
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net_sched: Prevent creation of classes with TC_H_ROOT The function qdisc_tree_reduce_backlog() uses TC_H_ROOT as a termination …

Apr 1, 2025
CVE-2025-21970
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Bridge, fix the crash caused by LAG state check When removing LAG device from …

Apr 1, 2025
CVE-2025-21965
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Validate prev_cpu in scx_bpf_select_cpu_dfl() If a BPF scheduler provides an invalid CPU (outside the …

Apr 1, 2025
CVE-2025-21964
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix integer overflow while processing acregmax mount option User-provided mount parameter acregmax of type …

Apr 1, 2025
CVE-2025-21963
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix integer overflow while processing acdirmax mount option User-provided mount parameter acdirmax of type …

Apr 1, 2025
CVE-2025-21962
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix integer overflow while processing closetimeo mount option User-provided mount parameter closetimeo of type …

Apr 1, 2025
CVE-2025-21961
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: fix truesize for mb-xdp-pass case When mb-xdp is set and return is XDP_PASS, …

Apr 1, 2025
CVE-2025-21960
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: do not update checksum in bnxt_xdp_build_skb() The bnxt_rx_pkt() updates ip_summed value at the …

Apr 1, 2025
CVE-2025-21959
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() Since commit b36e4523d4d5 ("netfilter: nf_conncount: fix garbage …

Apr 1, 2025
CVE-2025-21958
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Revert "openvswitch: switch to per-action label counting in conntrack" Currently, ovs_ct_set_labels() is only called for …

Apr 1, 2025
CVE-2025-21957
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: qla1280: Fix kernel oops when debug level > 2 A null dereference or oops …

Apr 1, 2025
CVE-2025-21956
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Assign normalized_pix_clk when color depth = 14 [WHY & HOW] A warning message "WARNING: …

Apr 1, 2025
CVE-2025-21955
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent connection release during oplock break notification ksmbd_work could be freed when after connection …

Apr 1, 2025
CVE-2025-21954
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netmem: prevent TX of unreadable skbs Currently on stable trees we have support for netmem/devmem …

Apr 1, 2025
CVE-2025-21953
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: mana: cleanup mana struct after debugfs_remove() When on a MANA VM hibernation is triggered, …

Apr 1, 2025
CVE-2025-21952
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: HID: corsair-void: Update power supply values with a unified work handler corsair_void_process_receiver can be called …

Apr 1, 2025
CVE-2025-21951
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: pci_generic: Use pci_try_reset_function() to avoid deadlock There are multiple places from where …

Apr 1, 2025
CVE-2025-21949
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Set hugetlb mmap base address aligned with pmd size With ltp test case "testcases/bin/hugefork02", …

Apr 1, 2025
CVE-2025-21948
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: HID: appleir: Fix potential NULL dereference at raw event handle Syzkaller reports a NULL pointer …

Apr 1, 2025
CVE-2025-21944
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix bug on trap in smb2_lock If lock count is greater than 1, flags …

Apr 1, 2025
CVE-2025-21943
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: gpio: aggregator: protect driver attr handlers against module unload Both new_device_store and delete_device_store touch module …

Apr 1, 2025
CVE-2025-21942
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix extent range end unlock in cow_file_range() Running generic/751 on the for-next branch …

Apr 1, 2025
CVE-2025-21941
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix null check for pipe_ctx->plane_state in resource_build_scaling_params Null pointer dereference issue could occur when …

Apr 1, 2025
CVE-2025-21940
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix NULL Pointer Dereference in KFD queue Through KFD IOCTL Fuzzing we encountered a …

Apr 1, 2025
CVE-2025-21939
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/xe/hmm: Don't dereference struct page pointers without notifier lock The pnfs that we obtain from …

Apr 1, 2025
CVE-2025-21938
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_append_new_local_addr If multiple connection requests attempt to create an …

Apr 1, 2025
CVE-2025-21937
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Add check for mgmt_alloc_skb() in mgmt_remote_name() Add check for the return value of mgmt_alloc_skb() …

Apr 1, 2025
CVE-2025-21936
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Add check for mgmt_alloc_skb() in mgmt_device_connected() Add check for the return value of mgmt_alloc_skb() …

Apr 1, 2025
CVE-2025-21935
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: rapidio: add check for rio_add_net() in rio_scan_alloc_net() The return value of rio_add_net() should be checked. …

Apr 1, 2025
CVE-2025-21933
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: arm: pgtable: fix NULL pointer dereference issue When update_mmu_cache_range() is called by update_mmu_cache(), the vmf …

Apr 1, 2025
CVE-2025-21932
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm: abort vma_modify() on merge out of memory failure The remainder of vma_modify() relies upon …

Apr 1, 2025
CVE-2025-21931
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: hwpoison, memory_hotplug: lock folio before unmap hwpoisoned folio Commit b15c87263a69 ("hwpoison, memory_hotplug: allow hwpoisoned pages …

Apr 1, 2025
CVE-2025-21930
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: don't try to talk to a dead firmware This fixes: bad state …

Apr 1, 2025
CVE-2025-21926
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: gso: fix ownership in __udp_gso_segment In __udp_gso_segment the skb destructor is removed before segmenting …

Apr 1, 2025
CVE-2025-21925
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: llc: do not use skb_get() before dev_queue_xmit() syzbot is able to crash hosts [1], using …

Apr 1, 2025
CVE-2025-21924
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error …

Apr 1, 2025
CVE-2025-21922
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ppp: Fix KMSAN uninit-value warning with bpf Syzbot caught an "KMSAN: uninit-value" warning [1], which …

Apr 1, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.