VendorsLinuxlinux_kernel6.16
Vulnerabilities

Linux Kernel 6.16

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

310CVEs
CVE-2025-38535
phy: tegra: xusb: Fix unbalanced regulator disable in UTMI PHY mode
Published 2025-08-16 · Analyzed
7.8EPSS 0.002
CVE-2025-38666
net: appletalk: Fix use-after-free in AARP proxy probe
Published 2025-08-22 · Analyzed
7.8EPSS 0.002
CVE-2025-38662
ASoC: mediatek: mt8365-dai-i2s: pass correct size to mt8365_dai_set_priv
Published 2025-08-22 · Modified
7.8EPSS 0.002
CVE-2025-38548
hwmon: (corsair-cpro) Validate the size of the received input buffer
Published 2025-08-16 · Analyzed
7.8EPSS 0.002
CVE-2025-38449
drm/gem: Acquire references on GEM handles for framebuffers
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38455
KVM: SVM: Reject SEV{-ES} intra host migration if vCPU creation is in-flight
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38463
tcp: Correct signedness in skb remaining space calculation
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38447
mm/rmap: fix potential out-of-bounds page table access during batched unmap
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38303
Bluetooth: eir: Fix possible crashes on eir_create_adv_data
Published 2025-07-10 · Modified
7.8EPSS 0.002
CVE-2025-38372
RDMA/mlx5: Fix unsafe xarray access in implicit ODP handling
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38453
io_uring/msg_ring: ensure io_kiocb freeing is deferred for RCU
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38478
comedi: Fix initialization of data for instructions that write to subdevice
Published 2025-07-28 · Modified
7.8EPSS 0.002
CVE-2025-38349
eventpoll: don't decrement ep refcount while still holding the ep mutex
Published 2025-07-18 · Modified
7.8EPSS 0.002
CVE-2025-38087
net/sched: fix use-after-free in taprio_dev_notifier
Published 2025-06-30 · Modified
7.8EPSS 0.002
CVE-2025-38341
eth: fbnic: avoid double free when failing to DMA-map FW msg
Published 2025-07-10 · Modified
7.8EPSS 0.002
CVE-2025-38443
nbd: fix uaf in nbd_genl_connect() error path
Published 2025-07-25 · Analyzed
7.8EPSS 0.002
CVE-2025-38670
arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack()
Published 2025-08-22 · Modified
7.8EPSS 0.002
CVE-2025-38620
zloop: fix KASAN use-after-free of tag set
Published 2025-08-22 · Analyzed
7.8EPSS 0.002
CVE-2025-38550
ipv6: mcast: Delay put pmc->idev in mld_del_delrec()
Published 2025-08-16 · Modified
7.8EPSS 0.002
CVE-2025-38187
drm/nouveau: fix a use-after-free in r535_gsp_rpc_push()
Published 2025-07-04 · Modified
7.8EPSS 0.002
CVE-2025-38421
platform/x86/amd: pmf: Use device managed allocations
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38357
fuse: fix runtime warning on truncate_folio_batch_exceptionals()
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38594
iommu/vt-d: Fix UAF on sva unbind with pending IOPFs
Published 2025-08-19 · Modified
7.8EPSS 0.002
CVE-2025-38596
drm/panthor: Fix UAF in panthor_gem_create_with_handle() debugfs code
Published 2025-08-19 · Modified
7.8EPSS 0.002
CVE-2025-38257
s390/pkey: Prevent overflow in size calculation for memdup_user()
Published 2025-07-09 · Modified
7.8EPSS 0.002
CVE-2025-38532
net: libwx: properly reset Rx ring descriptor
Published 2025-08-16 · Modified
7.8EPSS 0.002
CVE-2025-38500
xfrm: interface: fix use-after-free after changing collect_md xfrm interface
Published 2025-08-12 · Analyzed
7.8EPSS 0.002
CVE-2025-38239
scsi: megaraid_sas: Fix invalid node index
Published 2025-07-09 · Modified
7.8EPSS 0.002
CVE-2025-38083
net_sched: prio: fix a race in prio_tune()
Published 2025-06-20 · Modified
7.8EPSS 0.002
CVE-2025-38250
Bluetooth: hci_core: Fix use-after-free in vhci_flush()
Published 2025-07-09 · Modified
7.8EPSS 0.002
CVE-2025-38366
LoongArch: KVM: Check validity of "num_cpu" from user space
Published 2025-07-25 · Modified
7.8EPSS 0.001
CVE-2025-38378
HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe
Published 2025-07-25 · Analyzed
7.8EPSS 0.001
CVE-2025-38394
HID: appletb-kbd: fix memory corruption of input_handler_list
Published 2025-07-25 · Analyzed
7.8EPSS 0.001
CVE-2025-38108
net_sched: red: fix a race in __red_change()
Published 2025-07-03 · Modified
7.8EPSS 0.001
CVE-2025-38435
riscv: vector: Fix context save/restore with xtheadvector
Published 2025-07-25 · Modified
7.8EPSS 0.001
CVE-2025-38667
iio: fix potential out-of-bound write
Published 2025-08-22 · Modified
7.8EPSS 0.001
CVE-2025-38475
smc: Fix various oops due to inet_sock type confusion.
Published 2025-07-28 · Modified
7.8EPSS 0.001
CVE-2025-38484
iio: backend: fix out-of-bound write
Published 2025-07-28 · Modified
7.8EPSS 0.001
CVE-2025-38598
drm/amdgpu: fix use-after-free in amdgpu_userq_suspend+0x51a/0x5a0
Published 2025-08-19 · Modified
7.8EPSS 0.001
CVE-2025-38536
net: airoha: fix potential use-after-free in airoha_npu_get()
Published 2025-08-16 · Modified
7.8EPSS 0.001
← Prev3 / 8Next →