A vulnerability classified as critical has been found in Linux Kernel up to 6.12.39/6.15.7. Affected by this vulnerability is the function efivarfs_fs_info. The manipulation leads to improper initialization.
This vulnerability is referenced as CVE-2025-38549. The attack needs to be initiated within the local network. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Linux Kernel up to 6.1.146/6.6.99/6.12.39/6.15.7. Affected by this issue is the function mld_del_delrec of the component ipv6. The manipulation results in privilege escalation.
This vulnerability is identified as CVE-2025-38550. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.39/6.15.7. Impacted is the function rtnl_lock of the component virtio-net. Performing manipulation results in deadlock.
This vulnerability is identified as CVE-2025-38551. The attack can only be performed from the local network. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability described as problematic has been identified in Linux Kernel up to 6.12.39/6.15.7. Affected is an unknown function of the component axp20x_adc. Executing manipulation can lead to privilege escalation.
The identification of this vulnerability is CVE-2025-38547. The attack needs to be done within the local network. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability has been found in Linux Kernel up to 6.1.146/6.6.99/6.12.39/6.15.7 and classified as critical. This issue affects the function send_usb_cmd of the component hwmon. Performing manipulation results in buffer overflow.
This vulnerability is cataloged as CVE-2025-38548. The attack must originate from the local network. There is no exploit available.
The affected component should be upgraded.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.15.6. This impacts the function vcc_destroy_socket of the component atm. Such manipulation leads to memory leak.
This vulnerability is traded as CVE-2025-38546. Access to the local network is required for this attack to succeed. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.6.98/6.12.38/6.15.6. This impacts the function recvmsg of the component rxrpc. Performing manipulation results in allocation of resources.
This vulnerability was named CVE-2025-38544. The attack needs to be approached within the local network. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.38/6.15.6. It has been rated as problematic. This affects the function netdev_alloc_ip_align. This manipulation causes allocation of resources.
This vulnerability appears as CVE-2025-38545. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.145/6.6.98/6.12.38/6.15.6. This affects the function dma_alloc_coherent of the component tegra. This manipulation causes null pointer dereference.
This vulnerability is tracked as CVE-2025-38543. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.38/6.15.6. It has been declared as critical. The impacted element is the function mt7925_thermal_init of the component wifi. The manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2025-38541. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.15.6. This affects the function atrtr_create of the component appletalk. Such manipulation leads to improper update of reference count.
This vulnerability is uniquely identified as CVE-2025-38542. The attack can only be initiated within the local network. No exploit exists.
The affected component should be upgraded.
A vulnerability has been found in Mozilla Firefox up to 109 on Windows and classified as problematic. This affects an unknown function of the component Printing Handler. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2023-25738. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability was found in Mozilla Thunderbird up to 102.7. It has been classified as critical. This impacts an unknown function of the component SetupStrokeGeometry. Performing manipulation results in Remote Code Execution.
This vulnerability was named CVE-2023-25737. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in Mozilla Firefox up to 109. It has been rated as critical. Affected by this issue is some unknown functionality of the component URL File Handler. Performing manipulation results in Remote Code Execution.
This vulnerability is identified as CVE-2023-25734. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, was found in Mozilla Firefox up to 109. The impacted element is the function SVGUtils::SetupStrokeGeometry. Executing manipulation can lead to Remote Code Execution.
This vulnerability is handled as CVE-2023-25737. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Mozilla Firefox up to 109. The affected element is an unknown function of the component SpiderMonkey. Performing manipulation results in use after free.
This vulnerability is known as CVE-2023-25735. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability was found in Mozilla Thunderbird up to 102.7 on Windows. It has been declared as critical. The impacted element is an unknown function of the component URL Handler. Such manipulation leads to Remote Code Execution.
This vulnerability is referenced as CVE-2023-25734. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability was found in Mozilla Thunderbird up to 102.7 and classified as critical. This affects an unknown function of the component SpiderMonkey. Such manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2023-25735. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.