A vulnerability classified as problematic has been found in Linux Kernel up to 5.10.234/6.6.82/6.12.17/6.13.5. Affected is the function early_memmap of the file mm/early_ioremap.c. The manipulation leads to excessive iteration.
This vulnerability is traded as CVE-2025-21872. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.79/6.12.16/6.13.4/6.14-rc3. It has been classified as problematic. Affected is an unknown function of the component io_uring. The manipulation leads to privilege escalation.
This vulnerability is traded as CVE-2025-21863. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.79/6.12.16/6.13.4/6.14-rc3 and classified as critical. This issue affects the function bpf_local_storage_map_free. The manipulation leads to deadlock.
The identification of this vulnerability is CVE-2024-58088. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.16/6.13.4/6.14-rc3. It has been rated as critical. Affected by this issue is the function arena_map_free. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2025-21851. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.16/6.13.4. Affected by this issue is the function copy_to_kernel_nofault of the component Kernel Memory Handler. The manipulation leads to stack-based buffer overflow.
This vulnerability is handled as CVE-2025-21869. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2 and classified as critical. This vulnerability affects unknown code of the component etas_es58x. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2025-21773. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2. Affected by this vulnerability is the function io_buffer_list of the component io_uring. The manipulation leads to allocation of resources.
This vulnerability is known as CVE-2025-21836. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2 and classified as critical. Affected by this issue is some unknown functionality of the component sn-f-ospi. The manipulation leads to divide by zero.
This vulnerability is handled as CVE-2025-21793. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.79/6.12.16/6.13.4/6.14-rc3. This affects the function vsock_proto::psock_update_sk_prot. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2025-21854. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A 19-year-old college student from Worcester, Massachusetts, has agreed to plead guilty to a massive cyberattack on PowerSchool that extorted millions of dollars in exchange for not leaking the personal data of millions of students and teachers. [...]
A vulnerability, which was classified as critical, was found in Microsoft Edge and ChakraCore. Affected is an unknown function of the component Chakra Scripting Engine. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2019-1024. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Edge and ChakraCore. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Scripting Engine. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2019-1023. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Microsoft Windows. This affects an unknown part. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2019-1025. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical was found in Microsoft Windows up to Server 2019. This vulnerability affects unknown code of the component Audio Service. The manipulation leads to improper access controls.
This vulnerability was named CVE-2019-1026. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, has been found in Microsoft Windows up to Server 2019. This issue affects some unknown processing of the component Audio Service. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2019-1027. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, was found in Microsoft Windows. Affected is an unknown function of the component Audio Service. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2019-1028. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability has been found in Microsoft Lync Server 2010/2013 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2019-1029. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft SharePoint Server 2010 SP2/2013 SP1/2016/2019 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2019-1031. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.