A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. Affected by this issue is the function ksmbd_session_rpc_open. The manipulation leads to use after free.
This vulnerability is handled as CVE-2025-37926. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in IBM Security ReaQta EDR 3.12. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper certificate validation.
This vulnerability is known as CVE-2024-45641. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Linux Kernel up to 6.1.137/6.6.89/6.12.27/6.14.5/6.15-rc4. Affected is the function vxlan_core of the file drivers/net/vxlan/vxlan_core.c. The manipulation leads to privilege escalation.
This vulnerability is traded as CVE-2025-37921. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.89/6.12.27/6.14.5/6.15-rc4. It has been rated as problematic. This issue affects the function mtk_poll_rx. The manipulation leads to privilege escalation.
The identification of this vulnerability is CVE-2025-37935. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. It has been declared as problematic. This vulnerability affects the function graph_util_parse_link_direction of the file /sound/soc/fsl/imx-card.c of the component ASoC. The manipulation leads to uninitialized pointer.
This vulnerability was named CVE-2025-37934. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. It has been classified as critical. This affects the function bit_start. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2025-37931. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.15-rc4 and classified as problematic. Affected by this issue is the function nouveau_fence_context_kill. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2025-37930. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.15-rc4 and classified as critical. Affected by this vulnerability is the function parse_ivrs_acpihid. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2025-37927. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.14.5/6.15-rc4. Affected is the function module_memory_alloc. The manipulation leads to allocation of resources.
This vulnerability is traded as CVE-2025-37898. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. This issue affects the function shutdown_mem_profiling. The manipulation leads to allocation of resources.
The identification of this vulnerability is CVE-2025-37908. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.14.5/6.15-rc3. This vulnerability affects the function ublk_cancel_cmd. The manipulation leads to denial of service.
This vulnerability was named CVE-2025-37906. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. This affects the function acp_i2s_set_tdm_slot of the component ASoC. The manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2025-37919. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.89/6.12.27/6.14.5/6.15-rc4. It has been rated as critical. Affected by this issue is the function skb_dequeue of the component Bluetooth. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2025-37918. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel. It has been declared as critical. Affected by this vulnerability is the function memcpy of the component bnxt_en. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2025-37911. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.15-rc4. It has been classified as critical. Affected is an unknown function of the component net. The manipulation leads to memory leak.
This vulnerability is traded as CVE-2025-37909. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4 and classified as critical. This issue affects the function smb2_sess_setup of the component ksmbd. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2025-37899. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.6.89/6.12.27/6.14.5/6.15-rc4 and classified as critical. This vulnerability affects unknown code of the component pds_core. The manipulation leads to use after free.
This vulnerability was named CVE-2025-37916. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.12.27/6.14.5/6.15-rc4. This affects the function bnxt_init_chip of the file kernel/workqueue.c. The manipulation leads to improper initialization.
This vulnerability is uniquely identified as CVE-2025-37895. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
Acquisition Enhances Privileged Session Visibility, Session Replay, Granular Access JumpCloud’s acquisition of VaultOne enhances its ability to offer secure, auditable privileged access management. With session recording, credential isolation and future integration into JumpCloud’s compliance ecosystem, the move reflects a broader identity and access strategy.