Patch Day month
August 2025 vulnerabilities
A server-rendered hunting trail for August 2025: 286 returned patch records across 1 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.
286all patches
21critical
0exploitation detected
0in CISA KEV
134tracked here
Microsoft 286
Page 1 of 2 · records 1–200 of 286
Microsoft Security Response Center
CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-38675 ↗2026-05-25azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-band—xfrm: state: initialize state_ptrs earlier in xfrm_state_find
CVE-2025-55159 ↗2026-01-21azl3 rust 1.90.0-1 on Azure Linux 3.0ModerateOut-of-band—slab allows out-of-bounds access in `get_disjoint_mut` due to incorrect bounds check
CVE-2024-58240 ↗2026-01-11cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-band—tls: separate no-async decryption request handling from async
CVE-2025-38569 ↗2026-01-10cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—benet: fix BUG when creating VFs
CVE-2025-58160 ↗2025-12-31azl3 kata-containers 3.19.1.kata2-2 on Azure Linux 3.0LowOut-of-band—Tracing logging user input may result in poisoning logs with ANSI escape sequences
CVE-2025-38656 ↗2025-11-28azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-band—wifi: iwlwifi: Fix error code in iwl_op_mode_dvm_start()
CVE-2025-38597 ↗2025-11-28azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-band—drm/rockchip: vop2: fail cleanly if missing a primary plane for a video-port
CVE-2025-38595 ↗2025-11-28azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-band—xen: fix UAF in dmabuf_exp_from_pages()
CVE-2025-38582 ↗2025-11-28azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-band—RDMA/hns: Fix double destruction of rsv_qp
CVE-2025-38507 ↗2025-11-21azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-band—HID: nintendo: avoid bluetooth suspend/resume stalls
CVE-2022-50233 ↗2025-11-21cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—Bluetooth: eir: Fix using strlen with hdev->{dev_name,short_name}
CVE-2024-13978 ↗2025-09-13azl3 libtiff 4.6.0-8 on Azure Linux 3.0LowOut-of-band—LibTIFF fax2ps tiff2pdf.c t2p_read_tiff_init null pointer dereference
CVE-2025-38565 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—perf/core: Exit early on perf_mmap() fail
CVE-2025-38560 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—x86/sev: Evict cache lines during SNP memory validation
CVE-2025-38614 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—eventpoll: Fix semi-unbounded recursion
CVE-2025-38583 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—clk: xilinx: vcu: unregister pll_post only if registered correctly
CVE-2025-38572 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—ipv6: reject malicious packets in ipv6_gso_segment()
CVE-2025-38615 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0CriticalOut-of-band—fs/ntfs3: cancle set bad inode after removing name fails
CVE-2025-38578 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix to avoid UAF in f2fs_sync_inode_meta()
CVE-2025-38584 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—padata: Fix pd UAF once and for all
CVE-2025-38576 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—powerpc/eeh: Make EEH driver device hotplug safe
CVE-2025-38593 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—Bluetooth: hci_sync: fix double free in 'hci_discovery_filter_clear()'
CVE-2025-38561 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0CriticalOut-of-band—ksmbd: fix Preauh_HashValue race condition
CVE-2025-38601 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—wifi: ath11k: clear initialized flag for deinit-ed srng lists
CVE-2025-38568 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—net/sched: mqprio: fix stack out-of-bounds write in tc entry parsing
CVE-2025-38581 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—crypto: ccp - Fix crash when rebind ccp device for ccp.ko
CVE-2025-38612 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—staging: fbtft: fix potential memory leak in fbtft_framebuffer_alloc()
CVE-2025-38563 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-band—perf/core: Prevent VMA split of buffer mappings
CVE-2025-38556 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—HID: core: Harden s32ton() against conversion to 0 bits
CVE-2025-54349 ↗2025-09-04azl3 iperf3 3.17.1-3 on Azure Linux 3.0ModerateOut-of-band—In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow.
CVE-2025-38611 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0N/AOut-of-band—vmci: Prevent the dispatching of uninitialized payloads
CVE-2025-54350 ↗2025-09-04azl3 iperf3 3.17.1-3 on Azure Linux 3.0LowOut-of-band—In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertion failure and application exit upon a malformed authentication attempt.
CVE-2025-38566 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—sunrpc: fix handling of server side tls alerts
CVE-2025-38605 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—wifi: ath12k: Pass ab pointer directly to ath12k_dp_tx_get_encap_type()
CVE-2025-38555 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—usb: gadget : fix use-after-free in composite_dev_cleanup()
CVE-2025-38574 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—pptp: ensure minimal skb length in pptp_xmit()
CVE-2025-38577 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—f2fs: fix to avoid panic in f2fs_evict_inode
CVE-2025-38609 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—PM / devfreq: Check governor before using governor->name
CVE-2025-38571 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—sunrpc: fix client side handling of tls alerts
CVE-2025-38585 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int()
CVE-2025-38608 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—bpf, ktls: Fix data corruption when using bpf_msg_pop_data() in ktls
CVE-2025-38562 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—ksmbd: fix null pointer dereference error in generate_encryptionkey
CVE-2025-38610 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—powercap: dtpm_cpu: Fix NULL pointer dereference in get_pd_power_uw()
CVE-2025-38590 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net/mlx5e: Remove skb secpath if xfrm state is not found
CVE-2025-38604 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—wifi: rtl818x: Kill URBs before clearing tx status queue
CVE-2025-38579 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—f2fs: fix KMSAN uninit-value in extent_info usage
CVE-2025-38602 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—iwlwifi: Add missing check for alloc_ordered_workqueue
CVE-2025-38591 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—bpf: Reject narrower access to pointer ctx fields
CVE-2025-38553 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net/sched: Restrict conditions for adding duplicating netems to qdisc tree
CVE-2025-54409 ↗2025-09-04azl3 aide 0.18.6-2 on Azure Linux 3.0ModerateOut-of-band—AIDE null pointer dereference when reading incorrectly encoded xattr attributes from database (local DoS)
CVE-2025-8961 ↗2025-09-04azl3 libtiff 4.6.0-7 on Azure Linux 3.0LowOut-of-band—LibTIFF tiffcrop tiffcrop.c main memory corruption
CVE-2025-38520 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/amdkfd: Don't call mmput from MMU notifier callback
CVE-2025-38501 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—ksmbd: limit repeated connections from clients with the same IP
CVE-2025-38533 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—net: libwx: fix the using of Rx buffer DMA
CVE-2025-38528 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—bpf: Reject %p% format string in bprintf-like helpers
CVE-2025-38537 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net: phy: Don't register LEDs for genphy
CVE-2025-38516 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—pinctrl: qcom: msm: mark certain pins as invalid for interrupts
CVE-2025-38527 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—smb: client: fix use-after-free in cifs_oplock_break
CVE-2025-38512 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—wifi: prevent A-MSDU attacks in mesh networks
CVE-2025-38529 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—comedi: aio_iiro_16: Fix bit shift out of bounds
CVE-2025-38515 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—drm/sched: Increment job count before swapping tail spsc queue
CVE-2025-38530 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-band—comedi: pcl812: Fix bit shift out of bounds
CVE-2025-38514 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—rxrpc: Fix oops due to non-existence of prealloc backlog struct
CVE-2025-38543 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—drm/tegra: nvdec: Fix dma_alloc_coherent error check
CVE-2025-38544 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—rxrpc: Fix bug due to prealloc collision
CVE-2025-38513 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—wifi: zd1211rw: Fix potential NULL pointer dereference in zd_mac_tx_to_dev()
CVE-2025-38524 ↗2025-09-04cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—rxrpc: Fix recv-recv race of completed call
CVE-2025-38539 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—tracing: Add down_write(trace_event_sem) when adding trace event
CVE-2025-38538 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—dmaengine: nbpfaxi: Fix memory corruption in probe()
CVE-2025-38510 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—kasan: remove kasan_find_vm_area() to prevent possible deadlock
CVE-2025-38677 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—f2fs: fix to avoid out-of-boundary access in dnode page
CVE-2025-38531 ↗2025-09-04azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-band—iio: common: st_sensors: Fix use of uninitialize device structs
CVE-2025-38502 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—bpf: Fix oob access in cgroup local storage
CVE-2025-38542 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net: appletalk: Fix device refcount leak in atrtr_create()
CVE-2025-38503 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—btrfs: fix assertion when building free space tree
CVE-2025-38548 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-band—hwmon: (corsair-cpro) Validate the size of the received input buffer
CVE-2025-38526 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—ice: add NULL check in eswitch lag check
CVE-2025-38546 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—atm: clip: Fix memory leak of struct clip_vcc.
CVE-2025-38540 ↗2025-09-04azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—HID: quirks: Add quirk for 2 Chicony Electronics HP 5MP Cameras
CVE-2025-38532 ↗2025-09-04azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-band—net: libwx: properly reset Rx ring descriptor
CVE-2025-38550 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—ipv6: mcast: Delay put pmc->idev in mld_del_delrec()
CVE-2025-38535 ↗2025-09-04cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—phy: tegra: xusb: Fix unbalanced regulator disable in UTMI PHY mode
CVE-2025-38552 ↗2025-09-04azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—mptcp: plug races between subflow fail and subflow creation
CVE-2025-55199 ↗2025-09-04cbl2 helm 3.14.2-7 on CBL Mariner 2.0ModerateOut-of-band—Helm Charts with Specific JSON Schema Values Can Cause Memory Exhaustion
CVE-2025-55198 ↗2025-09-04cbl2 helm 3.14.2-7 on CBL Mariner 2.0ModerateOut-of-band—Helm May Panic Due To Incorrect YAML Content
CVE-2025-58058 ↗2025-09-04cbl2 containerized-data-importer 1.55.0-23 on CBL Mariner 2.0ModerateOut-of-band—github.com/ulikunitz/xz leaks memory when decoding a corrupted multiple LZMA archives
CVE-2025-53859 ↗2025-09-04cbl2 nginx 1.22.1-13 on CBL Mariner 2.0ModerateOut-of-band—NGINX ngx_mail_smtp_module vulnerability
CVE-2025-8715 ↗2025-09-04cbl2 postgresql 14.18-1 on CBL Mariner 2.0ImportantOut-of-band—PostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target server
CVE-2025-8714 ↗2025-09-04azl3 postgresql 16.9-1 on Azure Linux 3.0ImportantOut-of-band—PostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql client
CVE-2025-8713 ↗2025-09-03azl3 postgresql 16.9-1 on Azure Linux 3.0LowOut-of-band—PostgreSQL optimizer statistics can expose sampled data within a view, partition, or child table
CVE-2025-54389 ↗2025-09-03cbl2 aide 0.16-16 on CBL Mariner 2.0ModerateOut-of-band—AIDE improper output neutralization vulnerability
CVE-2025-38676 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—iommu/amd: Avoid stack buffer overflow from kernel cmdline
CVE-2025-8846 ↗2025-09-03azl3 nasm 2.16.01-2 on Azure Linux 3.0ModerateOut-of-band—NASM Netwide Assember parser.c parse_line stack-based overflow
CVE-2025-9390 ↗2025-09-03azl3 vim 9.1.1552-1 on Azure Linux 3.0ModerateOut-of-band—vim xxd xxd.c main buffer overflow
CVE-2025-9403 ↗2025-09-03cbl2 jq 1.6-4 on CBL Mariner 2.0ModerateOut-of-band—jqlang jq JSON jq_test.c run_jq_tests assertion
CVE-2025-8845 ↗2025-09-03azl3 nasm 2.16.01-1 on Azure Linux 3.0ModerateOut-of-band—NASM Netwide Assember nasm.c assemble_file stack-based overflow
CVE-2025-52194 ↗2025-09-03cbl2 libsndfile 1.0.31-3 on CBL Mariner 2.0ImportantOut-of-band—A buffer overflow vulnerability exists in libsndfile version 1.2.2 and potentially earlier versions when processing malformed IRCAM audio files. The vulnerability occurs in the ircam_read_header function at src/ircam.c:164 during sample rate processing, leading to memory corruption and potential code execution.
CVE-2025-38666 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—net: appletalk: Fix use-after-free in AARP proxy probe
CVE-2025-8851 ↗2025-09-03azl3 libtiff 4.6.0-7 on Azure Linux 3.0ModerateOut-of-band—LibTIFF tiffcrop tiffcrop.c readSeparateStripsetoBuffer stack-based overflow
CVE-2025-38616 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—tls: handle data disappearing from under the TLS ULP
CVE-2025-38645 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net/mlx5: Check device memory pointer before usage
CVE-2025-38670 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack()
CVE-2025-38500 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—xfrm: interface: fix use-after-free after changing collect_md xfrm interface
CVE-2025-38643 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—wifi: cfg80211: Add missing lock in cfg80211_check_and_end_cac()
CVE-2025-8844 ↗2025-09-03cbl2 tensorflow 2.11.1-2 on CBL Mariner 2.0ModerateOut-of-band—NASM Netwide Assember preproc.c parse_smacro_template null pointer dereference
CVE-2025-38646 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—wifi: rtw89: avoid NULL dereference when RX problematic packet on unsupported 6 GHz band
CVE-2025-38634 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—power: supply: cpcap-charger: Fix null check for power_supply_get_by_name
CVE-2025-38640 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—bpf: Disable migration in nf_hook_run_bpf().
CVE-2025-8843 ↗2025-09-03cbl2 nasm 2.16-1 on CBL Mariner 2.0ModerateOut-of-band—NASM Netwide Assember outmacho.c macho_no_dead_strip heap-based overflow
CVE-2025-38624 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—PCI: pnv_php: Clean up allocated IRQs on unplug
CVE-2025-38635 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—clk: davinci: Add NULL check in davinci_lpsc_clk_register()
CVE-2025-8842 ↗2025-09-03cbl2 nasm 2.16-1 on CBL Mariner 2.0ModerateOut-of-band—NASM Netwide Assember preproc.c do_directive use after free
CVE-2025-38664 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—ice: Fix a null pointer dereference in ice_copy_and_init_pkg()
CVE-2025-38625 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—vfio/pds: Fix missing detach_ioas op
CVE-2025-38623 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—PCI: pnv_php: Fix surprise plug detection and recovery
CVE-2025-8732 ↗2025-09-03azl3 libxml2 2.11.5-6 on Azure Linux 3.0LowOut-of-band—libxml2 xmlcatalog xmlParseSGMLCatalog recursion
CVE-2025-38663 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—nilfs2: reject invalid file types when reading inodes
CVE-2025-38648 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—spi: stm32: Check for cfg availability in stm32_spi_probe
CVE-2025-38499 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns
CVE-2025-38650 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—hfsplus: remove mutex_lock check in hfsplus_free_extents
CVE-2025-8747 ↗2025-09-03azl3 keras 3.3.3-2 on Azure Linux 3.0ImportantOut-of-band—Keras safe_mode bypass allows arbitrary code execution when loading a malicious model.
CVE-2025-38639 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—netfilter: xt_nfacct: don't assume acct name is null-terminated
CVE-2025-8837 ↗2025-09-03azl3 jasper 4.2.1-2 on Azure Linux 3.0ModerateOut-of-band—JasPer JPEG2000 File jpc_dec.c jpc_dec_dump use after free
CVE-2025-38626 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix to trigger foreground gc during f2fs_map_blocks() in lfs mode
CVE-2025-38636 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—rv: Use strings in da monitors tracepoints
CVE-2025-8836 ↗2025-09-03azl3 jasper 4.2.1-2 on Azure Linux 3.0ModerateOut-of-band—JasPer JPEG2000 Encoder jpc_enc.c jpc_floorlog2 assertion
CVE-2025-38617 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—net/packet: fix a race in packet_set_ring() and packet_notifier()
CVE-2025-38630 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—fbdev: imxfb: Check fb_add_videomode to prevent null-ptr-deref
CVE-2025-8835 ↗2025-09-03azl3 jasper 4.2.1-3 on Azure Linux 3.0LowOut-of-band—JasPer Image Color Space Conversion jas_image.c jas_image_chclrspc null pointer dereference
CVE-2025-38627 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-band—f2fs: compress: fix UAF of f2fs_inode_info in f2fs_free_dic
CVE-2025-50422 ↗2025-09-03azl3 cairo 1.18.0-1 on Azure Linux 3.0LowOut-of-band—Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cairo-ft-font.c.
CVE-2025-38622 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—net: drop UFO packets in udp_rcv_segment()
CVE-2025-38652 ↗2025-09-03azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-band—f2fs: fix to avoid out-of-boundary access in devs.path
CVE-2025-8734 ↗2025-09-03azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-band—GNU Bison scan-code.c code_free double free
CVE-2025-38618 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—vsock: Do not allow binding to VMADDR_PORT_ANY
CVE-2025-8733 ↗2025-09-03azl3 bison 3.8.2-1 on Azure Linux 3.0ModerateOut-of-band—GNU Bison obprintf.c __obstack_vprintf_internal assertion
CVE-2025-38671 ↗2025-09-03cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—i2c: qup: jump out of the loop in case of timeout
CVE-2025-47907 ↗2025-09-03azl3 golang 1.24.5-1 on Azure Linux 3.0ImportantOut-of-band—Incorrect results returned from Rows.Scan in database/sql
CVE-2025-38665 ↗2025-09-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-band—can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode
CVE-2025-38660 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—[ceph] parse_longname(): strrchr() expects NUL-terminated string
CVE-2025-38644 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—wifi: mac80211: reject TDLS operations when station is not associated
CVE-2025-38659 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—gfs2: No more self recovery
CVE-2025-3770 ↗2025-09-03azl3 edk2 20240524git3e722403cd16-9 on Azure Linux 3.0ImportantOut-of-band—SMM IDT Privilege Escalation Vulnerability
CVE-2025-38653 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-band—proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al
CVE-2025-38668 ↗2025-09-03azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-band—regulator: core: fix NULL dereference on unbind due to stale coupling data
CVE-2025-9288 ↗2025-09-03cbl2 reaper 3.1.1-19 on CBL Mariner 2.0ImportantOut-of-band—Missing type checks leading to hash rewind and passing on crafted data
CVE-2025-9301 ↗2025-09-03cbl2 cmake 3.21.4-18 on CBL Mariner 2.0LowOut-of-band—cmake cmForEachCommand.cxx ReplayItems assertion
CVE-2025-4877 ↗2025-09-03cbl2 libssh 0.10.6-2 on CBL Mariner 2.0ModerateOut-of-band—Libssh: write beyond bounds in binary to base64 conversion functions
CVE-2025-8534 ↗2025-09-03cbl2 libtiff 4.6.0-8 on CBL Mariner 2.0LowOut-of-band—libtiff tiff2ps tiff2ps.c PS_Lvl2page null pointer dereference
CVE-2025-9165 ↗2025-09-03azl3 libtiff 4.6.0-7 on Azure Linux 3.0ModerateOut-of-band—LibTIFF tiffcmp tiffcmp.c InitCCITTFax3 memory leak
CVE-2025-54351 ↗2025-09-03cbl2 iperf3 3.18-1 on CBL Mariner 2.0ImportantOut-of-band—In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv).
CVE-2025-9478 ↗2025-08-28Microsoft Edge (Chromium-based)N/AOut-of-band3%Chromium: CVE-2025-9478 Use after free in ANGLE
CVE-2025-9132 ↗2025-08-21Microsoft Edge (Chromium-based)N/AOut-of-band3%Chromium: CVE-2025-9132 Out of bounds write in V8
CVE-2025-53763 ↗2025-08-21Microsoft Purview Data GovernanceCriticalOut-of-band1%Azure Databricks Elevation of Privilege Vulnerability
CVE-2025-53795 ↗2025-08-21Microsoft PC ManagerCriticalOut-of-band1%Microsoft PC Manager Elevation of Privilege Vulnerability
CVE-2025-55229 ↗2025-08-21Windows 10 Version 1809 for 32-bit SystemsImportantOut-of-band0%KB5058379KB5058383Windows Certificate Spoofing Vulnerability
CVE-2025-55230 ↗2025-08-21Windows 10 Version 1809 for 32-bit SystemsImportantOut-of-band0%KB5062552KB5062553Windows MBT Transport Driver Elevation of Privilege Vulnerability
and 12 more
KB5062554KB5062557KB5062560KB5062561KB5062570KB5062572KB5062592KB5062597KB5062618KB5062619KB5062624KB5062632CVE-2025-55231 ↗2025-08-21Windows Server 2019ImportantOut-of-band0%KB5062553KB5062557Windows Storage-based Management Service Remote Code Execution Vulnerability
CVE-2025-8882 ↗2025-08-15Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2025-8882 Use after free in Aura
CVE-2025-8881 ↗2025-08-15Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2025-8881 Inappropriate implementation in File Picker
CVE-2025-8880 ↗2025-08-15Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2025-8880 Race in V8
CVE-2025-8901 ↗2025-08-15Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2025-8901 Out of bounds write in ANGLE
CVE-2025-8879 ↗2025-08-15Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2025-8879 Heap buffer overflow in libaom
CVE-2025-24999 ↗2025-08-12Microsoft SQL Server 2017 for x64-based Systems (GDR)Important2%KB5063756KB5063757Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-25005 ↗2025-08-12Microsoft Exchange Server 2019 Cumulative Update 14Important1%KB5063221KB5063222Microsoft Exchange Server Tampering Vulnerability
CVE-2025-25006 ↗2025-08-12Microsoft Exchange Server 2019 Cumulative Update 15Important1%KB5063221KB5063222Microsoft Exchange Server Spoofing Vulnerability
CVE-2025-25007 ↗2025-08-12Microsoft Exchange Server Subscription Edition RTMImportant1%KB5063221KB5063222Microsoft Exchange Server Spoofing Vulnerability
CVE-2025-33051 ↗2025-08-12Microsoft Exchange Server 2019 Cumulative Update 14Important1%KB5063221KB5063222Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2025-47954 ↗2025-08-12Microsoft SQL Server 2022 for x64-based Systems (GDR)Important1%KB5063756KB5063814Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-48807 ↗2025-08-12Windows 10 Version 1809 for x64-based SystemsCritical0%KB5065306KB5065425Windows Hyper-V Remote Code Execution Vulnerability
CVE-2025-49707 ↗2025-08-12DCasv5-series Azure VMCritical0%Azure Virtual Machines Spoofing Vulnerability
CVE-2025-49712 ↗2025-08-12Microsoft SharePoint Enterprise Server 2016Important18%KB5002769KB5002771Microsoft SharePoint Remote Code Execution Vulnerability
CVE-2025-49736 ↗2025-08-12Microsoft Edge for AndroidModerate0%Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2025-49743 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant0%More likelyKB5063709KB5063812Windows Graphics Component Elevation of Privilege Vulnerability
and 14 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-49745 ↗2025-08-12Microsoft Dynamics 365 (on-premises) version 9.1Important1%KB5059086Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2025-49751 ↗2025-08-12Windows 10 Version 1809 for x64-based SystemsImportant0%KB5063709KB5063812Windows Hyper-V Denial of Service Vulnerability
CVE-2025-49755 ↗2025-08-12Microsoft Edge for AndroidLow0%Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2025-49757 ↗2025-08-12Windows Server 2019Important1%KB5062553KB5062557Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-49758 ↗2025-08-12Microsoft SQL Server 2017 for x64-based Systems (GDR)Important1%KB5063756KB5063757Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49759 ↗2025-08-12Microsoft SQL Server 2017 for x64-based Systems (GDR)Important1%KB5063756KB5063757Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49761 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5063709KB5063812Windows Kernel Elevation of Privilege Vulnerability
and 12 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063927KB5063947KB5063950KB5064010CVE-2025-49762 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5063709KB5063812Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
and 14 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50153 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5063709KB5063812Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2025-50154 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant26%KB5063709KB5063812Microsoft Windows File Explorer Spoofing Vulnerability
and 14 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50155 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5063709KB5063812Windows Push Notifications Apps Elevation of Privilege Vulnerability
and 10 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010CVE-2025-50156 ↗2025-08-12Windows Server 2019Important1%KB5063812KB5063871Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
and 11 more
KB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50157 ↗2025-08-12Windows Server 2019Important1%KB5063812KB5063871Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
and 11 more
KB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50158 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5063709KB5063812Windows NTFS Information Disclosure Vulnerability
and 14 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50159 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5063709KB5063812Remote Access Point-to-Point Protocol (PPP) EAP-TLS Elevation of Privilege Vulnerability
and 10 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010CVE-2025-50160 ↗2025-08-12Windows Server 2019Important1%KB5063812KB5063871Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
and 11 more
KB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50161 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5063709KB5063812Win32k Elevation of Privilege Vulnerability
and 14 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50162 ↗2025-08-12Windows Server 2019Important1%KB5063812KB5063871Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
and 11 more
KB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50163 ↗2025-08-12Windows Server 2019Important1%KB5063812KB5063871Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
and 11 more
KB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50164 ↗2025-08-12Windows Server 2019Important1%KB5063812KB5063871Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
and 11 more
KB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50165 ↗2025-08-12Windows Server 2025 (Server Core installation)Critical10%KB5063878KB5064010Windows Graphics Component Remote Code Execution Vulnerability
CVE-2025-50166 ↗2025-08-12Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5063709KB5063812Windows Distributed Transaction Coordinator (MSDTC) Information Disclosure Vulnerability
and 14 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010CVE-2025-50167 ↗2025-08-12Windows 10 Version 1809 for x64-based SystemsImportant0%More likelyKB5063709KB5063812Windows Hyper-V Elevation of Privilege Vulnerability
and 10 more
KB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010CVE-2025-50168 ↗2025-08-12Windows 11 Version 22H2 for ARM64-based SystemsImportant1%More likelyKB5063875KB5063878Win32k Elevation of Privilege Vulnerability
CVE-2025-50169 ↗2025-08-12Windows Server 2025 (Server Core installation)Important1%KB5063878KB5064010Windows SMB Remote Code Execution Vulnerability
The next page could not be added in place. The ordinary page link remains available; try it again to navigate normally.