A vulnerability classified as critical was found in GNU grub2. Affected by this vulnerability is an unknown functionality of the component squash4. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2025-0678. Attacking locally is a requirement. There is no exploit available.
A vulnerability has been found in Linux Kernel up to 6.1.128/6.6.77/6.12.13/6.13.2/6.14-rc1 and classified as critical. Affected by this vulnerability is the function events_unbound of the component btrfs. The manipulation leads to use after free.
This vulnerability is known as CVE-2025-21753. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was suspected in Linux Kernel up to 6.14-rc1. This issue appears to be a false-positive. Please verify the sources mentioned and consider not using this entry at all.
A vulnerability was found in Linux Kernel up to 6.12.13/6.13.2. It has been classified as critical. Affected is the function qcom_scm_get_tzmem_pool. The manipulation leads to improper initialization.
This vulnerability is traded as CVE-2024-58084. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in SixLabors ImageSharp up to 2.1.9/3.1.6 and classified as critical. Affected by this vulnerability is an unknown functionality of the component GIF Decoder. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2025-27598. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in devitemsllc HT Mega Plugin up to 2.8.2 on WordPress. It has been classified as problematic. This affects an unknown part of the component Countdown Widget. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-1261. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.6.78/6.12.15/6.13.3. Affected by this vulnerability is the function bind in the library lib/refcount.c. The manipulation leads to use after free.
This vulnerability is known as CVE-2025-21756. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 and classified as problematic. This issue affects the function ndisc_send_skb. The manipulation leads to information disclosure.
The identification of this vulnerability is CVE-2025-21760. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 and classified as critical. This vulnerability affects the function ovs_vport_cmd_fill_info of the component openvswitch. The manipulation leads to use after free.
This vulnerability was named CVE-2025-21761. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in GNU grub2. It has been rated as critical. Affected by this issue is the function strcpy of the file fs/hfs.c of the component hfs. The manipulation leads to out-of-bounds write.
This vulnerability is handled as CVE-2024-45782. The attack needs to be approached locally. There is no exploit available.