Aggregator
CVE-2025-21788 | Linux Kernel up to 6.12.15/6.13.3/6.14-rc2 am65_cpsw_build_skb allocation of resources
CVE-2025-21785 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 cacheinfo out-of-bounds write
CVE-2025-21784 | Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2 psp_init_cap_microcode Privilege Escalation
CVE-2025-21783 | Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2 gpiochip_get_ngpios null pointer dereference
CVE-2025-21782 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3 orangefs_debug_write out-of-bounds
CVE-2025-21780 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 smu_sys_set_pp_table buffer overflow
CVE-2025-21777 | Linux Kernel up to 6.12.15/6.13.3/6.14-rc2 ring-buffer nr_subbufs buffer overflow
CVE-2025-21775 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 ctucan_err_interrupt allocation of resources
CVE-2025-21774 | Linux Kernel up to 6.12.15/6.13.3/6.14-rc2 rkcanfd_handle_rx_fifo_overflow_int null pointer dereference
CVE-2025-21773 | Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2 etas_es58x null pointer dereference
CVE-2025-21772 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 put_dev_sector out-of-bounds
CVE-2025-21770 | Linux Kernel up to 6.12.15/6.13.3/6.14-rc2 iopf_queue_remove_device memory leak
CVE-2025-21731 | Linux Kernel up to 6.1.128/6.6.75/6.12.12/6.13.1 nbd_genl_disconnect use after free
CVE-2024-57974 | Linux Kernel up to 6.12.12/6.13.1 ICMP Message iteration
CVE-2025-21765 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 ip6_default_advmss information disclosure
CVE-2025-21766 | Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2 __ip_rt_update_pmtu information disclosure
Cisco Nexus Vulnerability Allows Attackers to Inject Malicious Commands
Cisco Systems has issued a critical security advisory for a newly disclosed command injection vulnerability affecting its Nexus 3000 and 9000 Series Switches operating in standalone NX-OS mode. Tracked as CVE-2025-20161 (CVSSv3 score: 5.1), the flaw enables authenticated attackers with administrative privileges to execute arbitrary operating system commands with root-level permissions during software upgrade procedures. The vulnerability, […]
The post Cisco Nexus Vulnerability Allows Attackers to Inject Malicious Commands appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
2025 CrowdStrike Global Threat Report: Cybercriminals Are Shifting Tactics – Are You Ready?
CrowdStrike (Nasdaq: CRWD) today announced the findings of the 2025 CrowdStrike Global Threat Report, revealing a dramatic shift in cyber adversary tactics, with attackers leveraging stolen identity credentials, AI-generated social engineering, and hands-on keyboard intrusions to bypass traditional security measures.
The post 2025 CrowdStrike Global Threat Report: Cybercriminals Are Shifting Tactics – Are You Ready? appeared first on Security Boulevard.