Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MS:CVE-2025-40027

net/9p: fix double req put in p9_fd_cancelled_MS:CVE-2025-40027

{“lastseen”:”2025-10-29T22:57:27″,”description”:””,”published”:”2025-10-29T01:04:...

N/A N/A MSCVE
NONE MS:CVE-2025-40065

RISC-V: KVM: Write hgatp register with valid mode bits_MS:CVE-2025-40065

{“lastseen”:”2025-10-29T22:57:27″,”description”:””,”published”:”2025-10-29T01:04:...

N/A N/A MSCVE
NONE MS:CVE-2025-40075

tcp_metrics: use dst_dev_net_rcu()_MS:CVE-2025-40075

{“lastseen”:”2025-10-29T22:57:27″,”description”:””,”published”:”2025-10-29T01:04:...

N/A N/A MSCVE
NONE MS:CVE-2025-40057

ptp: Add a upper bound on max_vclocks_MS:CVE-2025-40057

{“lastseen”:”2025-10-29T22:57:26″,”description”:””,”published”:”2025-10-29T01:04:...

N/A N/A MSCVE
NONE MS:CVE-2025-40068

fs: ntfs3: Fix integer overflow in run_unpack()_MS:CVE-2025-40068

{“lastseen”:”2025-10-29T22:57:26″,”description”:””,”published”:”2025-10-29T01:04:...

N/A N/A MSCVE
NONE MS:CVE-2025-40079

riscv, bpf: Sign extend struct ops return values properly_MS:CVE-2025-40079

{“lastseen”:”2025-10-29T22:57:26″,”description”:””,”published”:”2025-10-29T01:05:...

N/A N/A MSCVE
NONE MS:CVE-2025-40071

tty: n_gsm: Don’t block input queue by waiting MSC_MS:CVE-2025-40071

{“lastseen”:”2025-10-29T22:57:26″,”description”:””,”published”:”2025-10-29T01:05:...

N/A N/A MSCVE
NONE MS:CVE-2025-59501

Microsoft Configuration Manager Elevation of Privilege Vulnerability_MS:CVE-2025-59501

Authentication bypass by spoofing in Microsoft Configuration Manager allows an authorized attacker to perform spoofing over an adjacent network.

N/A N/A MSCVE
MEDIUM 4.9 MS:CVE-2025-53042

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H)._MS:CVE-2025-53042

{“lastseen”:”2025-10-24T06:55:32″,”description”:””,”published”:”2025-10-23T01:05:...

N/A N/A MSCVE
MEDIUM 4.9 MS:CVE-2025-53044

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.43, 8.4.0-8.4.6 and 9.0.0-9.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H)._MS:CVE-2025-53044

{“lastseen”:”2025-10-24T06:55:32″,”description”:””,”published”:”2025-10-23T01:06:...

N/A N/A MSCVE