Common Vulnerabilities and Exposures (CVE)

CVE-2025-13193

Jun 29, 2026 23:29:25 UTC

A flaw was found in libvirt. External inactive snapshots for shut-down VMs are incorrectly created as world-readable, making it possible for unprivileged users to inspect the guest OS contents. This results in an information disclosure vuln...

CVE-2025-12801

Jun 29, 2026 23:29:08 UTC

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the c...

CVE-2025-12748

Jun 29, 2026 23:29:05 UTC

A flaw was discovered in libvirt in the XML file processing. More specifically, the parsing of user provided XML files was performed before the ACL checks. A malicious user with limited permissions could exploit this flaw by submitting a sp...

CVE-2025-12464

Jun 29, 2026 23:29:04 UTC

A stack-based buffer overflow was found in the QEMU e1000 network device. The code for padding short frames was dropped from individual network devices and moved to the net core code. The issue stems from the device's receive code still bei...

CVE-2025-12105

Jun 29, 2026 23:28:57 UTC

A flaw was found in the asynchronous message queue handling of the libsoup library, widely used by GNOME and WebKit-based applications to manage HTTP/2 communications. When network operations are aborted at specific timing intervals, an int...

CVE-2025-11568

Jun 29, 2026 23:28:40 UTC

A data corruption vulnerability has been identified in the luksmeta utility when used with the LUKS1 disk encryption format. An attacker with the necessary permissions can exploit this flaw by writing a large amount of metadata to an encryp...

CVE-2025-11065

Jun 29, 2026 23:28:27 UTC

A flaw was found in github.com/go-viper/mapstructure/v2, in the field processing component using mapstructure.WeakDecode. This vulnerability allows information disclosure through detailed error messages that may leak sensitive input values ...

CVE-2025-10911

Jun 29, 2026 23:28:23 UTC

A use-after-free vulnerability was found in libxslt while parsing xsl nodes that may lead to the dereference of expired pointers and application crash.

CVE-2025-1125

Jun 29, 2026 23:27:23 UTC

When reading data from a hfs filesystem, grub's hfs filesystem module uses user-controlled parameters from the filesystem metadata to calculate the internal buffers size, however it misses to properly check for integer overflows. A maliciou...

CVE-2025-1118

Jun 29, 2026 23:27:20 UTC

A flaw was found in grub2. Grub's dump command is not blocked when grub is in lockdown mode, which allows the user to read any memory information, and an attacker may leverage this in order to extract signatures, salts, and other sensitive ...

CVE-2025-1057

Jun 29, 2026 23:25:05 UTC

A flaw was found in Keylime, a remote attestation solution, where strict type checking introduced in version 7.12.0 prevents the registrar from reading database entries created by previous versions, for example, 7.11.0. Specifically, older ...

CVE-2025-0690

Jun 29, 2026 23:25:00 UTC

The read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further used to reallocate the line buffer to accept the next character. During this process, with a...

CVE-2025-0689

Jun 29, 2026 23:24:58 UTC

When reading data from disk, the grub's UDF filesystem module utilizes the user controlled data length metadata to allocate its internal buffers. In certain scenarios, while iterating through disk sectors, it assumes the read size from the ...

CVE-2025-0686

Jun 29, 2026 23:24:55 UTC

A flaw was found in grub2. When performing a symlink lookup from a romfs filesystem, grub's romfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly c...

CVE-2025-0685

Jun 29, 2026 23:24:53 UTC

A flaw was found in grub2. When reading data from a jfs filesystem, grub's jfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for integer o...