A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2. Affected by this vulnerability is the function smu_sys_set_pp_table. This manipulation causes buffer overflow.
This vulnerability is handled as CVE-2025-21780. The attack can only be done within the local network. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.15/6.13.3/6.14-rc2. It has been rated as critical. Impacted is an unknown function of the component tracing. The manipulation of the argument mmap leads to memory corruption.
This vulnerability is documented as CVE-2025-21778. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2. This issue affects some unknown processing of the component Hypercall Page Handler. Such manipulation leads to null pointer dereference.
This vulnerability is listed as CVE-2025-21779. The attack must be carried out from within the local network. There is no available exploit.
The affected component should be upgraded.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2. This affects the function usb_hub_to_struct_hub. Such manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2025-21776. Access to the local network is required for this attack to succeed. There is no exploit available.
The affected component should be upgraded.
A vulnerability classified as problematic has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2. This impacts the function ctucan_err_interrupt. The manipulation leads to allocation of resources.
This vulnerability is traded as CVE-2025-21775. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.12.15/6.13.3/6.14-rc2. Affected is the function nr_subbufs of the component ring-buffer. The manipulation results in buffer overflow.
This vulnerability is known as CVE-2025-21777. Access to the local network is required for this attack. No exploit is available.
Upgrading the affected component is advised.
A vulnerability labeled as problematic has been found in Linux Kernel up to 6.1.128/6.6.78/6.12.15/6.13.3/6.14-rc2. The affected element is the function put_dev_sector. Such manipulation leads to out-of-bounds read.
This vulnerability is documented as CVE-2025-21772. The attack requires being on the local network. There is not any exploit available.
The affected component should be upgraded.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.78/6.12.15/6.13.3/6.14-rc2. The impacted element is an unknown function of the component etas_es58x. Performing a manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2025-21773. The attacker must have access to the local network to execute the attack. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability described as critical has been identified in Linux Kernel up to 6.12.15/6.13.3/6.14-rc2. This affects the function rkcanfd_handle_rx_fifo_overflow_int. Executing a manipulation can lead to null pointer dereference.
This vulnerability appears as CVE-2025-21774. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in Linux Kernel up to 6.12.15/6.13.3/6.14-rc2. It has been rated as problematic. This affects the function scx_move_task of the file kernel/sched/ext.c. This manipulation causes information disclosure.
This vulnerability is registered as CVE-2025-21771. The attack requires access to the local network. No exploit is available.
Upgrading the affected component is advised.
A vulnerability identified as problematic has been detected in Linux Kernel up to 6.12.15/6.13.3/6.14-rc2. Impacted is the function iopf_queue_remove_device. This manipulation causes memory leak.
This vulnerability is registered as CVE-2025-21770. It is feasible to perform the attack on the physical device. No exploit is available.
You should upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.13.3/6.14-rc2. The affected element is the function vmclock_miscdev_fops. Executing a manipulation can lead to privilege escalation.
The identification of this vulnerability is CVE-2025-21769. The attack needs to be done within the local network. There is no exploit available.
You should upgrade the affected component.
A vulnerability identified as critical has been detected in changmingxie tcc-transaction up to 2.1.0. This issue affects the function Fastjson.parseObject of the component Fastjson AutoType REST API. This manipulation causes deserialization.
The identification of this vulnerability is CVE-2026-9497. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.