<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 18:45:59 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-03683</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-03683</link>
      <description>bdu:2025-03683</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-03683</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-21881</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-21881</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-21881</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0333 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Elles permettent à un attaquant de provo…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0333</link>
      <description>certfr-2025-avi-0333</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0333</guid>
    </item>
    <item>
      <title>EUVD-2026-314079</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-314079</link>
      <description>EUVD-2026-314079</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-314079</guid>
    </item>
    <item>
      <title>fkie_cve-2025-21881</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-21881</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;uprobes: Reject the shared zeropage in uprobe_write_opcode()&lt;/p&gt;
&lt;p&gt;We triggered the following crash in syzkaller tests:&lt;/p&gt;
&lt;p&gt;BUG: Bad page state in process syz.7.38  pfn:1eff3
  page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3
  flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)
  raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000
  raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000
  page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set
  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014
  Call Trace:
   &amp;lt;TASK&amp;gt;
   dump_stack_lvl+0x32/0x50
   bad_page+0x69/0xf0
   free_unref_page_prepare+0x401/0x500
   free_unref_page+0x6d/0x1b0
   uprobe_write_opcode+0x460/0x8e0
   install_breakpoint.part.0+0x51/0x80
   register_for_each_vma+0x1d9/0x2b0
   __uprobe_register+0x245/0x300
   bpf_uprobe_multi_link_attach+0x29b/0x4f0
   link_create+0x1e2/0x280
   __sys_bpf+0x75f/0xac0
   __x64_sys_bpf+0x1a/0x30
   do_syscall_64+0x56/0x100
   entry_SYSCALL_64_after_hwframe+0x78/0xe2&lt;/p&gt;
&lt;p&gt;BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1&lt;/p&gt;
&lt;p&gt;The following syzkaller test case can be used to reproduce:&lt;/p&gt;
&lt;p&gt;r2 = creat(&amp;amp;(0x7f0000000000)=&amp;#39;./file0\x00&amp;#39;, 0x8)
  write$nbd(r2, &amp;amp;(0x7f0000000580)=ANY=[], 0x10)
  r4 = openat(0xffffffffffffff9c, &amp;amp;(0x7f0000000040)=&amp;#39;./file0\x00&amp;#39;, 0x42, 0x0)
  mma…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;uprobes: Reject the shared zeropage in uprobe_write_opcode()&lt;/p&gt;
&lt;p&gt;We triggered the following crash in syzkaller tests:&lt;/p&gt;
&lt;p&gt;BUG: Bad page state in process syz.7.38  pfn:1eff3
  page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3
  flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)
  raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000
  raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000
  page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set
  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014
  Call Trace:
   &amp;lt;TASK&amp;gt;
   dump_stack_lvl+0x32/0x50
   bad_page+0x69/0xf0
   free_unref_page_prepare+0x401/0x500
   free_unref_page+0x6d/0x1b0
   uprobe_write_opcode+0x460/0x8e0
   install_breakpoint.part.0+0x51/0x80
   register_for_each_vma+0x1d9/0x2b0
   __uprobe_register+0x245/0x300
   bpf_uprobe_multi_link_attach+0x29b/0x4f0
   link_create+0x1e2/0x280
   __sys_bpf+0x75f/0xac0
   __x64_sys_bpf+0x1a/0x30
   do_syscall_64+0x56/0x100
   entry_SYSCALL_64_after_hwframe+0x78/0xe2&lt;/p&gt;
&lt;p&gt;BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1&lt;/p&gt;
&lt;p&gt;The following syzkaller test case can be used to reproduce:&lt;/p&gt;
&lt;p&gt;r2 = creat(&amp;amp;(0x7f0000000000)=&amp;#39;./file0\x00&amp;#39;, 0x8)
  write$nbd(r2, &amp;amp;(0x7f0000000580)=ANY=[], 0x10)
  r4 = openat(0xffffffffffffff9c, &amp;amp;(0x7f0000000040)=&amp;#39;./file0\x00&amp;#39;, 0x42, 0x0)
  mma…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-21881</guid>
    </item>
    <item>
      <title>GHSA-v2hx-rxf2-p233</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v2hx-rxf2-p233</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;uprobes: Reject the shared zeropage in uprobe_write_opcode()&lt;/p&gt;
&lt;p&gt;We triggered the following crash in syzkaller tests:&lt;/p&gt;
&lt;p&gt;BUG: Bad page state in process syz.7.38  pfn:1eff3
  page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3
  flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)
  raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000
  raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000
  page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set
  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014
  Call Trace:
   &amp;lt;TASK&amp;gt;
   dump_stack_lvl+0x32/0x50
   bad_page+0x69/0xf0
   free_unref_page_prepare+0x401/0x500
   free_unref_page+0x6d/0x1b0
   uprobe_write_opcode+0x460/0x8e0
   install_breakpoint.part.0+0x51/0x80
   register_for_each_vma+0x1d9/0x2b0
   __uprobe_register+0x245/0x300
   bpf_uprobe_multi_link_attach+0x29b/0x4f0
   link_create+0x1e2/0x280
   __sys_bpf+0x75f/0xac0
   __x64_sys_bpf+0x1a/0x30
   do_syscall_64+0x56/0x100
   entry_SYSCALL_64_after_hwframe+0x78/0xe2&lt;/p&gt;
&lt;p&gt;BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1&lt;/p&gt;
&lt;p&gt;The following syzkaller test case can be used to reproduce:&lt;/p&gt;
&lt;p&gt;r2 = creat(&amp;amp;(0x7f0000000000)=&amp;#39;./file0\x00&amp;#39;, 0x8)
  write$nbd(r2, &amp;amp;(0x7f0000000580)=ANY=[], 0x10)
  r4 = openat(0xffffffffffffff9c, &amp;amp;(0x7f0000000040)=&amp;#39;./file0\x00&amp;#39;, 0x42, 0x0)
  mma…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;uprobes: Reject the shared zeropage in uprobe_write_opcode()&lt;/p&gt;
&lt;p&gt;We triggered the following crash in syzkaller tests:&lt;/p&gt;
&lt;p&gt;BUG: Bad page state in process syz.7.38  pfn:1eff3
  page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3
  flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)
  raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000
  raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000
  page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set
  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014
  Call Trace:
   &amp;lt;TASK&amp;gt;
   dump_stack_lvl+0x32/0x50
   bad_page+0x69/0xf0
   free_unref_page_prepare+0x401/0x500
   free_unref_page+0x6d/0x1b0
   uprobe_write_opcode+0x460/0x8e0
   install_breakpoint.part.0+0x51/0x80
   register_for_each_vma+0x1d9/0x2b0
   __uprobe_register+0x245/0x300
   bpf_uprobe_multi_link_attach+0x29b/0x4f0
   link_create+0x1e2/0x280
   __sys_bpf+0x75f/0xac0
   __x64_sys_bpf+0x1a/0x30
   do_syscall_64+0x56/0x100
   entry_SYSCALL_64_after_hwframe+0x78/0xe2&lt;/p&gt;
&lt;p&gt;BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1&lt;/p&gt;
&lt;p&gt;The following syzkaller test case can be used to reproduce:&lt;/p&gt;
&lt;p&gt;r2 = creat(&amp;amp;(0x7f0000000000)=&amp;#39;./file0\x00&amp;#39;, 0x8)
  write$nbd(r2, &amp;amp;(0x7f0000000580)=ANY=[], 0x10)
  r4 = openat(0xffffffffffffff9c, &amp;amp;(0x7f0000000040)=&amp;#39;./file0\x00&amp;#39;, 0x42, 0x0)
  mma…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v2hx-rxf2-p233</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-21881 — uprobes: Reject the shared zeropage in uprobe_write_opcode()</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-21881</link>
      <description>msrc_CVE-2025-21881</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-21881</guid>
    </item>
    <item>
      <title>OESA-2025-1409 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1409</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;fs/ntfs3: Fix some memory leaks in an error handling path of &amp;amp;apos;log_replay()&amp;amp;apos;&lt;/p&gt;
&lt;p&gt;All error handling paths lead to &amp;amp;apos;out&amp;amp;apos; where many resources are freed.&lt;/p&gt;
&lt;p&gt;Do it as well here instead of a direct return, otherwise &amp;amp;apos;log&amp;amp;apos;, &amp;amp;apos;ra&amp;amp;apos; and
&amp;amp;apos;log-&amp;amp;gt;one_page_buf&amp;amp;apos; (at least) will leak.(CVE-2021-47660)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;list: fix a data-race around ep-&amp;amp;gt;rdllist&lt;/p&gt;
&lt;p&gt;ep_poll() first calls ep_events_available() with no lock held and checks
if ep-&amp;amp;gt;rdllist is empty by list_empty_careful(), which reads
rdllist-&amp;amp;gt;prev.  Thus all accesses to it need some protection to avoid
store/load-tearing.&lt;/p&gt;
&lt;p&gt;Note INIT_LIST_HEAD_RCU() already has the annotation for both prev
and next.&lt;/p&gt;
&lt;p&gt;Commit bf3b9f6372c4 (&amp;amp;quot;epoll: Add busy poll support to epoll with socket
fds.&amp;amp;quot;) added the first lockless ep_events_available(), and commit
c5a282e9635e (&amp;amp;quot;fs/epoll: reduce the scope of wq lock in epoll_wait()&amp;amp;quot;)
made some ep_events_available() calls lockless and added single call under
a lock, finally commit e59d3c64cba6 (&amp;amp;quot;epoll: eliminate unnecessary lock
for zero timeout&amp;amp;quot;) made the last ep_events_available() lockless.&lt;/p&gt;
&lt;p&gt;BUG: KCSAN: data-race in do_epoll_wait / do_epoll_wait&lt;/p&gt;
&lt;p&gt;write to 0xffff88810480c7d8 of 8 bytes by task 1802 on cpu 0:
 INIT_LIST_HEAD include/linux…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;fs/ntfs3: Fix some memory leaks in an error handling path of &amp;amp;apos;log_replay()&amp;amp;apos;&lt;/p&gt;
&lt;p&gt;All error handling paths lead to &amp;amp;apos;out&amp;amp;apos; where many resources are freed.&lt;/p&gt;
&lt;p&gt;Do it as well here instead of a direct return, otherwise &amp;amp;apos;log&amp;amp;apos;, &amp;amp;apos;ra&amp;amp;apos; and
&amp;amp;apos;log-&amp;amp;gt;one_page_buf&amp;amp;apos; (at least) will leak.(CVE-2021-47660)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;list: fix a data-race around ep-&amp;amp;gt;rdllist&lt;/p&gt;
&lt;p&gt;ep_poll() first calls ep_events_available() with no lock held and checks
if ep-&amp;amp;gt;rdllist is empty by list_empty_careful(), which reads
rdllist-&amp;amp;gt;prev.  Thus all accesses to it need some protection to avoid
store/load-tearing.&lt;/p&gt;
&lt;p&gt;Note INIT_LIST_HEAD_RCU() already has the annotation for both prev
and next.&lt;/p&gt;
&lt;p&gt;Commit bf3b9f6372c4 (&amp;amp;quot;epoll: Add busy poll support to epoll with socket
fds.&amp;amp;quot;) added the first lockless ep_events_available(), and commit
c5a282e9635e (&amp;amp;quot;fs/epoll: reduce the scope of wq lock in epoll_wait()&amp;amp;quot;)
made some ep_events_available() calls lockless and added single call under
a lock, finally commit e59d3c64cba6 (&amp;amp;quot;epoll: eliminate unnecessary lock
for zero timeout&amp;amp;quot;) made the last ep_events_available() lockless.&lt;/p&gt;
&lt;p&gt;BUG: KCSAN: data-race in do_epoll_wait / do_epoll_wait&lt;/p&gt;
&lt;p&gt;write to 0xffff88810480c7d8 of 8 bytes by task 1802 on cpu 0:
 INIT_LIST_HEAD include/linux…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1409</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:01600-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:01600-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:01600-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-21881</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-21881</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 202 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: uprobes: Reject the shared zeropage in uprobe_write_opcode() We triggered the following crash in syzkaller tests:   BUG: Bad page state in process syz.7.38  pfn:1eff3   page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3   flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)   raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000   raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000   page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set   Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014   Call Trace:    &amp;lt;TASK&amp;gt;    dump_stack_lvl+0x32/0x50    bad_page+0x69/0xf0    free_unref_page_prepare+0x401/0x500    free_unref_page+0x6d/0x1b0    uprobe_write_opcode+0x460/0x8e0    install_breakpoint.part.0+0x51/0x80    register_for_each_vma+0x1d9/0x2b0    __uprobe_register+0x245/0x300    bpf_uprobe_multi_link_attach+0x29b/0x4f0    link_create+0x1e2/0x280    __sys_bpf+0x75f/0xac0    __x64_sys_bpf+0x1a/0x30    do_syscall_64+0x56/0x100    entry_SYSCALL_64_after_hwframe+0x78/0xe2    BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1 The following syzkaller test case can be used to reproduce:   r2 = creat(&amp;amp;(0x7f0000000000)=&amp;#39;./file0\x00&amp;#39;, 0x8)   write$nbd(r2, &amp;amp;(0x7f0000000580)=ANY=[], 0x10)   r4 = openat(0xffffffffffffff9c, &amp;amp;(0x7f0000000040)=&amp;#39;./file0\x00&amp;#39;, 0x42, 0x0)   mmap$IORI…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 202 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: uprobes: Reject the shared zeropage in uprobe_write_opcode() We triggered the following crash in syzkaller tests:   BUG: Bad page state in process syz.7.38  pfn:1eff3   page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3   flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)   raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000   raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000   page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set   Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014   Call Trace:    &amp;lt;TASK&amp;gt;    dump_stack_lvl+0x32/0x50    bad_page+0x69/0xf0    free_unref_page_prepare+0x401/0x500    free_unref_page+0x6d/0x1b0    uprobe_write_opcode+0x460/0x8e0    install_breakpoint.part.0+0x51/0x80    register_for_each_vma+0x1d9/0x2b0    __uprobe_register+0x245/0x300    bpf_uprobe_multi_link_attach+0x29b/0x4f0    link_create+0x1e2/0x280    __sys_bpf+0x75f/0xac0    __x64_sys_bpf+0x1a/0x30    do_syscall_64+0x56/0x100    entry_SYSCALL_64_after_hwframe+0x78/0xe2    BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1 The following syzkaller test case can be used to reproduce:   r2 = creat(&amp;amp;(0x7f0000000000)=&amp;#39;./file0\x00&amp;#39;, 0x8)   write$nbd(r2, &amp;amp;(0x7f0000000580)=ANY=[], 0x10)   r4 = openat(0xffffffffffffff9c, &amp;amp;(0x7f0000000040)=&amp;#39;./file0\x00&amp;#39;, 0x42, 0x0)   mmap$IORI…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-21881</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0649 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0649</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder nicht spezifizierte Effekte zu erzielen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder nicht spezifizierte Effekte zu erzielen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0649</guid>
    </item>
  </channel>
</rss>
