<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 11:21:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-08629</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-08629</link>
      <description>bdu:2025-08629</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-08629</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-38290</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-38290</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-38290</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0723 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0723</link>
      <description>certfr-2025-avi-0723</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0723</guid>
    </item>
    <item>
      <title>EUVD-2026-346994</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-346994</link>
      <description>EUVD-2026-346994</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-346994</guid>
    </item>
    <item>
      <title>fkie_cve-2025-38290</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-38290</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: ath12k: fix node corruption in ar-&amp;gt;arvifs list&lt;/p&gt;
&lt;p&gt;In current WLAN recovery code flow, ath12k_core_halt() only reinitializes
the &amp;#34;arvifs&amp;#34; list head. This will cause the list node immediately following
the list head to become an invalid list node. Because the prev of that node
still points to the list head &amp;#34;arvifs&amp;#34;, but the next of the list head
&amp;#34;arvifs&amp;#34; no longer points to that list node.&lt;/p&gt;
&lt;p&gt;When a WLAN recovery occurs during the execution of a vif removal, and it
happens before the spin_lock_bh(&amp;amp;ar-&amp;gt;data_lock) in
ath12k_mac_vdev_delete(), list_del() will detect the previously mentioned
situation, thereby triggering a kernel panic.&lt;/p&gt;
&lt;p&gt;The fix is to remove and reinitialize all vif list nodes from the list head
&amp;#34;arvifs&amp;#34; during WLAN halt. The reinitialization is to make the list nodes
valid, ensuring that the list_del() in ath12k_mac_vdev_delete() can execute
normally.&lt;/p&gt;
&lt;p&gt;Call trace:
__list_del_entry_valid_or_report+0xd4/0x100 (P)
ath12k_mac_remove_link_interface.isra.0+0xf8/0x2e4 [ath12k]
ath12k_scan_vdev_clean_work+0x40/0x164 [ath12k]
cfg80211_wiphy_work+0xfc/0x100
process_one_work+0x164/0x2d0
worker_thread+0x254/0x380
kthread+0xfc/0x100
ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;The change is mostly copied from the ath11k patch:
https://lore.kernel.org/all/20250320053145.3445187-1-quic_stonez@quicinc.com/&lt;/p&gt;
&lt;p&gt;Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.4.1-00199-QCAHKSWPL_SILICONZ-1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: ath12k: fix node corruption in ar-&amp;gt;arvifs list&lt;/p&gt;
&lt;p&gt;In current WLAN recovery code flow, ath12k_core_halt() only reinitializes
the &amp;#34;arvifs&amp;#34; list head. This will cause the list node immediately following
the list head to become an invalid list node. Because the prev of that node
still points to the list head &amp;#34;arvifs&amp;#34;, but the next of the list head
&amp;#34;arvifs&amp;#34; no longer points to that list node.&lt;/p&gt;
&lt;p&gt;When a WLAN recovery occurs during the execution of a vif removal, and it
happens before the spin_lock_bh(&amp;amp;ar-&amp;gt;data_lock) in
ath12k_mac_vdev_delete(), list_del() will detect the previously mentioned
situation, thereby triggering a kernel panic.&lt;/p&gt;
&lt;p&gt;The fix is to remove and reinitialize all vif list nodes from the list head
&amp;#34;arvifs&amp;#34; during WLAN halt. The reinitialization is to make the list nodes
valid, ensuring that the list_del() in ath12k_mac_vdev_delete() can execute
normally.&lt;/p&gt;
&lt;p&gt;Call trace:
__list_del_entry_valid_or_report+0xd4/0x100 (P)
ath12k_mac_remove_link_interface.isra.0+0xf8/0x2e4 [ath12k]
ath12k_scan_vdev_clean_work+0x40/0x164 [ath12k]
cfg80211_wiphy_work+0xfc/0x100
process_one_work+0x164/0x2d0
worker_thread+0x254/0x380
kthread+0xfc/0x100
ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;The change is mostly copied from the ath11k patch:
https://lore.kernel.org/all/20250320053145.3445187-1-quic_stonez@quicinc.com/&lt;/p&gt;
&lt;p&gt;Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.4.1-00199-QCAHKSWPL_SILICONZ-1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-38290</guid>
    </item>
    <item>
      <title>GHSA-rq3x-gg6j-x3rg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-rq3x-gg6j-x3rg</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: ath12k: fix node corruption in ar-&amp;gt;arvifs list&lt;/p&gt;
&lt;p&gt;In current WLAN recovery code flow, ath12k_core_halt() only reinitializes
the &amp;#34;arvifs&amp;#34; list head. This will cause the list node immediately following
the list head to become an invalid list node. Because the prev of that node
still points to the list head &amp;#34;arvifs&amp;#34;, but the next of the list head
&amp;#34;arvifs&amp;#34; no longer points to that list node.&lt;/p&gt;
&lt;p&gt;When a WLAN recovery occurs during the execution of a vif removal, and it
happens before the spin_lock_bh(&amp;amp;ar-&amp;gt;data_lock) in
ath12k_mac_vdev_delete(), list_del() will detect the previously mentioned
situation, thereby triggering a kernel panic.&lt;/p&gt;
&lt;p&gt;The fix is to remove and reinitialize all vif list nodes from the list head
&amp;#34;arvifs&amp;#34; during WLAN halt. The reinitialization is to make the list nodes
valid, ensuring that the list_del() in ath12k_mac_vdev_delete() can execute
normally.&lt;/p&gt;
&lt;p&gt;Call trace:
__list_del_entry_valid_or_report+0xd4/0x100 (P)
ath12k_mac_remove_link_interface.isra.0+0xf8/0x2e4 [ath12k]
ath12k_scan_vdev_clean_work+0x40/0x164 [ath12k]
cfg80211_wiphy_work+0xfc/0x100
process_one_work+0x164/0x2d0
worker_thread+0x254/0x380
kthread+0xfc/0x100
ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;The change is mostly copied from the ath11k patch:
https://lore.kernel.org/all/20250320053145.3445187-1-quic_stonez@quicinc.com/&lt;/p&gt;
&lt;p&gt;Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.4.1-00199-QCAHKSWPL_SILICONZ-1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: ath12k: fix node corruption in ar-&amp;gt;arvifs list&lt;/p&gt;
&lt;p&gt;In current WLAN recovery code flow, ath12k_core_halt() only reinitializes
the &amp;#34;arvifs&amp;#34; list head. This will cause the list node immediately following
the list head to become an invalid list node. Because the prev of that node
still points to the list head &amp;#34;arvifs&amp;#34;, but the next of the list head
&amp;#34;arvifs&amp;#34; no longer points to that list node.&lt;/p&gt;
&lt;p&gt;When a WLAN recovery occurs during the execution of a vif removal, and it
happens before the spin_lock_bh(&amp;amp;ar-&amp;gt;data_lock) in
ath12k_mac_vdev_delete(), list_del() will detect the previously mentioned
situation, thereby triggering a kernel panic.&lt;/p&gt;
&lt;p&gt;The fix is to remove and reinitialize all vif list nodes from the list head
&amp;#34;arvifs&amp;#34; during WLAN halt. The reinitialization is to make the list nodes
valid, ensuring that the list_del() in ath12k_mac_vdev_delete() can execute
normally.&lt;/p&gt;
&lt;p&gt;Call trace:
__list_del_entry_valid_or_report+0xd4/0x100 (P)
ath12k_mac_remove_link_interface.isra.0+0xf8/0x2e4 [ath12k]
ath12k_scan_vdev_clean_work+0x40/0x164 [ath12k]
cfg80211_wiphy_work+0xfc/0x100
process_one_work+0x164/0x2d0
worker_thread+0x254/0x380
kthread+0xfc/0x100
ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;The change is mostly copied from the ath11k patch:
https://lore.kernel.org/all/20250320053145.3445187-1-quic_stonez@quicinc.com/&lt;/p&gt;
&lt;p&gt;Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.4.1-00199-QCAHKSWPL_SILICONZ-1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-rq3x-gg6j-x3rg</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-38290 — wifi: ath12k: fix node corruption in ar-&gt;arvifs list</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-38290</link>
      <description>msrc_CVE-2025-38290</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-38290</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:20081-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:20081-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:20081-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:02853-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:02853-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:02853-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-38290</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-38290</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 121 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix node corruption in ar-&amp;gt;arvifs list In current WLAN recovery code flow, ath12k_core_halt() only reinitializes the &amp;#34;arvifs&amp;#34; list head. This will cause the list node immediately following the list head to become an invalid list node. Because the prev of that node still points to the list head &amp;#34;arvifs&amp;#34;, but the next of the list head &amp;#34;arvifs&amp;#34; no longer points to that list node. When a WLAN recovery occurs during the execution of a vif removal, and it happens before the spin_lock_bh(&amp;amp;ar-&amp;gt;data_lock) in ath12k_mac_vdev_delete(), list_del() will detect the previously mentioned situation, thereby triggering a kernel panic. The fix is to remove and reinitialize all vif list nodes from the list head &amp;#34;arvifs&amp;#34; during WLAN halt. The reinitialization is to make the list nodes valid, ensuring that the list_del() in ath12k_mac_vdev_delete() can execute normally. Call trace: __list_del_entry_valid_or_report+0xd4/0x100 (P) ath12k_mac_remove_link_interface.isra.0+0xf8/0x2e4 [ath12k] ath12k_scan_vdev_clean_work+0x40/0x164 [ath12k] cfg80211_wiphy_work+0xfc/0x100 process_one_work+0x164/0x2d0 worker_thread+0x254/0x380 kthread+0xfc/0x100 ret_from_fork+0x10/0x20 The change is mostly copied from the ath11k patch: https://lore.kernel.org/all/20250320053145.3445187-1-quic_stonez@quicinc.com/ Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.4.1-00199-QCAHKSWPL_SILICONZ-1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 121 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix node corruption in ar-&amp;gt;arvifs list In current WLAN recovery code flow, ath12k_core_halt() only reinitializes the &amp;#34;arvifs&amp;#34; list head. This will cause the list node immediately following the list head to become an invalid list node. Because the prev of that node still points to the list head &amp;#34;arvifs&amp;#34;, but the next of the list head &amp;#34;arvifs&amp;#34; no longer points to that list node. When a WLAN recovery occurs during the execution of a vif removal, and it happens before the spin_lock_bh(&amp;amp;ar-&amp;gt;data_lock) in ath12k_mac_vdev_delete(), list_del() will detect the previously mentioned situation, thereby triggering a kernel panic. The fix is to remove and reinitialize all vif list nodes from the list head &amp;#34;arvifs&amp;#34; during WLAN halt. The reinitialization is to make the list nodes valid, ensuring that the list_del() in ath12k_mac_vdev_delete() can execute normally. Call trace: __list_del_entry_valid_or_report+0xd4/0x100 (P) ath12k_mac_remove_link_interface.isra.0+0xf8/0x2e4 [ath12k] ath12k_scan_vdev_clean_work+0x40/0x164 [ath12k] cfg80211_wiphy_work+0xfc/0x100 process_one_work+0x164/0x2d0 worker_thread+0x254/0x380 kthread+0xfc/0x100 ret_from_fork+0x10/0x20 The change is mostly copied from the ath11k patch: https://lore.kernel.org/all/20250320053145.3445187-1-quic_stonez@quicinc.com/ Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.4.1-00199-QCAHKSWPL_SILICONZ-1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-38290</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1522 — Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1522</link>
      <description>&lt;p&gt;Ein entfernter Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder nicht spezifizierte Auswirkungen zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder nicht spezifizierte Auswirkungen zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1522</guid>
    </item>
  </channel>
</rss>
