Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2025-40135 kernel: ipv6: use RCU in ip6_xmit() HIGH 7.0 0.55% cvelistv5 2026-07-30
cve-2025-39979 kernel: net/mlx5: fs, fix UAF in flow counter release HIGH 7.6 0.14% cvelistv5 2026-07-30
cve-2025-39858 kernel: eth: mlx4: Fix IS_ERR() vs NULL check bug in mlx4_en_create_rx_ring MEDIUM 5.5 0.13% cvelistv5 2026-06-30
cve-2025-39832 kernel: net/mlx5: Fix lockdep assertion on sync reset unload event MEDIUM 4.4 0.11% cvelistv5 2026-06-30
cve-2025-39816 SUSE CVE CVE-2025-39816 MEDIUM 5.5 0.14% cvelistv5 2026-07-15
cve-2025-39764 kernel: Linux kernel: Denial of Service via double-increment of reference count in netfilter MEDIUM 5.5 0.17% cvelistv5 2026-06-30
cve-2025-3887 SUSE CVE CVE-2025-3887 HIGH 8.8 0.85% cvelistv5 2026-08-29
cve-2025-38653 kernel: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al MEDIUM 5.1 0.17% cvelistv5 2026-07-30
cve-2025-38584 kernel: padata: Fix pd UAF once and for all MEDIUM 4.7 0.17% cvelistv5 2026-07-30
cve-2025-38431 kernel: Linux kernel: Denial of Service in SMB client due to native symlink handling MEDIUM 5.5 0.14% cvelistv5 2026-06-30
cve-2025-38426 kernel: drm/amdgpu: Add basic validation for RAS header UNKNOWN N/A 0.17% cvelistv5 2026-06-30
cve-2025-38085 SUSE CVE CVE-2025-38085 MEDIUM 6.6 0.14% cvelistv5 2026-09-01
cve-2025-22116 kernel: idpf: check error for register_netdev() on init LOW 3.3 0.20% cvelistv5 2026-06-30
cve-2025-21882 kernel: net/mlx5: Fix vport QoS cleanup on error LOW 3.3 0.18% cvelistv5 2026-07-30
cve-2025-21717 kernel: net/mlx5e: add missing cpu_to_node to kvzalloc_node in mlx5e_open_xdpredirect_sq UNKNOWN N/A 0.17% cvelistv5 2026-06-30
cve-2025-21709 kernel: kernel: be more careful about dup_mmap() failures and uprobe registering HIGH 7.1 0.20% cvelistv5 2026-07-30
cve-2025-15281 SUSE CVE CVE-2025-15281 MEDIUM 5.5 0.50% cvelistv5 2026-08-29
cve-2025-14905 389-ds-base: 389-ds-base: Remote Code Execution and Denial of Service via heap buffer overflow HIGH 7.2 1.18% cvelistv5 2026-06-30
cve-2025-14576 qt: Qt SVG: Arbitrary QML/JavaScript code injection via malicious SVG file HIGH 7.8 0.22% cvelistv5 2026-06-30
cve-2025-14523 libsoup: libsoup: Duplicate Host Header Handling Causes Host-Parsing Discrepancy (First- vs Last-Value Wins) HIGH 8.2 0.54% cvelistv5 2026-06-29
cve-2025-14512 glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow MEDIUM 6.5 0.58% cvelistv5 2026-09-01
cve-2025-14087 glib: GLib: Buffer underflow in GVariant parser leads to heap corruption MEDIUM 5.6 0.83% cvelistv5 2026-08-25
cve-2025-13151 SUSE CVE CVE-2025-13151 MEDIUM 6.6 1.15% cvelistv5 2026-08-30
cve-2025-12105 libsoup: Heap Use-After-Free in libsoup message queue handling during HTTP/2 read completion HIGH 7.5 0.46% cvelistv5 2026-06-30
cve-2025-1125 grub2: fs/hfs: Integer overflow may lead to heap based out-of-bounds write HIGH 7.8 0.43% cvelistv5 2026-06-30
cve-2025-1118 grub2: commands/dump: The dump command is not in lockdown when secure boot is enabled MEDIUM 4.4 0.32% cvelistv5 2026-06-30
cve-2025-10263 kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources HIGH 8.4 0.54% cvelistv5 2026-09-03
cve-2025-0690 grub2: read: Integer overflow may lead to out-of-bounds write MEDIUM 6.1 0.72% cvelistv5 2026-06-30
cve-2025-0689 grub2: udf: Heap based buffer overflow in grub_udf_read_block() may lead to arbitrary code execution HIGH 7.8 0.48% cvelistv5 2026-06-30
cve-2025-0686 grub2: romfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading dat MEDIUM 6.4 0.28% cvelistv5 2026-06-30