@@ -2,28 +2,44 @@ vulnerabilities:
22 - id : CVE-2024-35870
33 statement : " kernel: smb: client: fix UAF in smb2_reconnect_server()"
44 purls :
5- - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-170.180?arch=amd64&distro=ubuntu-22.04"
5+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=amd64&distro=ubuntu-22.04"
6+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=arm64&distro=ubuntu-22.04"
67 expired_at : 2026-08-12
78 - id : CVE-2024-53179
89 statement : " kernel: smb: client: fix use-after-free of signing key"
910 purls :
10- - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-170.180?arch=amd64&distro=ubuntu-22.04"
11+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=amd64&distro=ubuntu-22.04"
12+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=arm64&distro=ubuntu-22.04"
1113 expired_at : 2026-08-12
1214 - id : CVE-2025-37849
1315 statement : " kernel: KVM: arm64: Tear down vGIC on failed vCPU creation"
1416 purls :
15- - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-170.180?arch=amd64&distro=ubuntu-22.04"
17+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=amd64&distro=ubuntu-22.04"
18+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=arm64&distro=ubuntu-22.04"
1619 expired_at : 2026-08-12
1720 - id : CVE-2025-37899
1821 statement : " kernel: ksmbd: fix use-after-free in session logoff"
1922 purls :
20- - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-170.180?arch=amd64&distro=ubuntu-22.04"
23+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=amd64&distro=ubuntu-22.04"
24+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=arm64&distro=ubuntu-22.04"
2125 expired_at : 2026-08-12
2226 - id : CVE-2025-38118
2327 statement : " kernel: Linux kernel: Bluetooth MGMT use-after-free vulnerability allows privilege escalation"
2428 purls :
25- - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-170.180?arch=amd64&distro=ubuntu-22.04"
29+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=amd64&distro=ubuntu-22.04"
30+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=arm64&distro=ubuntu-22.04"
2631 expired_at : 2026-08-12
32+ - id : CVE-2026-23111
33+ statement : " kernel: Kernel: Privilege escalation or denial of service in nf_tables via inverted element activity check"
34+ purls :
35+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=amd64&distro=ubuntu-22.04"
36+ - " pkg:deb/ubuntu/linux-libc-dev@5.15.0-171.181?arch=arm64&distro=ubuntu-22.04"
37+ expired_at : 2026-08-26
38+ - id : CVE-2025-61594
39+ statement : " uri: URI module: Credential exposure via URI + operator"
40+ purls :
41+ - " pkg:gem/uri@0.13.0"
42+ expired_at : 2026-08-26
2743 - id : CVE-2026-26007
2844 statement : " cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves"
2945 purls :
0 commit comments