CVE-2025-39709
In the Linux kernel, the following vulnerability has been resolved: media: venus: protect against spurious interrupts during probe Make su
CVSS
5.5
Medio
EPSS
0.1%
p4
KEV
—
Exploit Today
1
0-100
Publicado: 5 sept 2025 · Última mod.: 30 jul 2026 · CWE-476
0.1%EPSS · 30 días0.1%
2026-07-022026-07-29
In the Linux kernel, the following vulnerability has been resolved: media: venus: protect against spurious interrupts during probe Make sure the interrupt handler is initialized before the interrupt is registered. If the IRQ is registered before hfi_create(), it's possible that an interrupt fires before the handler setup is complete, leading to a NULL dereference. This error condition has been observed during system boot on Rb3Gen2.
- git.kernel.orghttps://git.kernel.org/stable/c/18c2b2bd982b8546312c9a7895515672169f28e0
- git.kernel.orghttps://git.kernel.org/stable/c/3200144a2fa4209dc084a19941b9b203b43580f0
- git.kernel.orghttps://git.kernel.org/stable/c/37cc0ac889b018097c217c5929fd6dc2aed636a1
- git.kernel.orghttps://git.kernel.org/stable/c/639eb587f977c02423f4762467055b23902b4131
- git.kernel.orghttps://git.kernel.org/stable/c/88cf63c2599761c48dec8f618d57dccf8f6f4b53
- git.kernel.orghttps://git.kernel.org/stable/c/9db6a78bc5e418e0064e2248c8f3b9b9e8418646
- git.kernel.orghttps://git.kernel.org/stable/c/e796028b4835af00d9a38ebbb208ec3a6634702a
- git.kernel.orghttps://git.kernel.org/stable/c/f54be97bc69b1096198b6717c150dec69f2a1b4d
- lists.debian.orghttps://lists.debian.org/debian-lts-announce/2025/10/msg00007.html
- lists.debian.orghttps://lists.debian.org/debian-lts-announce/2025/10/msg00008.html
- cert-portal.siemens.comhttps://cert-portal.siemens.com/productcert/html/ssa-032379.html
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-180647.5 ALT—
———An incomplete fix for CVE-2026-15352 in the NASA core Flight System
(cFS) Health and Safety (HS) application leaves a separate NULL pointer
dereference reachable in versions through 7.0.1. An attacker who can
trigger the affected command under specific conditions could cause the
HS application to crash, resulting in a denial-of-service condition and
processor reset.4hCVE-2026-581617.5 ALT36.1%
——11Apache Traffic Server can crash from null dereferences and dangling references in TLS and SNI handling.
This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from 10.0.0 through 10.1.3.
Users are recommended to upgrade to version 9.2.15 or 10.1.4, which fix the issue.11hCVE-2026-671847.5 ALT35.4%
——11TinyWeb through 0.0.8 contains a null pointer dereference vulnerability that allows unauthenticated remote attackers to crash worker processes by sending a malformed HTTP request line with an invalid version string. The HttpParser::execute() function fails to allocate the Url object when version parsing fails, leaving the url pointer NULL, and buildResponse() subsequently dereferences this NULL pointer without checking the valid_requ flag, producing a SIGSEGV that terminates the worker process and, when repeated across all workers, takes the server permanently offline until manually restarted.9hCVE-2026-667496.5 MED23.5%
——7Let's Chat 0.4.0 through 0.4.8 contains a null dereference vulnerability that allows authenticated attackers to crash the server by supplying a valid 24-character hex string room parameter that matches no document in the database. Attackers can send a crafted GET /messages request causing an uncaught TypeError in an asynchronous Mongoose callback that terminates the Node.js server process, with the same defect reachable through multiple code paths including the socket.io interface.9hCVE-2026-474277.5 ALT32.2%
——10GitHub MCP Server is GitHub's official MCP Server. Prior to 1.1.0, the CompletionsHandler function in pkg/github/server.go accesses params.Ref without first checking whether it is nil, so a completion/complete request with a missing or empty ref field triggers a nil pointer dereference and a Go runtime panic; because the crash occurs before any authentication or token validation, any unauthenticated client able to send JSON-RPC messages can crash the server, resulting in a complete denial of service. This issue is fixed in version 1.1.0.6hCVE-2026-17574—2.0%
——1HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length datatype type field may cause the application to crash when the attribute is read.6h