SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

32 results for “kev-cve-2025-24985” · 0.73 s · cached

Facets · 1 entity types

32 CVE
CVE-2026-46082CVE

CVE-2026-46082

In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Inject #UD for INVLPGA if EFER.SVME=0 INVLPGA should cause a #UD when EFER.SVME is not set. Add a check to properly inj…

CVSS 5.5EPSS 0.2%linux
Match for kev-cve-2025-24985
CVE-2025-4425CVE

CVE-2025-4425

The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Advisories and Announcements" webpage for more information about the vulnerabilit…

CVSS 8.2EPSS 0.2%
Match for kev-cve-2025-24985
CVE-2025-49212CVE

CVE-2025-49212

An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerabil…

CVSS 9.8EPSS 13.3%
Match for kev-cve-2025-24985
CVE-2025-24904CVE

CVE-2025-24904

libsignal-service-rs is a Rust version of the libsignal-service-java library which implements the core functionality to communicate with Signal servers. Prior to commit 82d70f6720e762898f34ae76b0894b…

CVSS 8.5EPSS 0.2%
Match for kev-cve-2025-24985
CVE-2026-4747CVE

CVE-2026-4747

Each RPCSEC_GSS data packet is validated by a routine which checks a signature in the packet. This routine copies a portion of the packet into a stack buffer, but fails to ensure that the buffer is …

CVSS 8.8EPSS 1.1%
Match for kev-cve-2025-24985
CVE-2026-25259CVE

CVE-2026-25259

Memory corruption while processing multiple IOCTL command for escape operations.

CVSS 7.8EPSS 0.1%qualcomm
Match for kev-cve-2025-24985
CVE-2026-24515CVE

CVE-2026-24515

In libexpat before 2.7.4, XML_ExternalEntityParserCreate does not copy unknown encoding handler user data.

CVSS 2.9EPSS 0.2%libexpat_project
Match for kev-cve-2025-24985
CVE-2026-25258CVE

CVE-2026-25258

Memory corruption while processing IOCTL calls for escape operations.

CVSS 7.8EPSS 0.1%qualcomm
Match for kev-cve-2025-24985
CVE-2022-50493CVE

CVE-2022-50493

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix crash when I/O abort times out While performing CPU hotplug, a crash with the following stack was seen: Call …

CVSS 8.8EPSS 0.2%linux
Match for kev-cve-2025-24985
CVE-2025-24861CVE

CVE-2025-24861

An attacker may inject commands via specially-crafted post requests.

CVSS 9.8EPSS 0.5%
Match for kev-cve-2025-24985
CVE-2025-24962CVE

CVE-2025-24962

reNgine is an automated reconnaissance framework for web applications. In affected versions a user can inject commands via the nmap_cmd parameters. This issue has been addressed in commit `c28e5c8d` …

CVSS 8.8EPSS 0.7%
Match for kev-cve-2025-24985
CVE-2022-50472CVE

CVE-2022-50472

In the Linux kernel, the following vulnerability has been resolved: IB/mad: Don't call to function that might sleep while in atomic context Tracepoints are not allowed to sleep, as such the followi…

CVSS 7.5EPSS 0.4%linux
Match for kev-cve-2025-24985
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.