[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2025-37958":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":144,"related":145,"reserved_at":9,"published_at":161,"modified_at":162,"state":163,"summary":164,"references_raw":173,"kevs":217,"epss":218,"epss_history":221,"metrics":495,"affected":501},"CVE-2025-37958","In the Linux kernel, the following vulnerability has been resolved:\n\nmm/huge_memory: fix dereferencing invalid pmd migration entry\n\nWhen migrating a THP, concurrent access to the PMD migration entry during\na deferred split scan can lead to an invalid address access, as\nillustrated below.  To prevent this invalid access, it is necessary to\ncheck the PMD migration entry and return early.  In this context, there is\nno need to use pmd_to_swp_entry and pfn_swap_entry_to_page to verify the\nequality of the target folio.  Since the PMD migration entry is locked, it\ncannot be served as the target.\n\nMailing list discussion and explanation from Hugh Dickins: \"An anon_vma\nlookup points to a location which may contain the folio of interest, but\nmight instead contain another folio: and weeding out those other folios is\nprecisely what the \"folio != pmd_folio((*pmd)\" check (and the \"risk of\nreplacing the wrong folio\" comment a few lines above it) is for.\"\n\nBUG: unable to handle page fault for address: ffffea60001db008\nCPU: 0 UID: 0 PID: 2199114 Comm: tee Not tainted 6.14.0+ #4 NONE\nHardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014\nRIP: 0010:split_huge_pmd_locked+0x3b5/0x2b60\nCall Trace:\n\u003CTASK>\ntry_to_migrate_one+0x28c/0x3730\nrmap_walk_anon+0x4f6/0x770\nunmap_folio+0x196/0x1f0\nsplit_huge_page_to_list_to_order+0x9f6/0x1560\ndeferred_split_scan+0xac5/0x12a0\nshrinker_debugfs_scan_write+0x376/0x470\nfull_proxy_write+0x15c/0x220\nvfs_write+0x2fc/0xcb0\nksys_write+0x146/0x250\ndo_syscall_64+0x6a/0x120\nentry_SYSCALL_64_after_hwframe+0x76/0x7e\n\nThe bug is found by syzkaller on an internal kernel, then confirmed on\nupstream.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-476","NULL Pointer Dereference","The product dereferences a pointer that it expects to be valid but is NULL.","weakness","Stable","Base","Medium",[],[],[],[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102,104,106,108,110,112,114,116,118,120,122,124,126,128,130,132,134,136,138,140,142],{"_key":25},"SUSE-SU-2025:01919-1",{"_key":27},"SUSE-SU-2025:01951-1",{"_key":29},"SUSE-SU-2025:01967-1",{"_key":31},"SUSE-SU-2025:03615-1",{"_key":33},"SUSE-SU-2025:03628-1",{"_key":35},"SUSE-SU-2025:3716-1",{"_key":37},"SUSE-SU-2025:3761-1",{"_key":39},"USN-7721-1",{"_key":41},"SUSE-SU-2025:01964-1",{"_key":43},"SUSE-SU-2025:01965-1",{"_key":45},"DLA-4327-1",{"_key":47},"DLA-4328-1",{"_key":49},"DSA-5973-1",{"_key":51},"RHSA-2025:11428",{"_key":53},"RHSA-2025:11861",{"_key":55},"RHSA-2025:12209",{"_key":57},"RHSA-2025:12311",{"_key":59},"RHSA-2025:12525",{"_key":61},"RHSA-2025:12526",{"_key":63},"SUSE-SU-2025:01972-1",{"_key":65},"SUSE-SU-2025:20408-1",{"_key":67},"SUSE-SU-2025:20413-1",{"_key":69},"SUSE-SU-2025:20419-1",{"_key":71},"SUSE-SU-2025:20421-1",{"_key":73},"SUSE-SU-2025:02000-1",{"_key":75},"USN-7907-5",{"_key":77},"USN-7922-1",{"_key":79},"USN-7922-2",{"_key":81},"USN-7922-3",{"_key":83},"USN-7922-4",{"_key":85},"USN-7922-5",{"_key":87},"USN-7931-1",{"_key":89},"USN-7931-2",{"_key":91},"USN-7931-3",{"_key":93},"USN-7931-4",{"_key":95},"USN-7931-5",{"_key":97},"USN-7935-1",{"_key":99},"USN-7937-1",{"_key":101},"USN-7939-1",{"_key":103},"USN-7939-2",{"_key":105},"DEBIAN-CVE-2025-37958",{"_key":107},"RHSA-2025:13135",{"_key":109},"UBUNTU-CVE-2025-37958",{"_key":111},"USN-7774-1",{"_key":113},"USN-7774-2",{"_key":115},"USN-7774-3",{"_key":117},"USN-7774-4",{"_key":119},"USN-7774-5",{"_key":121},"USN-7775-1",{"_key":123},"USN-7775-2",{"_key":125},"USN-7775-3",{"_key":127},"USN-7776-1",{"_key":129},"USN-7907-1",{"_key":131},"USN-7907-2",{"_key":133},"USN-7907-3",{"_key":135},"USN-7907-4",{"_key":137},"USN-7699-1",{"_key":139},"USN-7699-2",{"_key":141},"USN-7940-1",{"_key":143},"USN-7940-2",[],[146,147,148,149,150,151,152,153,154,155,156,157,158,159,160],{"_key":25},{"_key":27},{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":41},{"_key":43},{"_key":63},{"_key":65},{"_key":67},{"_key":69},{"_key":71},{"_key":73},"2025-05-20T16:01:51.740Z","2026-05-11T21:18:23.635Z","Analyzed",{"cisa_kev":165,"cisa_ransomware":165,"cisa_vendor":9,"epss_severity":166,"epss_score":167,"severity":168,"severity_score":169,"severity_version":170,"severity_source":171,"severity_vector":172,"severity_status":163},false,"low",0.00119,"medium",5.5,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",[174,180,184,188,192,196,200,204,208,213],{"url":175,"sources":176,"tags":178},"https://git.kernel.org/stable/c/753f142f7ff7d2223a47105b61e1efd91587d711",[177,171],"cve.org",[179],"Patch",{"url":181,"sources":182,"tags":183},"https://git.kernel.org/stable/c/9468afbda3fbfcec21ac8132364dff3dab945faf",[177,171],[179],{"url":185,"sources":186,"tags":187},"https://git.kernel.org/stable/c/ef5706bed97e240b4abf4233ceb03da7336bc775",[177,171],[179],{"url":189,"sources":190,"tags":191},"https://git.kernel.org/stable/c/22f6368768340260e862f35151d2e1c55cb1dc75",[177,171],[179],{"url":193,"sources":194,"tags":195},"https://git.kernel.org/stable/c/3977946f61cdba87b6b5aaf7d7094e96089583a5",[177,171],[179],{"url":197,"sources":198,"tags":199},"https://git.kernel.org/stable/c/6166c3cf405441f7147b322980144feb3cefc617",[177,171],[179],{"url":201,"sources":202,"tags":203},"https://git.kernel.org/stable/c/fbab262b0c8226c697af1851a424896ed47dedcc",[177,171],[179],{"url":205,"sources":206,"tags":207},"https://git.kernel.org/stable/c/be6e843fc51a584672dfd9c4a6a24c8cb81d5fb7",[177,171],[179],{"url":209,"sources":210,"tags":211},"https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html",[177,171],[212],"Third Party Advisory",{"url":214,"sources":215,"tags":216},"https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html",[177,171],[212],[],{"date":219,"score":167,"percentile":220},"2026-06-03",0.30388,[222,226,229,232,235,238,241,244,247,249,252,255,258,261,264,268,271,274,277,280,283,286,289,292,294,297,300,303,306,309,312,315,318,321,324,327,330,333,336,339,342,346,349,352,356,360,364,367,371,374,377,380,383,386,389,392,395,398,401,404,407,410,413,416,419,422,425,428,430,433,436,438,441,444,447,450,453,456,459,462,465,468,471,474,477,480,483,486,489,492],{"date":223,"score":224,"percentile":225},"2025-11-04",0.00089,0.26145,{"date":227,"score":224,"percentile":228},"2025-11-05",0.26119,{"date":230,"score":224,"percentile":231},"2025-11-06",0.26124,{"date":233,"score":224,"percentile":234},"2025-11-07",0.26123,{"date":236,"score":224,"percentile":237},"2025-11-08",0.26121,{"date":239,"score":224,"percentile":240},"2025-11-09",0.26075,{"date":242,"score":224,"percentile":243},"2025-11-10",0.26038,{"date":245,"score":224,"percentile":246},"2025-11-11",0.26049,{"date":248,"score":224,"percentile":240},"2025-11-12",{"date":250,"score":224,"percentile":251},"2025-11-13",0.26079,{"date":253,"score":224,"percentile":254},"2025-11-14",0.26074,{"date":256,"score":224,"percentile":257},"2025-11-15",0.26067,{"date":259,"score":224,"percentile":260},"2025-11-16",0.26024,{"date":262,"score":224,"percentile":263},"2025-11-17",0.25986,{"date":265,"score":266,"percentile":267},"2025-11-18",0.00095,0.22739,{"date":269,"score":266,"percentile":270},"2025-11-19",0.22751,{"date":272,"score":266,"percentile":273},"2025-11-20",0.22753,{"date":275,"score":224,"percentile":276},"2025-11-21",0.25908,{"date":278,"score":224,"percentile":279},"2025-11-22",0.25906,{"date":281,"score":224,"percentile":282},"2025-11-23",0.25862,{"date":284,"score":224,"percentile":285},"2025-11-24",0.25837,{"date":287,"score":224,"percentile":288},"2025-11-25",0.25826,{"date":290,"score":224,"percentile":291},"2025-11-26",0.25817,{"date":293,"score":224,"percentile":291},"2025-11-27",{"date":295,"score":224,"percentile":296},"2025-11-28",0.25791,{"date":298,"score":224,"percentile":299},"2025-11-29",0.25781,{"date":301,"score":224,"percentile":302},"2025-11-30",0.2575,{"date":304,"score":224,"percentile":305},"2025-12-01",0.25784,{"date":307,"score":224,"percentile":308},"2025-12-02",0.2581,{"date":310,"score":224,"percentile":311},"2025-12-03",0.25818,{"date":313,"score":224,"percentile":314},"2025-12-04",0.25752,{"date":316,"score":224,"percentile":317},"2025-12-05",0.25806,{"date":319,"score":224,"percentile":320},"2025-12-06",0.25811,{"date":322,"score":224,"percentile":323},"2025-12-07",0.25779,{"date":325,"score":224,"percentile":326},"2025-12-08",0.2578,{"date":328,"score":224,"percentile":329},"2025-12-09",0.25829,{"date":331,"score":224,"percentile":332},"2025-12-10",0.25897,{"date":334,"score":224,"percentile":335},"2025-12-11",0.25922,{"date":337,"score":224,"percentile":338},"2025-12-12",0.2594,{"date":340,"score":224,"percentile":341},"2025-12-13",0.25943,{"date":343,"score":344,"percentile":345},"2025-12-14",0.00102,0.28797,{"date":347,"score":344,"percentile":348},"2025-12-15",0.28764,{"date":350,"score":344,"percentile":351},"2025-12-16",0.28779,{"date":353,"score":354,"percentile":355},"2025-12-17",0.00029,0.07509,{"date":357,"score":358,"percentile":359},"2025-12-18",0.0003,0.08045,{"date":361,"score":362,"percentile":363},"2025-12-19",0.00033,0.09247,{"date":365,"score":362,"percentile":366},"2025-12-20",0.09242,{"date":368,"score":369,"percentile":370},"2025-12-21",0.00032,0.08671,{"date":372,"score":369,"percentile":373},"2025-12-22",0.08625,{"date":375,"score":369,"percentile":376},"2025-12-23",0.08622,{"date":378,"score":369,"percentile":379},"2025-12-24",0.08637,{"date":381,"score":369,"percentile":382},"2025-12-25",0.08714,{"date":384,"score":369,"percentile":385},"2025-12-26",0.08711,{"date":387,"score":354,"percentile":388},"2025-12-27",0.07556,{"date":390,"score":369,"percentile":391},"2025-12-28",0.08712,{"date":393,"score":369,"percentile":394},"2025-12-29",0.08686,{"date":396,"score":369,"percentile":397},"2025-12-30",0.08655,{"date":399,"score":369,"percentile":400},"2025-12-31",0.08707,{"date":402,"score":369,"percentile":403},"2026-01-01",0.08769,{"date":405,"score":369,"percentile":406},"2026-01-02",0.08767,{"date":408,"score":369,"percentile":409},"2026-01-03",0.08763,{"date":411,"score":369,"percentile":412},"2026-01-04",0.08695,{"date":414,"score":369,"percentile":415},"2026-01-05",0.08647,{"date":417,"score":369,"percentile":418},"2026-01-06",0.08631,{"date":420,"score":369,"percentile":421},"2026-01-07",0.08668,{"date":423,"score":369,"percentile":424},"2026-01-08",0.08743,{"date":426,"score":369,"percentile":427},"2026-01-09",0.08756,{"date":429,"score":369,"percentile":406},"2026-01-10",{"date":431,"score":369,"percentile":432},"2026-01-11",0.08717,{"date":434,"score":369,"percentile":435},"2026-01-12",0.0869,{"date":437,"score":369,"percentile":397},"2026-01-13",{"date":439,"score":369,"percentile":440},"2026-01-14",0.087,{"date":442,"score":369,"percentile":443},"2026-01-15",0.08697,{"date":445,"score":369,"percentile":446},"2026-01-16",0.08728,{"date":448,"score":369,"percentile":449},"2026-01-17",0.08747,{"date":451,"score":369,"percentile":452},"2026-01-18",0.0871,{"date":454,"score":369,"percentile":455},"2026-01-19",0.08664,{"date":457,"score":369,"percentile":458},"2026-01-20",0.0862,{"date":460,"score":369,"percentile":461},"2026-01-21",0.08607,{"date":463,"score":369,"percentile":464},"2026-01-22",0.08576,{"date":466,"score":369,"percentile":467},"2026-01-23",0.08969,{"date":469,"score":369,"percentile":470},"2026-01-24",0.09033,{"date":472,"score":369,"percentile":473},"2026-01-25",0.08962,{"date":475,"score":369,"percentile":476},"2026-01-26",0.08918,{"date":478,"score":369,"percentile":479},"2026-01-27",0.08905,{"date":481,"score":369,"percentile":482},"2026-01-28",0.08886,{"date":484,"score":369,"percentile":485},"2026-01-29",0.08871,{"date":487,"score":369,"percentile":488},"2026-01-30",0.08878,{"date":490,"score":369,"percentile":491},"2026-01-31",0.08874,{"date":493,"score":369,"percentile":494},"2026-02-01",0.08901,[496],{"source":171,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":497,"cvss_v4_0":9},{"baseScore":169,"baseSeverity":498,"vectorString":172,"impactScore":499,"exploitabilityScore":500},"MEDIUM",6,4.6,[502,511,546],{"ecosystem":9,"name":503,"vendor":504,"product":505,"cpe_part":506,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":507},"debian linux","debian","debian_linux","o",[508],{"version":509,"is_range":165,"range_type":510,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.0","cpe",{"ecosystem":9,"name":512,"vendor":513,"product":513,"cpe_part":514,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":515},"Linux","linux","a",[516,523,526,529,532,535,538,541,544],{"version":517,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":521,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C 753f142f7ff7d2223a47105b61e1efd91587d711",true,"84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3","including","753f142f7ff7d2223a47105b61e1efd91587d711","excluding",{"version":524,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":525,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C 9468afbda3fbfcec21ac8132364dff3dab945faf","9468afbda3fbfcec21ac8132364dff3dab945faf",{"version":527,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":528,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C ef5706bed97e240b4abf4233ceb03da7336bc775","ef5706bed97e240b4abf4233ceb03da7336bc775",{"version":530,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":531,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C 22f6368768340260e862f35151d2e1c55cb1dc75","22f6368768340260e862f35151d2e1c55cb1dc75",{"version":533,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":534,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C 3977946f61cdba87b6b5aaf7d7094e96089583a5","3977946f61cdba87b6b5aaf7d7094e96089583a5",{"version":536,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":537,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C 6166c3cf405441f7147b322980144feb3cefc617","6166c3cf405441f7147b322980144feb3cefc617",{"version":539,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":540,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C fbab262b0c8226c697af1851a424896ed47dedcc","fbab262b0c8226c697af1851a424896ed47dedcc",{"version":542,"is_range":518,"range_type":177,"version_start":519,"version_start_type":520,"version_end":543,"version_end_type":522,"fixed_in":9},">= 84c3fc4e9c563d8fb91cfdf5948da48fe1af34d3, \u003C be6e843fc51a584672dfd9c4a6a24c8cb81d5fb7","be6e843fc51a584672dfd9c4a6a24c8cb81d5fb7",{"version":545,"is_range":165,"range_type":177,"version_start":545,"version_start_type":520,"version_end":545,"version_end_type":520,"fixed_in":9},"4.14",{"ecosystem":9,"name":547,"vendor":513,"product":548,"cpe_part":506,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":549},"linux kernel","linux_kernel",[550,553,557,561,565,569,573,577,579,581,583,585],{"version":551,"is_range":518,"range_type":510,"version_start":545,"version_start_type":520,"version_end":552,"version_end_type":522,"fixed_in":9},"gte4.14_lt5.4.295","5.4.295",{"version":554,"is_range":518,"range_type":510,"version_start":555,"version_start_type":520,"version_end":556,"version_end_type":522,"fixed_in":9},"gte5.5_lt5.10.239","5.5","5.10.239",{"version":558,"is_range":518,"range_type":510,"version_start":559,"version_start_type":520,"version_end":560,"version_end_type":522,"fixed_in":9},"gte5.11_lt5.15.186","5.11","5.15.186",{"version":562,"is_range":518,"range_type":510,"version_start":563,"version_start_type":520,"version_end":564,"version_end_type":522,"fixed_in":9},"gte5.16_lt6.1.142","5.16","6.1.142",{"version":566,"is_range":518,"range_type":510,"version_start":567,"version_start_type":520,"version_end":568,"version_end_type":522,"fixed_in":9},"gte6.2_lt6.6.95","6.2","6.6.95",{"version":570,"is_range":518,"range_type":510,"version_start":571,"version_start_type":520,"version_end":572,"version_end_type":522,"fixed_in":9},"gte6.7_lt6.12.29","6.7","6.12.29",{"version":574,"is_range":518,"range_type":510,"version_start":575,"version_start_type":520,"version_end":576,"version_end_type":522,"fixed_in":9},"gte6.13_lt6.14.7","6.13","6.14.7",{"version":578,"is_range":165,"range_type":510,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.15:rc1",{"version":580,"is_range":165,"range_type":510,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.15:rc2",{"version":582,"is_range":165,"range_type":510,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.15:rc3",{"version":584,"is_range":165,"range_type":510,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.15:rc4",{"version":586,"is_range":165,"range_type":510,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.15:rc5"]