Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Top 15 Enterprise Use Cases That Justify Hiring Node.js Developers in 2025

      July 31, 2025

      The Core Model: Start FROM The Answer, Not WITH The Solution

      July 31, 2025

      AI-Generated Code Poses Major Security Risks in Nearly Half of All Development Tasks, Veracode Research Reveals   

      July 31, 2025

      Understanding the code modernization conundrum

      July 31, 2025

      Not just YouTube: Google is using AI to guess your age based on your activity – everywhere

      July 31, 2025

      Malicious extensions can use ChatGPT to steal your personal data – here’s how

      July 31, 2025

      What Zuckerberg’s ‘personal superintelligence’ sales pitch leaves out

      July 31, 2025

      This handy NordVPN tool flags scam calls on Android – even before you answer

      July 31, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Route Optimization through Laravel’s Shallow Resource Architecture

      July 31, 2025
      Recent

      Route Optimization through Laravel’s Shallow Resource Architecture

      July 31, 2025

      This Week in Laravel: Laracon News, Free Laravel Idea, and Claude Code Course

      July 31, 2025

      Everything We Know About Pest 4

      July 31, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      FOSS Weekly #25.31: Kernel 6.16, OpenMandriva Review, Conky Customization, System Monitoring and More

      July 31, 2025
      Recent

      FOSS Weekly #25.31: Kernel 6.16, OpenMandriva Review, Conky Customization, System Monitoring and More

      July 31, 2025

      Windows 11’s MSN Widgets board now opens in default browser, such as Chrome (EU only)

      July 31, 2025

      Microsoft’s new “move to Windows 11” campaign implies buying OneDrive paid plan

      July 31, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»News & Updates»Control your computer with your mind? Meta’s working on that

    Control your computer with your mind? Meta’s working on that

    July 28, 2025

    What if you didn’t have to touch your screen or type on a keyboard?

    Source: Latest news 

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleThis $90 network KVM solves one of my biggest server room hassles – and it’s travel-friendly
    Next Article This super simple Android Contacts update solves a problem we’ve all had

    Related Posts

    News & Updates

    Not just YouTube: Google is using AI to guess your age based on your activity – everywhere

    July 31, 2025
    News & Updates

    Malicious extensions can use ChatGPT to steal your personal data – here’s how

    July 31, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    NVIDIA Riva Vulnerabilities Exposes Enable Authorized Access to Cloud Environments

    Security

    Distribution Release: Oracle Linux 9.6

    News & Updates

    Social Media Flooded with Ghibli AI Images—But What Are We Really Feeding the Algorithms?

    Development

    Orange Pi RV2 Single Board Computer Running Linux: Building a Program

    Linux

    Highlights

    CVE-2025-37988 – Apache Linux Kernel Mount Namespace Locking races

    May 20, 2025

    CVE ID : CVE-2025-37988

    Published : May 20, 2025, 6:15 p.m. | 34 minutes ago

    Description : In the Linux kernel, the following vulnerability has been resolved:

    fix a couple of races in MNT_TREE_BENEATH handling by do_move_mount()

    Normally do_lock_mount(path, _) is locking a mountpoint pinned by
    *path and at the time when matching unlock_mount() unlocks that
    location it is still pinned by the same thing.

    Unfortunately, for ‘beneath’ case it’s no longer that simple –
    the object being locked is not the one *path points to. It’s the
    mountpoint of path->mnt. The thing is, without sufficient locking
    ->mnt_parent may change under us and none of the locks are held
    at that point. The rules are
    * mount_lock stabilizes m->mnt_parent for any mount m.
    * namespace_sem stabilizes m->mnt_parent, provided that
    m is mounted.
    * if either of the above holds and refcount of m is positive,
    we are guaranteed the same for refcount of m->mnt_parent.

    namespace_sem nests inside inode_lock(), so do_lock_mount() has
    to take inode_lock() before grabbing namespace_sem. It does
    recheck that path->mnt is still mounted in the same place after
    getting namespace_sem, and it does take care to pin the dentry.
    It is needed, since otherwise we might end up with racing mount –move
    (or umount) happening while we were getting locks; in that case
    dentry would no longer be a mountpoint and could’ve been evicted
    on memory pressure along with its inode – not something you want
    when grabbing lock on that inode.

    However, pinning a dentry is not enough – the matching mount is
    also pinned only by the fact that path->mnt is mounted on top it
    and at that point we are not holding any locks whatsoever, so
    the same kind of races could end up with all references to
    that mount gone just as we are about to enter inode_lock().
    If that happens, we are left with filesystem being shut down while
    we are holding a dentry reference on it; results are not pretty.

    What we need to do is grab both dentry and mount at the same time;
    that makes inode_lock() safe *and* avoids the problem with fs getting
    shut down under us. After taking namespace_sem we verify that
    path->mnt is still mounted (which stabilizes its ->mnt_parent) and
    check that it’s still mounted at the same place. From that point
    on to the matching namespace_unlock() we are guaranteed that
    mount/dentry pair we’d grabbed are also pinned by being the mountpoint
    of path->mnt, so we can quietly drop both the dentry reference (as
    the current code does) and mnt one – it’s OK to do under namespace_sem,
    since we are not dropping the final refs.

    That solves the problem on do_lock_mount() side; unlock_mount()
    also has one, since dentry is guaranteed to stay pinned only until
    the namespace_unlock(). That’s easy to fix – just have inode_unlock()
    done earlier, while it’s still pinned by mp->m_dentry.

    Severity: 0.0 | NA

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    CVE-2025-44830 – EngineerCMS SQL Injection

    May 12, 2025

    CVE-2025-48447 – Drupal Lightgallery Cross-Site Scripting (XSS)

    June 11, 2025

    CVE-2025-36573 – Dell Smart Dock Firmware Information Disclosure Vulnerability

    June 12, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.