- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:23
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix out-of-bounds read of sk_protocol in bpf_sock_destroy() sk_protocol lives in struct sock, not in struct sock_common. A timewait or request sock handed to bpf_sock_destroy(...
- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:22
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow bpf_skb_pull_data() for LWT_SEG6LOCAL An LWT_SEG6LOCAL program can invalidate its cached SRH with bpf_lwt_seg6_adjust_srh() and then call bpf_skb_pull_data(). The lat...
- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:21
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: bpf: Reject dev-bound-only programs on other devices __bpf_offload_dev_match() falls back to comparing offdev pointers after an exact netdev mismatch. Bound-only programs normally ...
- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:21
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: veth: manage XDP program pointers during channel resize veth_set_channels() tears down XDP resources for removed RX queues without clearing rq->xdp_prog. If the program is then de...
- EPSS 0.18%
- Veröffentlicht 09.10.2026 07:34:20
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: net/sched: reject IDR error pointers when deleting actions tcf_action_delete() drops the reference held by its lookup before calling tcf_idr_delete_index() with the saved action in...
- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:19
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rpfilter: reject routes without inet6_dev ip6_route_lookup() can return an error-free route whose rt6i_idev is NULL. Lowering an external nexthop device's MTU below...
- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:18
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: bpf: Skip unsettled links in link iterator bpf_link_prime() inserts a link into link_idr before anon_inode_getfile() succeeds and before bpf_link_settle() publishes the ID in link-...
- EPSS 0.16%
- Veröffentlicht 09.10.2026 07:34:17
- Zuletzt bearbeitet 09.10.2026 08:16:56
In the Linux kernel, the following vulnerability has been resolved: vlan: require the MAC header to be present in __vlan_insert_inner_tag() __vlan_insert_inner_tag() only guarantees head room via skb_cow_head(), never that mac_len bytes of MAC head...
- EPSS 0.15%
- Veröffentlicht 09.10.2026 07:34:17
- Zuletzt bearbeitet 09.10.2026 08:16:55
In the Linux kernel, the following vulnerability has been resolved: bpf: Use array_map_meta_equal for percpu array inner map replacement percpu_array_map_ops.map_meta_equal points to the generic bpf_map_meta_equal(), which does not compare max_entr...
- EPSS 0.15%
- Veröffentlicht 09.10.2026 07:10:45
- Zuletzt bearbeitet 09.10.2026 12:17:13
In the Linux kernel, the following vulnerability has been resolved: xen/netfront: drop RX packets with a short Ethernet header handle_incoming_queue() pulls pull_to bytes into the head before calling eth_type_trans(). pull_to is the length of the ...