Linux

Linux

14434 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:23
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix out-of-bounds read of sk_protocol in bpf_sock_destroy() sk_protocol lives in struct sock, not in struct sock_common. A timewait or request sock handed to bpf_sock_destroy(...

  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:22
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow bpf_skb_pull_data() for LWT_SEG6LOCAL An LWT_SEG6LOCAL program can invalidate its cached SRH with bpf_lwt_seg6_adjust_srh() and then call bpf_skb_pull_data(). The lat...

  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:21
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject dev-bound-only programs on other devices __bpf_offload_dev_match() falls back to comparing offdev pointers after an exact netdev mismatch. Bound-only programs normally ...

  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:21
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: veth: manage XDP program pointers during channel resize veth_set_channels() tears down XDP resources for removed RX queues without clearing rq->xdp_prog. If the program is then de...

  • EPSS 0.18%
  • Veröffentlicht 09.10.2026 07:34:20
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: net/sched: reject IDR error pointers when deleting actions tcf_action_delete() drops the reference held by its lookup before calling tcf_idr_delete_index() with the saved action in...

  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:19
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rpfilter: reject routes without inet6_dev ip6_route_lookup() can return an error-free route whose rt6i_idev is NULL. Lowering an external nexthop device's MTU below...

  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:18
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: bpf: Skip unsettled links in link iterator bpf_link_prime() inserts a link into link_idr before anon_inode_getfile() succeeds and before bpf_link_settle() publishes the ID in link-...

  • EPSS 0.16%
  • Veröffentlicht 09.10.2026 07:34:17
  • Zuletzt bearbeitet 09.10.2026 08:16:56

In the Linux kernel, the following vulnerability has been resolved: vlan: require the MAC header to be present in __vlan_insert_inner_tag() __vlan_insert_inner_tag() only guarantees head room via skb_cow_head(), never that mac_len bytes of MAC head...

  • EPSS 0.15%
  • Veröffentlicht 09.10.2026 07:34:17
  • Zuletzt bearbeitet 09.10.2026 08:16:55

In the Linux kernel, the following vulnerability has been resolved: bpf: Use array_map_meta_equal for percpu array inner map replacement percpu_array_map_ops.map_meta_equal points to the generic bpf_map_meta_equal(), which does not compare max_entr...

  • EPSS 0.15%
  • Veröffentlicht 09.10.2026 07:10:45
  • Zuletzt bearbeitet 09.10.2026 12:17:13

In the Linux kernel, the following vulnerability has been resolved: xen/netfront: drop RX packets with a short Ethernet header handle_incoming_queue() pulls pull_to bytes into the head before calling eth_type_trans(). pull_to is the length of the ...