CVE-2026-43190
- EPSS 0.07%
- Veröffentlicht 06.05.2026 11:27:59
- Zuletzt bearbeitet 11.05.2026 20:50:14
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_tcpmss: check remaining length before reading optlen Quoting reporter: In net/netfilter/xt_tcpmss.c (lines 53-68), the TCP option parser reads op[i+1] directly wit...
CVE-2026-43188
- EPSS 0.01%
- Veröffentlicht 06.05.2026 11:27:58
- Zuletzt bearbeitet 11.05.2026 20:38:38
In the Linux kernel, the following vulnerability has been resolved: ceph: do not propagate page array emplacement errors as batch errors When fscrypt is enabled, move_dirty_folio_in_page_array() may fail because it needs to allocate bounce buffers ...
CVE-2026-43186
- EPSS 0.18%
- Veröffentlicht 06.05.2026 11:27:57
- Zuletzt bearbeitet 11.05.2026 20:40:56
In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: fix heap buffer overflow in __ioam6_fill_trace_data() On the receive path, __ioam6_fill_trace_data() uses trace->nodelen to decide how much data to write for each node....
CVE-2026-43187
- EPSS 0.06%
- Veröffentlicht 06.05.2026 11:27:57
- Zuletzt bearbeitet 11.05.2026 20:38:50
In the Linux kernel, the following vulnerability has been resolved: xfs: delete attr leaf freemap entries when empty Back in commit 2a2b5932db6758 ("xfs: fix attr leaf header freemap.size underflow"), Brian Foster observed that it's possible for a ...
CVE-2026-43185
- EPSS 0.05%
- Veröffentlicht 06.05.2026 11:27:56
- Zuletzt bearbeitet 11.05.2026 20:52:58
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix signededness bug in smb_direct_prepare_negotiation() smb_direct_prepare_negotiation() casts an unsigned __u32 value from sp->max_recv_size and req->preferred_send_size t...
CVE-2026-43184
- EPSS 0.05%
- Veröffentlicht 06.05.2026 11:27:55
- Zuletzt bearbeitet 11.05.2026 20:56:19
In the Linux kernel, the following vulnerability has been resolved: rnbd-srv: Zero the rsp buffer before using it Before using the data buffer to send back the response message, zero it completely. This prevents any stray bytes to be picked up by t...
CVE-2026-43182
- EPSS 0.01%
- Veröffentlicht 06.05.2026 11:27:54
- Zuletzt bearbeitet 11.05.2026 20:53:18
In the Linux kernel, the following vulnerability has been resolved: media: ccs: Avoid possible division by zero Calculating maximum M for scaler configuration involves dividing by MIN_X_OUTPUT_SIZE limit register's value. Albeit the value is presum...
CVE-2026-43183
- EPSS 0.01%
- Veröffentlicht 06.05.2026 11:27:54
- Zuletzt bearbeitet 11.05.2026 20:55:02
In the Linux kernel, the following vulnerability has been resolved: media: cx25821: Fix a resource leak in cx25821_dev_setup() Add release_mem_region() if ioremap() fails to release the memory region obtained by cx25821_get_resources().
CVE-2026-43181
- EPSS 0.01%
- Veröffentlicht 06.05.2026 11:27:53
- Zuletzt bearbeitet 11.05.2026 20:53:27
In the Linux kernel, the following vulnerability has been resolved: gpio: sysfs: fix chip removal with GPIOs exported over sysfs Currently if we export a GPIO over sysfs and unbind the parent GPIO controller, the exported attribute will remain unde...
CVE-2026-43179
- EPSS 0.01%
- Veröffentlicht 06.05.2026 11:27:52
- Zuletzt bearbeitet 12.05.2026 19:48:29
In the Linux kernel, the following vulnerability has been resolved: erofs: fix incorrect early exits for invalid metabox-enabled images Crafted EROFS images with metadata compression enabled can trigger incorrect early returns, leading to folio ref...