Linux

Linux

8660 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Veröffentlicht 02.04.2026 11:40:55
  • Zuletzt bearbeitet 27.04.2026 14:16:31

In the Linux kernel, the following vulnerability has been resolved: tls: Purge async_hold in tls_decrypt_async_wait() The async_hold queue pins encrypted input skbs while the AEAD engine references their scatterlist data. Once tls_decrypt_async_wai...

  • EPSS 0.02%
  • Veröffentlicht 02.04.2026 11:40:54
  • Zuletzt bearbeitet 27.04.2026 14:16:31

In the Linux kernel, the following vulnerability has been resolved: clsact: Fix use-after-free in init/destroy rollback asymmetry Fix a use-after-free in the clsact qdisc upon init/destroy rollback asymmetry. The latter is achieved by first fully i...

  • EPSS 0.02%
  • Veröffentlicht 02.04.2026 11:40:53
  • Zuletzt bearbeitet 27.04.2026 14:16:31

In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: defer hook memory release until rcu readers are done Yiming Qian reports UaF when concurrent process is dumping hooks via nfnetlink_hooks: BUG: KASAN: slab-use-aft...

  • EPSS 0.01%
  • Veröffentlicht 01.04.2026 08:36:39
  • Zuletzt bearbeitet 24.04.2026 15:23:43

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix race on rawdata dereference There is a race condition that leads to a use-after-free situation: because the rawdata inodes are not refcounted, an attacker can start o...

  • EPSS 0.01%
  • Veröffentlicht 01.04.2026 08:36:39
  • Zuletzt bearbeitet 24.04.2026 15:23:12

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix race between freeing data and fs accessing it AppArmor was putting the reference to i_private data on its end after removing the original entry from the file system. ...

  • EPSS 0.02%
  • Veröffentlicht 01.04.2026 08:36:38
  • Zuletzt bearbeitet 24.04.2026 15:23:55

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix differential encoding verification Differential encoding allows loops to be created if it is abused. To prevent this the unpack should verify that a diff-encode chain...

  • EPSS 0.02%
  • Veröffentlicht 01.04.2026 08:36:37
  • Zuletzt bearbeitet 24.04.2026 16:38:39

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix missing bounds check on DEFAULT table in verify_dfa() The verify_dfa() function only checks DEFAULT_TABLE bounds when the state is not differentially encoded. When t...

  • EPSS 0.02%
  • Veröffentlicht 01.04.2026 08:36:37
  • Zuletzt bearbeitet 24.04.2026 15:24:02

In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix double free of ns_name in aa_replace_profiles() if ns_name is NULL after 1071 error = aa_unpack(udata, &lh, &ns_name); and if ent->ns_name contains an ns_nam...

  • EPSS 0.02%
  • Veröffentlicht 01.04.2026 08:36:36
  • Zuletzt bearbeitet 24.04.2026 18:40:51

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix side-effect bug in match_char() macro usage The match_char() macro evaluates its character parameter multiple times when traversing differential encoding chains. When...

  • EPSS 0.02%
  • Veröffentlicht 01.04.2026 08:36:35
  • Zuletzt bearbeitet 24.04.2026 18:40:10

In the Linux kernel, the following vulnerability has been resolved: apparmor: replace recursive profile removal with iterative approach The profile removal code uses recursion when removing nested profiles, which can lead to kernel stack exhaustion...