- EPSS 0.04%
- Veröffentlicht 18.03.2026 10:05:01
- Zuletzt bearbeitet 18.03.2026 14:52:44
In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata We found an infinite loop bug in the ntfs3 file system that can lead to a Denial-of-Service (DoS) cond...
- EPSS 0.03%
- Veröffentlicht 17.03.2026 09:11:04
- Zuletzt bearbeitet 18.03.2026 10:16:25
In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and listxattr() are missing from the audit read class. Calling getxattrat() or listxattrat() on a file to r...
- EPSS 0.04%
- Veröffentlicht 17.03.2026 09:11:03
- Zuletzt bearbeitet 18.03.2026 17:16:04
In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to change attributes class fchmodat2(), introduced in version 6.6 is currently not in the change attribute class of audit. Calling fchmodat2() to change a fi...
CVE-2026-23240
- EPSS 0.07%
- Veröffentlicht 10.03.2026 17:28:27
- Zuletzt bearbeitet 02.04.2026 15:16:25
In the Linux kernel, the following vulnerability has been resolved: tls: Fix race condition in tls_sw_cancel_work_tx() This issue was discovered during a code audit. After cancel_delayed_work_sync() is called from tls_sk_proto_close(), tx_work_han...
CVE-2026-23239
- EPSS 0.02%
- Veröffentlicht 10.03.2026 17:28:26
- Zuletzt bearbeitet 02.04.2026 15:16:25
In the Linux kernel, the following vulnerability has been resolved: espintcp: Fix race condition in espintcp_close() This issue was discovered during a code audit. After cancel_work_sync() is called from espintcp_close(), espintcp_tx_work() can st...
- EPSS 0.01%
- Veröffentlicht 09.03.2026 16:16:14
- Zuletzt bearbeitet 06.04.2026 08:16:36
In the Linux kernel, the following vulnerability has been resolved: fs/xattr: missing fdput() in fremovexattr error path In the Linux kernel, the fremovexattr() syscall calls fdget() to acquire a file reference but returns early without calling fdp...
CVE-2026-23238
- EPSS 0.01%
- Veröffentlicht 04.03.2026 14:38:42
- Zuletzt bearbeitet 17.03.2026 21:15:39
In the Linux kernel, the following vulnerability has been resolved: romfs: check sb_set_blocksize() return value romfs_fill_super() ignores the return value of sb_set_blocksize(), which can fail if the requested block size is incompatible with the ...
CVE-2026-23237
- EPSS 0.01%
- Veröffentlicht 04.03.2026 14:38:41
- Zuletzt bearbeitet 17.03.2026 21:16:04
In the Linux kernel, the following vulnerability has been resolved: platform/x86: classmate-laptop: Add missing NULL pointer checks In a few places in the Classmate laptop driver, code using the accel object may run before that object's address is ...
CVE-2026-23236
- EPSS 0.01%
- Veröffentlicht 04.03.2026 14:36:40
- Zuletzt bearbeitet 02.04.2026 15:16:24
In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: properly copy ioctl memory to kernelspace The UFX_IOCTL_REPORT_DAMAGE ioctl does not properly copy data from userspace to kernelspace, and instead directly referenc...
CVE-2026-23235
- EPSS 0.02%
- Veröffentlicht 04.03.2026 14:36:39
- Zuletzt bearbeitet 17.03.2026 21:20:33
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix out-of-bounds access in sysfs attribute read/write Some f2fs sysfs attributes suffer from out-of-bounds memory access and incorrect handling of integer values whose size ...