CVE-2026-22980
- EPSS 0.13%
- Veröffentlicht 23.01.2026 15:24:02
- Zuletzt bearbeitet 14.07.2026 13:18:21
In the Linux kernel, the following vulnerability has been resolved: nfsd: provide locking for v4_end_grace Writing to v4_end_grace can race with server shutdown and result in memory being accessed after it was freed - reclaim_str_hashtbl in particu...
CVE-2026-22978
- EPSS 0.12%
- Veröffentlicht 23.01.2026 15:24:00
- Zuletzt bearbeitet 26.02.2026 20:17:16
In the Linux kernel, the following vulnerability has been resolved: wifi: avoid kernel-infoleak from struct iw_point struct iw_point has a 32bit hole on 64bit arches. struct iw_point { void __user *pointer; /* Pointer to the data (in us...
CVE-2025-71161
- EPSS 0.34%
- Veröffentlicht 23.01.2026 15:23:59
- Zuletzt bearbeitet 30.07.2026 06:24:55
In the Linux kernel, the following vulnerability has been resolved: dm-verity: disable recursive forward error correction There are two problems with the recursive correction: 1. It may cause denial-of-service. In fec_read_bufs, there is a loop th...
CVE-2025-71160
- EPSS 0.16%
- Veröffentlicht 23.01.2026 15:23:58
- Zuletzt bearbeitet 26.02.2026 20:19:14
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: avoid chain re-validation if possible Hamza Mahfooz reports cpu soft lock-ups in nft_chain_validate(): watchdog: BUG: soft lockup - CPU#1 stuck for 27s! [ip...
CVE-2025-71154
- EPSS 0.11%
- Veröffentlicht 23.01.2026 14:25:53
- Zuletzt bearbeitet 26.02.2026 20:30:51
In the Linux kernel, the following vulnerability has been resolved: net: usb: rtl8150: fix memory leak on usb_submit_urb() failure In async_set_registers(), when usb_submit_urb() fails, the allocated async_req structure and URB are not freed, cau...
CVE-2025-71152
- EPSS 0.12%
- Veröffentlicht 23.01.2026 14:25:52
- Zuletzt bearbeitet 25.03.2026 11:16:14
In the Linux kernel, the following vulnerability has been resolved: net: dsa: properly keep track of conduit reference Problem description ------------------- DSA has a mumbo-jumbo of reference handling of the conduit net device and its kobject wh...
CVE-2026-22977
- EPSS 0.13%
- Veröffentlicht 21.01.2026 13:08:54
- Zuletzt bearbeitet 14.07.2026 13:18:20
In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened usercopy panic in sock_recv_errqueue skbuff_fclone_cache was created without defining a usercopy region, [1] unlike skbuff_head_cache which properly whiteli...
CVE-2026-22976
- EPSS 0.12%
- Veröffentlicht 21.01.2026 06:57:23
- Zuletzt bearbeitet 02.06.2026 14:16:45
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset `qfq_class->leaf_qdisc->q.qlen > 0` does not imply that the class itself is active. Two qfq_cl...
CVE-2025-71136
- EPSS 0.12%
- Veröffentlicht 14.01.2026 15:16:03
- Zuletzt bearbeitet 30.07.2026 06:24:54
In the Linux kernel, the following vulnerability has been resolved: media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status() It's possible for cp_read() and hdmi_read() to return -EIO. Those values are further used as ...
CVE-2025-71137
- EPSS 0.16%
- Veröffentlicht 14.01.2026 15:16:03
- Zuletzt bearbeitet 25.03.2026 18:03:28
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: fix "UBSAN: shift-out-of-bounds error" This patch ensures that the RX ring size (rx_pending) is not set below the permitted length. This avoids UBSAN shift-out-of-bou...