CVE-2026-43041
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:38
- Zuletzt bearbeitet 08.05.2026 18:54:39
In the Linux kernel, the following vulnerability has been resolved: net: qrtr: replace qrtr_tx_flow radix_tree with xarray to fix memory leak __radix_tree_create() allocates and links intermediate nodes into the tree one by one. If a subsequent all...
CVE-2026-43042
- EPSS 0.02%
- Veröffentlicht 01.05.2026 14:15:38
- Zuletzt bearbeitet 08.05.2026 18:55:44
In the Linux kernel, the following vulnerability has been resolved: mpls: add seqcount to protect the platform_label{,s} pair The RCU-protected codepaths (mpls_forward, mpls_dump_routes) can have an inconsistent view of platform_labels vs platform_...
CVE-2026-43040
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:37
- Zuletzt bearbeitet 08.05.2026 18:53:20
In the Linux kernel, the following vulnerability has been resolved: net: ipv6: ndisc: fix ndisc_ra_useropt to initialize nduseropt_padX fields to zero to prevent an info-leak When processing Router Advertisements with user options the kernel builds...
CVE-2026-43037
- EPSS 0.11%
- Veröffentlicht 01.05.2026 14:15:35
- Zuletzt bearbeitet 04.05.2026 18:26:53
In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() Oskar Kjos reported the following problem. ip4ip6_err() calls icmp_send() on a cloned skb whose cb[] was written by the IPv6 receive p...
CVE-2026-43038
- EPSS 0.07%
- Veröffentlicht 01.05.2026 14:15:35
- Zuletzt bearbeitet 08.05.2026 18:47:20
In the Linux kernel, the following vulnerability has been resolved: ipv6: icmp: clear skb2->cb[] in ip6_err_gen_icmpv6_unreach() Sashiko AI-review observed: In ip6_err_gen_icmpv6_unreach(), the skb is an outer IPv4 ICMP error packet where its ...
CVE-2026-43036
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:34
- Zuletzt bearbeitet 08.05.2026 18:44:10
In the Linux kernel, the following vulnerability has been resolved: net: use skb_header_pointer() for TCPv4 GSO frag_off check Syzbot reported a KMSAN uninit-value warning in gso_features_check() called from netif_skb_features() [1]. gso_features_...
CVE-2026-43035
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:33
- Zuletzt bearbeitet 08.05.2026 18:43:05
In the Linux kernel, the following vulnerability has been resolved: net: sched: cls_api: fix tc_chain_fill_node to initialize tcm_info to zero to prevent an info-leak When building netlink messages, tc_chain_fill_node() never initializes the tcm_in...
CVE-2026-43033
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:32
- Zuletzt bearbeitet 08.05.2026 18:40:49
In the Linux kernel, the following vulnerability has been resolved: crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption When decrypting data that is not in-place (src != dst), there is no need to save the high-order se...
CVE-2026-43032
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:31
- Zuletzt bearbeitet 08.05.2026 18:39:32
In the Linux kernel, the following vulnerability has been resolved: NFC: pn533: bound the UART receive buffer pn532_receive_buf() appends every incoming byte to dev->recv_skb and only resets the buffer after pn532_uart_rx_is_frame() recognizes a co...
CVE-2026-43030
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:30
- Zuletzt bearbeitet 08.05.2026 18:36:14
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix regsafe() for pointers to packet In case rold->reg->range == BEYOND_PKT_END && rcur->reg->range == N regsafe() may return true which may lead to current state with valid p...