- EPSS 0.17%
- Veröffentlicht 19.07.2026 14:56:06
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: net/sched: fix packet loop on netem when duplicate is on When netem duplicates a packet it re-enqueues the copy at the root qdisc. If another netem sits in the tree the copy can be...
CVE-2026-63984
- EPSS 0.51%
- Veröffentlicht 19.07.2026 14:56:06
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() ipv6_rpl_srh_decompress() computes: outhdr->hdrlen = (((n + 1) * sizeof(struct in6_addr)) >> 3); hdrlen is __u8. F...
CVE-2026-63976
- EPSS 0.44%
- Veröffentlicht 19.07.2026 14:56:01
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: clear chan->ident on ECRED reconfiguration success l2cap_ecred_reconf_rsp() returns early on success without clearing chan->ident. Every other L2CAP response hand...
CVE-2026-63975
- EPSS 0.35%
- Veröffentlicht 19.07.2026 14:56:00
- Zuletzt bearbeitet 02.10.2026 19:47:46
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp If dcid is received for an already-assigned destination CID the spec requires that both channels to be discarded, but c...
CVE-2026-63971
- EPSS 0.17%
- Veröffentlicht 19.07.2026 14:55:57
- Zuletzt bearbeitet 02.10.2026 19:39:40
In the Linux kernel, the following vulnerability has been resolved: sctp: fix race between sctp_wait_for_connect and peeloff sctp_wait_for_connect() drops and re-acquires the socket lock while waiting for the association to reach ESTABLISHED state....
- EPSS 0.21%
- Veröffentlicht 19.07.2026 14:55:54
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix stack leak in tagged FIFO buffer The tagged FIFO path declares iio_buff on the stack with __aligned(8) but no initializer, but there is a hole in the stru...
- EPSS 0.21%
- Veröffentlicht 19.07.2026 14:55:53
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: ccg: reject firmware images without a ':' record header do_flash() locates the first .cyacd record with p = strnchr(fw->data, fw->size, ':'); while (p < eof) {...
- EPSS 0.2%
- Veröffentlicht 19.07.2026 14:55:52
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers Properly validate the count passed from a device when calling svdm_consume_identity() or svdm_consume_identit...
- EPSS 0.2%
- Veröffentlicht 19.07.2026 14:55:51
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: bound altmode_desc[] per iteration in svdm_consume_modes() svdm_consume_modes() checks pmdata->altmodes against the array size once before the loop over the count...
- EPSS 0.21%
- Veröffentlicht 19.07.2026 14:55:50
- Zuletzt bearbeitet 30.07.2026 14:51:11
In the Linux kernel, the following vulnerability has been resolved: usb: typec: wcove: don't write past struct pd_message in wcove_read_rx_buffer() wcove_read_rx_buffer() copies the PD RX FIFO into the caller's struct pd_message with for (i = 0; ...