CVE-2026-53192
- EPSS 0.13%
- Veröffentlicht 25.06.2026 08:39:03
- Zuletzt bearbeitet 06.07.2026 12:37:12
In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Fix UAF at snd_timer_user_params() At releasing a timer object, e.g. when a userspace timer (CONFIG_SND_UTIMER) gets closed and snd_timer_free() is called, it tries to...
CVE-2026-53189
- EPSS 0.13%
- Veröffentlicht 25.06.2026 08:39:01
- Zuletzt bearbeitet 06.07.2026 12:38:16
In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: update file PMD counter before folio_put() __split_huge_pmd_locked() updates the file/shmem RSS counter after dropping the PMD mapping's folio reference. If folio_...
CVE-2026-53186
- EPSS 0.51%
- Veröffentlicht 25.06.2026 08:38:59
- Zuletzt bearbeitet 06.07.2026 12:41:25
In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: bound SRP_RSP sense copy by the received length srp_process_rsp() copies sense data from rsp->data + resp_data_len, where resp_data_len is the full 32-bit value supplied ...
CVE-2026-53185
- EPSS 0.1%
- Veröffentlicht 25.06.2026 08:38:58
- Zuletzt bearbeitet 09.09.2026 13:20:28
In the Linux kernel, the following vulnerability has been resolved: zram: fix use-after-free in zram_bvec_write_partial() zram_read_page() picks the sync or async backing device read path based on whether the parent bio is NULL. zram_bvec_write_pa...
CVE-2026-53181
- EPSS 0.12%
- Veröffentlicht 25.06.2026 08:38:55
- Zuletzt bearbeitet 06.07.2026 12:43:23
In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: fix sk_ack_backlog leak on failed handshake When vmci_transport_recv_connecting_server() returns an error, vmci_transport_recv_listen() calls vsock_remove_pending() but...
CVE-2026-53177
- EPSS 0.12%
- Veröffentlicht 25.06.2026 08:38:53
- Zuletzt bearbeitet 06.07.2026 18:20:52
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix NULL pointer dereference PCIe errors detected by a Root Port or Downstream Port cause error recovery services to run on all subordinate devices regardless of administr...
CVE-2026-53176
- EPSS 0.73%
- Veröffentlicht 25.06.2026 08:38:52
- Zuletzt bearbeitet 18.09.2026 13:18:32
In the Linux kernel, the following vulnerability has been resolved: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN In drivers/infiniband/ulp/isert/ib_isert.c, isert_login_recv_done() computes the login request payload length as wc->byte_...
CVE-2026-53168
- EPSS 0.12%
- Veröffentlicht 25.06.2026 08:38:47
- Zuletzt bearbeitet 06.07.2026 20:12:00
In the Linux kernel, the following vulnerability has been resolved: fuse: reject fuse_notify() pagecache ops on directories The operations FUSE_NOTIFY_STORE and FUSE_NOTIFY_RETRIEVE allow the FUSE daemon to actively write/read pagecache contents. ...
CVE-2026-53167
- EPSS 0.13%
- Veröffentlicht 25.06.2026 08:38:46
- Zuletzt bearbeitet 30.07.2026 14:16:58
In the Linux kernel, the following vulnerability has been resolved: fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios FUSE_NOTIFY_RETRIEVE must be limited to uptodate folios; !uptodate folios can contain uninitialized data. Since FUSE_NOTIFY_RETR...
CVE-2026-53161
- EPSS 0.13%
- Veröffentlicht 25.06.2026 08:38:42
- Zuletzt bearbeitet 06.07.2026 16:42:02
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix use-after-free of fastrpc_user in workqueue context There is a race between fastrpc_device_release() and the workqueue that processes DSP responses. When the use...