CVE-2026-46322
- EPSS 0.13%
- Veröffentlicht 09.06.2026 12:11:14
- Zuletzt bearbeitet 23.07.2026 08:10:00
In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one() When build_skb() fails in tun_xdp_one(), the function sets ret to -ENOMEM and jumps to the out label, which returns without fre...
CVE-2026-46321
- EPSS 0.13%
- Veröffentlicht 09.06.2026 12:11:13
- Zuletzt bearbeitet 23.07.2026 08:10:00
In the Linux kernel, the following vulnerability has been resolved: tun: free page on short-frame rejection in tun_xdp_one() tun_xdp_one() returns -EINVAL on a frame shorter than ETH_HLEN without freeing the page that vhost_net_build_xdp() allocate...
CVE-2026-46319
- EPSS 0.13%
- Veröffentlicht 09.06.2026 12:11:12
- Zuletzt bearbeitet 23.07.2026 08:10:00
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_ft When looking up a flow table in act_ct in tcf_ct_flow_table_get(), rhashtable_lookup_fast() internally opens and closes an...
CVE-2026-46320
- EPSS 0.24%
- Veröffentlicht 09.06.2026 12:11:12
- Zuletzt bearbeitet 23.07.2026 08:10:00
In the Linux kernel, the following vulnerability has been resolved: tap: free page on error paths in tap_get_user_xdp() tap_get_user_xdp() rejects a frame shorter than ETH_HLEN with -EINVAL, and returns -ENOMEM when build_skb() fails. Both paths ju...
CVE-2025-10263
- EPSS 0.57%
- Veröffentlicht 09.06.2026 09:23:18
- Zuletzt bearbeitet 04.09.2026 13:17:52
Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to ...
CVE-2026-46312
- EPSS 0.11%
- Veröffentlicht 08.06.2026 15:50:42
- Zuletzt bearbeitet 23.07.2026 07:10:00
In the Linux kernel, the following vulnerability has been resolved: media: videobuf2: Set vma_flags in vb2_dma_sg_mmap vb2_dma_contig sets VMA flags VM_DONTEXPAND and VM_DONTDUMP and I do not see a reason why vb2_dma_sg should behave differently. T...
CVE-2026-46311
- EPSS 0.11%
- Veröffentlicht 08.06.2026 15:50:41
- Zuletzt bearbeitet 23.07.2026 08:10:00
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping Use drm_exec to take both locks i.e vm root bo and wptr_obj bo to access the mapping data properly. This fixes the security issu...
CVE-2026-46307
- EPSS 0.22%
- Veröffentlicht 08.06.2026 15:46:35
- Zuletzt bearbeitet 23.07.2026 08:10:00
In the Linux kernel, the following vulnerability has been resolved: wifi: ath5k: do not access array OOB Vincent reports: > The ath5k driver seems to do an array-index-out-of-bounds access as > shown by the UBSAN kernel message: > UBSAN: array-inde...
CVE-2026-46304
- EPSS 0.39%
- Veröffentlicht 08.06.2026 15:46:31
- Zuletzt bearbeitet 08.07.2026 14:48:12
In the Linux kernel, the following vulnerability has been resolved: nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free nvmet_tcp_release_queue_work() runs on nvmet-wq and can drop the final controller reference through nvmet_cq_put(). If that...
CVE-2026-46303
- EPSS 0.28%
- Veröffentlicht 08.06.2026 15:46:30
- Zuletzt bearbeitet 08.09.2026 09:18:09
In the Linux kernel, the following vulnerability has been resolved: isofs: validate Rock Ridge CE continuation extent against volume size rock_continue() reads rs->cont_extent verbatim from the Rock Ridge CE record and passes it to sb_bread() witho...