CVE-2026-43426
- EPSS 0.13%
- Veröffentlicht 08.05.2026 14:21:59
- Zuletzt bearbeitet 20.05.2026 18:32:36
In the Linux kernel, the following vulnerability has been resolved: usb: renesas_usbhs: fix use-after-free in ISR during device removal In usbhs_remove(), the driver frees resources (including the pipe array) while the interrupt handler (usbhs_inte...
CVE-2026-43424
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:58
- Zuletzt bearbeitet 20.05.2026 18:37:33
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: Fix NULL pointer dereferences in nexus handling The `tpg->tpg_nexus` pointer in the USB Target driver is dynamically managed and tied to userspace configuration...
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:56
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ncm: Fix net_device lifecycle with device_move The network device outlived its parent gadget device during disconnection, resulting in dangling sysfs links and null ...
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:55
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: ceph: fix memory leaks in ceph_mdsc_build_path() Add __putname() calls to error code paths that did not free the "path" pointer obtained by __getname(). If ownership of this point...
- EPSS 0.09%
- Veröffentlicht 08.05.2026 14:21:55
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: ceph: fix i_nlink underrun during async unlink During async unlink, we drop the `i_nlink` counter before we receive the completion (that will eventually update the `i_nlink`) becau...
CVE-2026-43416
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:52
- Zuletzt bearbeitet 26.05.2026 14:48:29
In the Linux kernel, the following vulnerability has been resolved: powerpc, perf: Check that current->mm is alive before getting user callchain It may happen that mm is already released, which leads to kernel panic. This adds the NULL check for cu...
CVE-2026-43413
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:50
- Zuletzt bearbeitet 21.05.2026 18:10:24
In the Linux kernel, the following vulnerability has been resolved: scsi: hisi_sas: Fix NULL pointer exception during user_scan() user_scan() invokes updated sas_user_scan() for channel 0, and if successful, iteratively scans remaining channels (1 ...
CVE-2026-43411
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:49
- Zuletzt bearbeitet 21.05.2026 18:13:28
In the Linux kernel, the following vulnerability has been resolved: tipc: fix divide-by-zero in tipc_sk_filter_connect() A user can set conn_timeout to any value via setsockopt(TIPC_CONN_TIMEOUT), including values less than 4. When a SYN is reject...
CVE-2026-43409
- EPSS 0.12%
- Veröffentlicht 08.05.2026 14:21:48
- Zuletzt bearbeitet 21.05.2026 19:03:05
In the Linux kernel, the following vulnerability has been resolved: kprobes: avoid crash when rmmod/insmod after ftrace killed After we hit ftrace is killed by some errors, the kernel crash if we remove modules in which kprobe probes. BUG: unable ...
CVE-2026-43406
- EPSS 0.5%
- Veröffentlicht 08.05.2026 14:21:46
- Zuletzt bearbeitet 21.05.2026 19:09:31
In the Linux kernel, the following vulnerability has been resolved: libceph: prevent potential out-of-bounds reads in process_message_header() If the message frame is (maliciously) corrupted in a way that the length of the control segment ends up b...