CVE-2026-98254
- EPSS 0.14%
- Veröffentlicht 06.10.2026 08:45:20
- Zuletzt bearbeitet 07.10.2026 07:17:06
In the Linux kernel, the following vulnerability has been resolved: swiotlb: use the adjusted address for the highmem page lookup swiotlb_bounce() reads the page frame number from the slot's recorded orig_addr, then advances orig_addr by tlb_offset...
CVE-2026-98253
- EPSS 0.14%
- Veröffentlicht 06.10.2026 08:45:20
- Zuletzt bearbeitet 07.10.2026 07:17:06
In the Linux kernel, the following vulnerability has been resolved: RDMA/ucma: Serialize join and leave on copy_to_user failure rdma_join_multicast() queues RoCE work that later reads the ucma_multicast through event->param.ud.private_data, then li...
- EPSS 0.12%
- Veröffentlicht 06.10.2026 08:45:19
- Zuletzt bearbeitet 07.10.2026 07:17:06
In the Linux kernel, the following vulnerability has been resolved: RDMA/core: fix refcount bug in iwpm_get_nlmsg_request() iwpm_get_nlmsg_request() initializes refcount _after_ list_add_tail() making it accessible to global list where another CPU ...
CVE-2026-98251
- EPSS 0.14%
- Veröffentlicht 06.10.2026 08:45:18
- Zuletzt bearbeitet 07.10.2026 07:17:06
In the Linux kernel, the following vulnerability has been resolved: openvswitch: avoid reallocating confirmed conntrack labels ovs_ct_get_conn_labels() adds the labels extension when a conntrack entry does not have one. Confirmed conntracks can be...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:17
- Zuletzt bearbeitet 06.10.2026 09:18:13
In the Linux kernel, the following vulnerability has been resolved: arm64: hibernate: pass HVC_SET_VECTORS args to the resume hvc swsusp_arch_suspend_exit() reinstalls the restored kernel's hyp stub vectors with an hvc, but never passes the argumen...
- EPSS 0.2%
- Veröffentlicht 06.10.2026 08:45:16
- Zuletzt bearbeitet 06.10.2026 09:18:13
In the Linux kernel, the following vulnerability has been resolved: arm64: percpu: Fix LSE operations on {8,16}-bit types The assembly for __percpu_##name##_case_##sz() and __percpu_##name##_return_case_##sz() doesn't use the 'sfx' macro argument t...
- EPSS 0.21%
- Veröffentlicht 06.10.2026 08:45:16
- Zuletzt bearbeitet 06.10.2026 09:18:12
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_codec: validate vendor codec count length The Read Local Supported Codecs parsers consume the variable-sized standard codec array before parsing the vendor codec cou...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:15
- Zuletzt bearbeitet 06.10.2026 09:18:12
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Serialize local codec list cleanup hci_dev_close_sync() clears hdev->local_codecs after releasing hdev->lock. Codec list additions and both traversals in sco_s...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:45:14
- Zuletzt bearbeitet 06.10.2026 09:18:12
In the Linux kernel, the following vulnerability has been resolved: btrfs: take commit root semaphore when iterating in mark_block_group_to_copy() mark_block_group_to_copy() iterates over the commit root with skip_locking=true. A concurrent transac...
CVE-2026-98241
- EPSS 0.14%
- Veröffentlicht 06.10.2026 08:45:11
- Zuletzt bearbeitet 07.10.2026 07:17:05
In the Linux kernel, the following vulnerability has been resolved: ipv6: xfrm: use full sockets in local error paths xfrm6_local_rxpmtu() and xfrm6_local_error() dereference skb->sk as if it always pointed at a full IPv6 socket. That is not guara...