CVE-2026-98239
- EPSS 0.47%
- Veröffentlicht 06.10.2026 08:45:10
- Zuletzt bearbeitet 07.10.2026 07:17:05
In the Linux kernel, the following vulnerability has been resolved: net: lan743x: fix RX checksum use-after-free lan743x_rx_process_buffer() adds each non-first receive buffer to the head skb's frag_list. On the last descriptor, lan743x_rx_trim_sk...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:09
- Zuletzt bearbeitet 06.10.2026 09:18:11
In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate the netif index in t7xx_ccmni_recv_skb() The netif index carried in the DPMAIF PIT header is five bits wide, but ccmni_inst[] only has room for NIC_DEV_MA...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:09
- Zuletzt bearbeitet 06.10.2026 09:18:11
In the Linux kernel, the following vulnerability has been resolved: net: wwan: mhi_wwan_mbim: guard against a cyclic NDP chain The NDP traversal in mhi_mbim_rx() only stops when wNextNdpIndex is zero. Nothing requires the offsets to advance, so a ...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:08
- Zuletzt bearbeitet 06.10.2026 09:18:11
In the Linux kernel, the following vulnerability has been resolved: net: wwan: mhi_wwan_mbim: check skb_copy_bits() return value mhi_mbim_rx() ignores the return value of skb_copy_bits() when it copies each datagram out of the NTB. The datagram of...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:07
- Zuletzt bearbeitet 06.10.2026 09:18:11
In the Linux kernel, the following vulnerability has been resolved: net/sched: hhf: cap hh_flows_limit at change time hhf_change() stores TCA_HHF_HH_FLOWS_LIMIT with no upper bound. A huge hh_flows_limit lets each new heavy-hitter flow pass the hh_...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:06
- Zuletzt bearbeitet 06.10.2026 09:18:10
In the Linux kernel, the following vulnerability has been resolved: net/packet: clear RX owner on VNET header error Commit 61fad6816fc1 ("net/packet: tpacket_rcv: avoid a producer race condition") added rx_owner_map and made tpacket_rcv() claim a V...
CVE-2026-98229
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:45:03
- Zuletzt bearbeitet 07.10.2026 07:17:05
In the Linux kernel, the following vulnerability has been resolved: xfrm: save input state data before secpath resets xfrm_input() stores the current xfrm_state in the skb secpath while it continues receive-side processing. Some input paths can res...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:02
- Zuletzt bearbeitet 06.10.2026 09:18:09
In the Linux kernel, the following vulnerability has been resolved: memstick: ms_block: destroy io_queue workqueue on removal msb_init_disk() creates the per-card ordered workqueue msb->io_queue with alloc_ordered_workqueue(). It is torn down with ...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:44:57
- Zuletzt bearbeitet 06.10.2026 09:18:09
In the Linux kernel, the following vulnerability has been resolved: KEYS: encrypted: fix integer overflow of datablob_len encrypted_key_alloc() stores datablob_len in a u16. It is computed from multiple string and payload lengths. If the result exc...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:44:56
- Zuletzt bearbeitet 06.10.2026 09:18:09
In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix tpm2_load_cmd() boundary check tpm2_load_cmd() does boundary checks against the ASN.1 size i.e., payload->blob_len. Address this by passing the decoded blob size...