CVE-2026-89586
- EPSS 0.55%
- Veröffentlicht 11.09.2026 19:44:51
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: ata: libata-scsi: fix DSM TRIM for sector sizes larger than 2048 bytes ata_scsi_write_same_xlat() translates a SCSI WRITE SAME command with the UNMAP bit set into an ATA DATA SET M...
CVE-2026-89585
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:44:50
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: auxdisplay: charlcd: cancel backlight work on registration failure With CONFIG_CHARLCD_BL_FLASH, charlcd_init() schedules bl_work before charlcd_register() calls misc_register(). I...
CVE-2026-89583
- EPSS 0.26%
- Veröffentlicht 11.09.2026 19:44:49
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix OOB read in eir_get_service_data() eir_get_service_data() walks the advertising data for a Service Data field with a matching UUID. On a mismatch it advances: ...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:44:48
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: bnx2x: fix double free in bnx2x_init_firmware() error path bnx2x_init_firmware() frees bp->init_ops, bp->init_data and bp->init_ops_offsets in its error path without setting them t...
CVE-2026-89579
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:44:46
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: bpf: Harden bloom filter sizing and indexing on 32-bit kernels bloom_map_alloc() has two 32-bit-specific problems when the computed bitmap reaches the U32_MAX fallback case. First...
CVE-2026-89580
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:44:46
- Zuletzt bearbeitet 13.09.2026 07:17:23
In the Linux kernel, the following vulnerability has been resolved: bpf: Disable preemption in __bpf_get_stack get_perf_callchain() returns a per-CPU perf_callchain_entry buffer and releases its recursion slot via put_callchain_entry() before retur...
- EPSS 0.22%
- Veröffentlicht 11.09.2026 19:44:43
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: dm raid1: reserve space for NUL-terminator in build_constructor_string() Reserve space for the termination NUL after the maximum 20 decimal digits of a long long value to avoid buf...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:44:43
- Zuletzt bearbeitet 14.09.2026 13:19:12
In the Linux kernel, the following vulnerability has been resolved: dm-era: fix shadowed superblock leak on take-snap failure metadata_take_snap() bumps the live superblock refcount and then dm_tm_shadow_block() allocates a new block for the metada...
CVE-2026-89574
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:44:42
- Zuletzt bearbeitet 13.09.2026 07:17:23
In the Linux kernel, the following vulnerability has been resolved: dm array: validate array block headers on read array_block_check() validates blocknr and csum and nothing else, while node_check(), next to it, has bounded the structural fields si...
CVE-2026-89573
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:44:41
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: dm array: reject an array block whose value size is not the caller's array_block_check() can only compare the header against itself, so a block with value_size 4 and max_entries 10...