CVE-2026-89532
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:44:11
- Zuletzt bearbeitet 14.09.2026 13:19:08
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix pcl_for_each_segment for empty chunks When a parsed chunk list contains a chunk whose ch_segcount is zero, pcl_for_each_segment computes its inclusive upper bound as &...
CVE-2026-89530
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:44:10
- Zuletzt bearbeitet 13.09.2026 07:17:15
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject inline replies that overflow the pull-up buffer An RPC-over-RDMA client can request a reply, such as an NFS READ payload, without providing a Write list or a Reply ...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:44:10
- Zuletzt bearbeitet 11.09.2026 20:19:35
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject connection when transport allocation fails handle_connect_req() returns without action when svc_rdma_create_xprt() fails to allocate the new transport. The CM core ...
CVE-2026-89528
- EPSS 0.63%
- Veröffentlicht 11.09.2026 19:44:08
- Zuletzt bearbeitet 13.09.2026 07:17:15
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject Read lists that exceed the page budget Individual Read segment lengths are validated at decode time, but nothing prevents a requester from sending multiple segments...
CVE-2026-89526
- EPSS 0.63%
- Veröffentlicht 11.09.2026 19:44:07
- Zuletzt bearbeitet 13.09.2026 07:17:14
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Validate Read chunk positions before reconstruction The RPC/RDMA Read chunk position field is supplied by the remote client and stored verbatim in the parsed chunk list. x...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:44:07
- Zuletzt bearbeitet 11.09.2026 20:19:35
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Use svc_xprt_put to free listener on create failure svc_rdma_create() calls kfree(cma_xprt) when svc_rdma_create_listen_id() fails. svc_xprt_init() has already acquired a ...
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:44:06
- Zuletzt bearbeitet 14.09.2026 13:19:08
In the Linux kernel, the following vulnerability has been resolved: udf: reject VAT indexes equal to the entry count UDF 1.50 virtual partition mapping uses the VAT as an array of physical block mappings. s_num_entries stores the number of entries ...
CVE-2026-89524
- EPSS 0.26%
- Veröffentlicht 11.09.2026 19:44:05
- Zuletzt bearbeitet 14.09.2026 13:19:08
In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: clamp assoc request/response lengths before subtracting IE offsets ath6kl_cfg80211_connect_event() subtracts fixed IE offsets from assoc_req_len (-= 4) and assoc_resp...
CVE-2026-89520
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:44:02
- Zuletzt bearbeitet 03.10.2026 11:17:42
In the Linux kernel, the following vulnerability has been resolved: sched/core: Make core-sched flips wait for in-flight selections Core scheduling's pick_next_task() operates on all sibling rqs under one acquisition of the shared core-wide lock. A...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:43:59
- Zuletzt bearbeitet 14.09.2026 13:19:07
In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fill in DMA padding bytes in scsi_alloc_sgtables() During fuzz testing, the following issue was discovered: BUG: KMSAN: uninit-value in __dma_map_sg_attrs+0x217/0x310 ...