CVE-2026-89482
- EPSS 0.63%
- Veröffentlicht 11.09.2026 19:43:37
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: do not accept C2HData based on blk_rq_payload_bytes() alone Commit 25e5cb780e62 ("nvme-tcp: fix possible crash in write_zeroes processing") established that blk_rq_payloa...
CVE-2026-89481
- EPSS 0.38%
- Veröffentlicht 11.09.2026 19:43:36
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix host memory disclosure on R2T for a read command nvme_tcp_handle_r2t() does not check the direction of the request the R2T refers to. A malicious controller can send ...
CVE-2026-89479
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:43:35
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: stop processing a packet once its association is deleted sctp_endpoint_bh_rcv() looks the association up only when chunk->asoc is NULL, and caches the result in chunk->asoc a...
CVE-2026-89480
- EPSS 0.37%
- Veröffentlicht 11.09.2026 19:43:35
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: reject a read that transferred too few bytes nvme_tcp_recv_data() completes a request once the current C2HData PDU has been consumed. Nothing compares the total bytes rec...
CVE-2026-89478
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:43:34
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: drop a chunk if its transport was removed sctp_rcv() resolves the transport once per packet and leaves it in chunk->transport. The lookup reference, or the one sctp_add_backl...
CVE-2026-89476
- EPSS 0.6%
- Veröffentlicht 11.09.2026 19:43:33
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->outcnt underflow on duplicate RECONF responses A cached RECONF chunk may contain more than one request parameter. A duplicate response can therefore find and pro...
CVE-2026-89477
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:43:33
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref on untransmitted RECONF completion sctp_process_strreset_outreq(), sctp_process_strreset_addstrm_out() and sctp_process_strreset_resp() complete a pending stre...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:32
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq24257: fix use-after-free on remove The STAT-pin interrupt is devm-managed, so it stays armed until the devm cleanup that runs after remove() returns. remove() can...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:43:31
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq256xx: drain usb_work before freeing the charger The USB-PHY notifier queues usb_work, whose handler calls power_supply_changed(bq->charger). The reset devm action...
CVE-2026-89472
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:30
- Zuletzt bearbeitet 13.09.2026 07:17:10
In the Linux kernel, the following vulnerability has been resolved: power: supply: charger-manager: register regulators before exposing sysfs charger_manager_remove() and the err_reg_extcon probe error path free each charger regulator with regulato...