- EPSS 0.2%
- Veröffentlicht 04.09.2026 15:12:39
- Zuletzt bearbeitet 04.09.2026 16:18:02
In the Linux kernel, the following vulnerability has been resolved: HID: sensor: custom: Fix use-after-free in enable_sensor enable_sensor_store() can call set_power_report_state(), which dereferences sensor_inst->power_state and sensor_inst->repor...
- EPSS 0.18%
- Veröffentlicht 04.09.2026 15:12:38
- Zuletzt bearbeitet 04.09.2026 16:18:01
In the Linux kernel, the following vulnerability has been resolved: HID: uclogic: fix use-after-free of inrange_timer on remove uclogic_remove() cancels the pen in-range timer and then stops the device: timer_delete_sync(&drvdata->inrange_timer);...
- EPSS 0.2%
- Veröffentlicht 04.09.2026 15:12:37
- Zuletzt bearbeitet 04.09.2026 16:18:01
In the Linux kernel, the following vulnerability has been resolved: HID: hyperv: validate initial device info bounds The Hyper-V synthetic HID host supplies SYNTH_HID_INITIAL_DEVICE_INFO messages that contain a HID descriptor followed by the report...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:12:36
- Zuletzt bearbeitet 04.09.2026 16:18:01
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: fix LE list UAF on reset hci_cc_reset() clears the LE accept and resolving lists without taking hdev->lock. Other command-complete handlers serialize updates ...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:12:35
- Zuletzt bearbeitet 04.09.2026 16:18:01
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: validate LE Set CIG Parameters response The Command Complete dispatch validates only the fixed part of the LE Set CIG Parameters response. After that part is ...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:12:34
- Zuletzt bearbeitet 04.09.2026 16:18:01
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix accept list UAF during suspend hci_update_event_filter_sync() walks hdev->accept_list while sending a synchronous HCI command for each remote-wakeup device...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:12:33
- Zuletzt bearbeitet 04.09.2026 16:18:01
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: zero the sockaddr before returning it in getname iso_sock_getname() fills a struct sockaddr_iso in place and returns its size without clearing it first, so bytes it...
- EPSS 0.21%
- Veröffentlicht 03.09.2026 08:26:35
- Zuletzt bearbeitet 03.09.2026 13:06:15
In the Linux kernel, the following vulnerability has been resolved: selinux: reject a class permission count below its inherited common security_get_permissions() maps an inherited common's permissions into an array sized by the class's own permiss...
- EPSS 0.21%
- Veröffentlicht 03.09.2026 08:26:34
- Zuletzt bearbeitet 03.09.2026 13:06:15
In the Linux kernel, the following vulnerability has been resolved: selinux: do not cancel a policy conversion that never started sel_write_load() calls selinux_policy_cancel() when sel_make_policy_nodes() fails, and that helper dereferences the ou...
CVE-2026-80754
- EPSS 0.16%
- Veröffentlicht 03.09.2026 08:26:33
- Zuletzt bearbeitet 04.09.2026 05:17:15
In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - fix F55 transmitter electrode count typo During F55 sensor detection, the transmitter (TX) electrode count was incorrectly assigned the value of the receive...