- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:44:22
- Zuletzt bearbeitet 06.10.2026 09:18:00
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix rmmio iounmap skipped on device removal amdgpu_pci_remove() calls drm_dev_unplug() before fini_sw(), so drm_dev_enter() is already false there and the iounmap() gua...
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:44:20
- Zuletzt bearbeitet 07.10.2026 07:17:04
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Avoid integer underflow in EOP ring size calculation. The low 6 bits of cp_hqd_eop_control store the base-2 logarithm of the EOP ring size. This was calculated as orde...
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:44:20
- Zuletzt bearbeitet 07.10.2026 07:17:04
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Avoid integer underflow with ffs in EOP ring size calc The low 6 bits of cp_hqd_eop_control store the base-2 logarithm of the EOP ring size. This was calculated as ffs...
CVE-2026-98175
- EPSS 0.33%
- Veröffentlicht 06.10.2026 08:44:19
- Zuletzt bearbeitet 07.10.2026 07:17:04
In the Linux kernel, the following vulnerability has been resolved: smb: client: cancel reconnect work in clean_demultiplex_info() clean_demultiplex_info() cancels server->echo delayed work but not server->reconnect, which can cause a use-after-fre...
CVE-2026-98174
- EPSS 0.37%
- Veröffentlicht 06.10.2026 08:44:18
- Zuletzt bearbeitet 07.10.2026 07:17:03
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix rlist race and missing initialization TCP_Server_Info.rlist is allocated via kzalloc which zeros both ->next and ->prev to NULL instead of pointing to itself, maki...
CVE-2026-98173
- EPSS 0.33%
- Veröffentlicht 06.10.2026 08:44:17
- Zuletzt bearbeitet 07.10.2026 07:17:03
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-after-free of iface in cifs_try_adding_channels() cifs_try_adding_channels() iterates ses->iface_list with list_for_each_entry_safe_from(), which captures the ...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:44:16
- Zuletzt bearbeitet 06.10.2026 09:17:58
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix smbd_connection leak on cifs_get_tcp_session() error When an RDMA connection is successfully established via smbd_get_connection() but cifs_get_tcp_session() later...
CVE-2026-98171
- EPSS 0.51%
- Veröffentlicht 06.10.2026 08:44:15
- Zuletzt bearbeitet 07.10.2026 07:17:03
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix next_buffer UAF and NextCommand bounds in compound PDUs Fix several related bounds checking and pointer lifecycle issues in receive_encrypted_standard()'s handling...
- EPSS 0.2%
- Veröffentlicht 06.10.2026 08:44:15
- Zuletzt bearbeitet 06.10.2026 09:17:58
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB struct field reads in move_smb2_ea_to_cifs() In move_smb2_ea_to_cifs(), the while (src_size > 0) loop condition is insufficient. It allows iteration to continu...
CVE-2026-98169
- EPSS 0.43%
- Veröffentlicht 06.10.2026 08:44:14
- Zuletzt bearbeitet 07.10.2026 07:17:03
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOB read in smb3_enum_snapshots() If snapshot_array_size is smaller than GMT_TOKEN_SIZE, smb3_enum_snapshots() sets ret_data_len to sizeof(struct smb_sna...