CVE-2026-74724
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:47
- Zuletzt bearbeitet 25.08.2026 06:18:58
In the Linux kernel, the following vulnerability has been resolved: ipvs: avoid out-of-bounds write in ip_vs_nat_icmp Sashiko warns that local attacker can modify the packet while it is processed by IPVS. Some places read the IP ihl field multiple ...
CVE-2026-74725
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:47
- Zuletzt bearbeitet 25.08.2026 06:18:58
In the Linux kernel, the following vulnerability has been resolved: enic: fix tx_hang_reset use-after-free on device removal enic_remove() cancels the reset and change_mtu_work items but does not cancel tx_hang_reset. A TX timeout that fires while ...
CVE-2026-74726
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:47
- Zuletzt bearbeitet 25.08.2026 06:18:58
In the Linux kernel, the following vulnerability has been resolved: bonding: alb: re-check primary_is_promisc under RTNL in bond_alb_monitor bond_alb_monitor() reads primary_is_promisc under RCU, then drops RCU and takes RTNL via rtnl_trylock() bef...
CVE-2026-74713
- EPSS 0.16%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:56
In the Linux kernel, the following vulnerability has been resolved: vhost_iotlb: bound map allocation in add_range vhost_iotlb_add_range_ctx() only retires an old entry when the table has a non-zero limit, has exactly reached that limit and has VHO...
CVE-2026-74714
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:56
In the Linux kernel, the following vulnerability has been resolved: bpf: tcp: Fix use-after-free in bpf_iter_tcp_established_batch() reqsk_queue_hash_req() publishes a TCP_NEW_SYN_RECV request_sock onto the ehash chain, drops the bucket lock, and o...
CVE-2026-74715
- EPSS 0.16%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:57
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix netns reference imbalance in conntrack kfuncs The opts argument of the BPF conntrack kfuncs can point to a shared map value. __bpf_nf_ct_lookup() and __bpf_nf_ct_alloc_en...
CVE-2026-74717
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:57
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fw_tracer, return NULL on create error Tracer creation can fail by returning either NULL or ERR_PTR. The return value is stored without a check on the device, and users t...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 22.08.2026 16:16:46
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix qentry overwrite for CONFIRM_LINK and ADD_LINK_CONT in smc_llc_event_handler() The SMC_LLC_CONFIRM_LINK / SMC_LLC_ADD_LINK_CONT branch in smc_llc_event_handler() store...
CVE-2026-74720
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:57
In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve pointer state for commuted arithmetic When scalar += pointer is handled in adjust_ptr_min_max_vals(), the destination register inherits the pointer state from the sou...
CVE-2026-74704
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:45
- Zuletzt bearbeitet 25.08.2026 06:18:54
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter The sch_cake ACK filter parses packets to find the TCP header and filter duplicated ACKs if the flow is bac...