CVE-2026-74691
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:43
- Zuletzt bearbeitet 25.08.2026 06:18:52
In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: Tear down DMA paths before stopping the rings tbnet_tear_down() stops both rings and frees their frame buffers before calling tb_xdomain_disable_paths(). tb_ring...
CVE-2026-74692
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:43
- Zuletzt bearbeitet 25.08.2026 06:18:52
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix TOCTOU race between smc_listen_out() and listener close smc_listen_out() reads lsmc->sk.sk_state without the listener lock, then acquires lock_sock_nested() only after...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:43
- Zuletzt bearbeitet 22.08.2026 16:16:43
In the Linux kernel, the following vulnerability has been resolved: net: prestera: validate firmware header length prestera_fw_hdr_parse() reads the firmware header before checking that the firmware image contains that header. Reject images shorte...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:43
- Zuletzt bearbeitet 22.08.2026 16:16:43
In the Linux kernel, the following vulnerability has been resolved: net/ncsi: fix heap OOB read in NCSI_CMD_SEND_CMD payload length ncsi_send_cmd_nl() takes the number of bytes to copy from the attacker-controlled ncsi_pkt_hdr.length field of the i...
- EPSS 0.19%
- Veröffentlicht 22.08.2026 16:16:42
- Zuletzt bearbeitet 22.08.2026 16:16:42
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ncm: Use unsigned int for ndp_index The variable ndp_index is declared as a signed integer, but it stores the return value of get_ncm(), which is unsigned. A malici...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:42
- Zuletzt bearbeitet 22.08.2026 16:16:42
In the Linux kernel, the following vulnerability has been resolved: usb: atm: cxacru: properly kill rcv_urb on error in cxacru_cm() If cxacru_cm() encounters an error while submitting or waiting for snd_urb, it aborts and returns the error without ...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:42
- Zuletzt bearbeitet 22.08.2026 16:16:42
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix OOB write on Type II inbound URBs data_ep_set_params() sizes each URB transfer buffer before it adds the Format Type II transfer delimiter: u->packets = urb_...
- EPSS 0.19%
- Veröffentlicht 22.08.2026 16:16:42
- Zuletzt bearbeitet 25.08.2026 06:18:51
In the Linux kernel, the following vulnerability has been resolved: Input: evdev - sanitize event type index when fetching event masks The user-supplied event type index passed to EVIOCGMASK / EVIOCSMASK ioctls is used to index the static counts ar...
CVE-2026-74684
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:42
- Zuletzt bearbeitet 25.08.2026 06:18:51
In the Linux kernel, the following vulnerability has been resolved: net: tap: set skb->dev before parsing virtio net header in tap_get_user_xdp() The commit 4f61f133f354 ("net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev ...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:41
- Zuletzt bearbeitet 22.08.2026 16:16:41
In the Linux kernel, the following vulnerability has been resolved: ima: fix out-of-bounds read in xattr_verify() The digest-length check in xattr_verify() mixes int and size_t: if (xattr_len - sizeof(xattr_value->type) - hash_start >= iint->i...