CVE-2026-74478
- EPSS 0.57%
- Veröffentlicht 15.08.2026 12:27:12
- Zuletzt bearbeitet 19.08.2026 17:21:04
In the Linux kernel, the following vulnerability has been resolved: um: vector: fix use-after-free in vector_mmsg_rx() When vector_mmsg_rx() discards a packet whose overlay header fails verify_header(), it frees the skb and continues the loop: if...
CVE-2026-74476
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:27:11
- Zuletzt bearbeitet 23.08.2026 13:16:44
In the Linux kernel, the following vulnerability has been resolved: veth: convert frag_list skbs before running XDP A frag_list skb can reach veth with data_len set but nr_frags zero. veth_convert_skb_to_xdp_buff() only converts skbs that are share...
CVE-2026-74474
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:27:10
- Zuletzt bearbeitet 14.09.2026 12:17:45
In the Linux kernel, the following vulnerability has been resolved: vxlan: use pskb_network_may_pull() for transmit path header pulls In vxlan_xmit(), arp_reduce(), and vxlan_mdb_entry_skb_get(), pskb_may_pull() was being called to verify the avail...
- EPSS 0.45%
- Veröffentlicht 15.08.2026 12:27:10
- Zuletzt bearbeitet 19.08.2026 17:21:04
In the Linux kernel, the following vulnerability has been resolved: vxlan: use neigh_ha_snapshot() in route_shortcircuit() The neighbour hardware address n->ha can be updated asynchronously by the neighbour subsystem, protected by n->ha_lock seqloc...
CVE-2026-74473
- EPSS 0.51%
- Veröffentlicht 15.08.2026 12:27:09
- Zuletzt bearbeitet 19.08.2026 17:21:04
In the Linux kernel, the following vulnerability has been resolved: vxlan: use pskb_network_may_pull() in route_shortcircuit() route_shortcircuit() currently calls pskb_may_pull(skb, sizeof(struct iphdr)) (or ipv6hdr), which checks if bytes are ava...
CVE-2026-74471
- EPSS 0.13%
- Veröffentlicht 15.08.2026 12:27:08
- Zuletzt bearbeitet 19.08.2026 17:21:04
In the Linux kernel, the following vulnerability has been resolved: tracing: Check return value of __register_event() in trace_module_add_events() trace_module_add_events() ignores the return value of __register_event() and unconditionally calls __...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:27:08
- Zuletzt bearbeitet 19.08.2026 17:21:04
In the Linux kernel, the following vulnerability has been resolved: ublk: reset kernel-owned dev_info fields in ublk_ctrl_add_dev() ublk_ctrl_add_dev() memcpy()s the userspace ublksrv_ctrl_dev_info into ub->dev_info and then fixes up the fields the...
CVE-2026-74470
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:27:07
- Zuletzt bearbeitet 23.08.2026 13:16:43
In the Linux kernel, the following vulnerability has been resolved: scsi: scsi_debug: Fix REPORT ZONES alloc_len underflow OOB write resp_report_zones() sizes the reply buffer from the CDB allocation length. The v3 fix rounds alloc_len up with ALIG...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 12:27:06
- Zuletzt bearbeitet 19.08.2026 17:21:03
In the Linux kernel, the following vulnerability has been resolved: gpio: pch: use raw_spinlock_t for the register lock pch_irq_type() is registered as the irq_chip .irq_set_type callback and takes chip->spinlock with spin_lock_irqsave(). This cal...
CVE-2026-74469
- EPSS 0.47%
- Veröffentlicht 15.08.2026 12:27:06
- Zuletzt bearbeitet 19.08.2026 17:21:03
In the Linux kernel, the following vulnerability has been resolved: sctp: prevent peer transport count overflow sctp_assoc_add_peer() increments the association's 16-bit transport_count for every new unique peer. Adding the 65,536th transport wraps...