CVE-2026-74256
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:34
- Zuletzt bearbeitet 17.08.2026 06:19:18
In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: fix integer overflow in bpf_msg_pop_data() bounds check start and len are u32, so u64 last = start + len; evaluates start + len in 32-bit and wraps before storing ...
CVE-2026-72502
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:33
- Zuletzt bearbeitet 17.08.2026 06:19:18
In the Linux kernel, the following vulnerability has been resolved: tcp: ipv6: clamp default adverting MSS to avoid GSO_BY_FRAGS (0xFFFF) When MTU is large, ip6_default_advmss() can return IPV6_MAXPLEN (65535). This is interpreted by TCP as mss_cla...
CVE-2026-72494
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:28
- Zuletzt bearbeitet 21.09.2026 14:17:17
In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Replace waitqueue and flag with completion The driver previously used a waitqueue along with an explicit request_done flag, but without proper barriers around request_d...
CVE-2026-72493
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:27
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: net: serialize netif_running() check in enqueue_to_backlog() Syzbot reported a KASAN slab-use-after-free in fib_rules_lookup(). The root cause is a race condition where packets ca...
CVE-2026-72491
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:57:26
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: net/9p: fix race condition on rdma->state in trans_rdma.c The rdma->state field is modified without holding req_lock in both recv_done() and p9_cm_event_handler(), while rdma_reque...
CVE-2026-72492
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:26
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in same_client_has_lease() same_client_has_lease() returns an opinfo pointer from ci->m_op_list after dropping ci->m_lock without taking a reference. smb...
CVE-2026-72488
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:57:24
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: soundwire: fix bug in sdw_add_element_group_count found by syzkaller The original implementation caused an out-of-bounds memory access in the sdw_add_element_group_count for-loop w...
CVE-2026-72489
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:24
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: staging: nvec: fix use-after-free in nvec_rx_completed() In nvec_rx_completed(), when an incomplete RX transfer is detected, nvec_msg_free() is called to return the message back to...
CVE-2026-72487
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:23
- Zuletzt bearbeitet 17.08.2026 06:19:16
In the Linux kernel, the following vulnerability has been resolved: PCI: Check ROM header and data structure addr before accessing We meet a crash when running stress-ng on x86_64 machine: BUG: unable to handle page fault for address: ffa0000007...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:22
- Zuletzt bearbeitet 17.08.2026 06:19:16
In the Linux kernel, the following vulnerability has been resolved: mailbox: mtk-adsp: fix UAF during device teardown When the SOF audio driver fails to initialize (e.g. firmware boot timeout), its devres unwind frees the snd_sof_dev object that th...