CVE-2026-72399
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:24
- Zuletzt bearbeitet 17.08.2026 06:19:06
In the Linux kernel, the following vulnerability has been resolved: net: enetc: check the number of BDs needed for xdp_frame The size of xdp_redirect_arr array is ENETC_MAX_SKB_FRAGS. However, the number of fragments contained in xdp_frame may be g...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:23
- Zuletzt bearbeitet 17.08.2026 06:19:06
In the Linux kernel, the following vulnerability has been resolved: hwmon: adm1275: Prevent reading uninitialized stack While adding support for the ROHM BD127X0 hot-swap controllers, sashiko reported an error in device-name comparison, which can l...
CVE-2026-72397
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:56:23
- Zuletzt bearbeitet 17.08.2026 06:19:06
In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/core) honor vrm_version in pmbus_data2reg_vid() pmbus_data2reg_vid() hardcoded the VR11 encoding regardless of the vrm_version configured by the driver, while pmbus_r...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:20
- Zuletzt bearbeitet 19.08.2026 17:21:00
In the Linux kernel, the following vulnerability has been resolved: ipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump inet6_dump_fib() saves its progress in cb->args[1] as a positional index within the current hash chain. Betw...
CVE-2026-72390
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:19
- Zuletzt bearbeitet 17.08.2026 06:19:05
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_teql: Introduce slaves_lock to avoid race condition and UAF The teql master->slaves singly linked list is not protected against multiple writes. It can be mod'ed con...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:19
- Zuletzt bearbeitet 17.08.2026 06:19:05
In the Linux kernel, the following vulnerability has been resolved: net: phy: sfp: free mii_bus in sfp_i2c_mdiobus_destroy sfp_i2c_mdiobus_create() allocates the I2C MDIO bus with mdio_i2c_alloc(), a plain (non-devm) allocation, and registers it. s...
CVE-2026-72389
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:18
- Zuletzt bearbeitet 17.08.2026 06:19:05
In the Linux kernel, the following vulnerability has been resolved: bridge: stp: Fix a potential use-after-free when deleting a bridge The three STP timers are not supposed to be armed while the bridge is administratively down. They are synchronous...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:15
- Zuletzt bearbeitet 17.08.2026 06:18:43
In the Linux kernel, the following vulnerability has been resolved: irqchip/ts4800: Fix missing chained handler cleanup on remove The driver installs a chained handler for the parent interrupt during probe using irq_set_chained_handler_and_data(), ...
CVE-2026-72382
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:14
- Zuletzt bearbeitet 17.08.2026 06:18:42
In the Linux kernel, the following vulnerability has been resolved: ksmbd: reject undersized DACLs before parsing ACEs parse_dacl() limits the attacker-controlled ACE count by comparing it with the number of minimal ACEs that fit in the DACL size. ...
CVE-2026-72383
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:56:14
- Zuletzt bearbeitet 17.08.2026 06:18:42
In the Linux kernel, the following vulnerability has been resolved: sctp: fix addr_wq_timer race in sctp_free_addr_wq() sctp_free_addr_wq() previously removed addr_wq_timer using timer_delete() while holding addr_wq_lock. However, timer_delete() do...