CVE-2026-72350
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:53
- Zuletzt bearbeitet 17.08.2026 06:18:39
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_u32: reject invalid shift counts u32_match_it() executes rule-supplied shift operands on a 32-bit value. A malformed u32 rule can provide a shift count of 32 or more,...
CVE-2026-72348
- EPSS 0.23%
- Veröffentlicht 15.08.2026 05:55:52
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop The ah, hbh and rt matches check that the fixed extension header is present, then use the header length fiel...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:52
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt() On links faster than ~34 Gbps, where byte rate may exceed 2^32-1 (~ 4.3 GBps), the comparison result becomes incorrect ...
CVE-2026-72347
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:51
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_connmark: reject invalid shift parameters Revision 2 of the CONNMARK target accepts user-controlled shift parameters and applies them to 32-bit mark values in connmar...
CVE-2026-72343
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:49
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix HV VHCA stats zero-sized buffer allocation mlx5e_hv_vhca_stats_create() is called from mlx5e_nic_enable(), before mlx5e_open(). At that point priv->stats_nch is stil...
CVE-2026-72342
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:48
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix HV VHCA stats agent registration race mlx5e_hv_vhca_stats_create() registers the stats agent through mlx5_hv_vhca_agent_create(). The helper publishes the agent in h...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:47
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix publication race for priv->channel_stats[] mlx5e_channel_stats_alloc() publishes a new entry to priv->channel_stats[] and then increments priv->stats_nch as a public...
CVE-2026-72339
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:46
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: qede: fix off-by-one in BD ring consumption on build_skb failure qede_rx_build_skb() and qede_tpa_rx_build_skb() do not check for a NULL return from qede_build_skb(). When it retur...
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:55:45
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: 6lowpan: avoid untracked enable work lowpan_enable_set() allocates a temporary work item and schedules do_enable_set() on system_wq, then returns to debugfs. The debugfs...
CVE-2026-72338
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:55:45
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_pedit: fix TOCTOU heap OOB write in tc offload There is a TOCTOU race condition in flower lockless approach between sizing a flow_rule buffer and filling it. zdi-dis...