CVE-2026-72123
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:53:01
- Zuletzt bearbeitet 19.08.2026 17:20:59
In the Linux kernel, the following vulnerability has been resolved: can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF Commit f1b4e32aca08 ("can: bcm: use call_rcu() instead of costly synchronize_rcu()") replaced synchronize_rcu() ...
CVE-2026-72122
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:53:00
- Zuletzt bearbeitet 17.08.2026 06:18:11
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure bcm_sendmsg() reads bo->ifindex and checks bo->bound before taking lock_sock(), while bcm_notify(), bcm_connec...
CVE-2026-72120
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:59
- Zuletzt bearbeitet 17.08.2026 06:18:11
In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing rcu list annotations and operations sashiko-bot remarked the missing use of list_add_rcu() in bcm_[rx|tx]_setup() to have a proper initialized bcm_op structur...
CVE-2026-72121
- EPSS 0.35%
- Veröffentlicht 15.08.2026 05:52:59
- Zuletzt bearbeitet 19.08.2026 17:20:59
In the Linux kernel, the following vulnerability has been resolved: can: bcm: add locking when updating filter and timer values KCSAN detected a simultaneous access to timer values that can be overwritten in bcm_rx_setup() when updating timer and f...
CVE-2026-72119
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:52:58
- Zuletzt bearbeitet 19.08.2026 17:20:58
In the Linux kernel, the following vulnerability has been resolved: can: bcm: extend bcm_tx_lock usage for data and timer updates Stage new CAN frame content for an existing tx op into a kmalloc()'d buffer and validate it there, mirroring the appro...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:57
- Zuletzt bearbeitet 19.08.2026 17:20:58
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix CAN frame rx/tx statistics KCSAN detected a data race within the bcm_rx_handler() when two CAN frames have been simultaneously received and processed in a single rx o...
CVE-2026-72116
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:52:56
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix stale rx/tx ops after device removal RX: an RX_SETUP update(!) for an existing op skipped can_rx_register() unconditionally, even when a concurrent NETDEV_UNREGISTER ...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:56
- Zuletzt bearbeitet 19.08.2026 17:20:58
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix data race on rx_stamp/rx_ifindex in bcm_rx_handler() For an rx op subscribed on all interfaces (ifindex == 0), the same op is registered once in the shared per-netns ...
CVE-2026-72115
- EPSS 0.3%
- Veröffentlicht 15.08.2026 05:52:55
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: track a single source interface for ANYDEV timeout/throttle ops An ANYDEV rx op (ifindex == 0) with an active RX timeout and/or throttle timer has no defined semantics wh...
CVE-2026-72113
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:52:54
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing device refcount for CAN filter removal sashiko-bot remarked a problem with a concurrent device unregistration in isotp.c which also is present in the bcm.c co...