- EPSS 0.12%
- Veröffentlicht 25.09.2026 10:23:46
- Zuletzt bearbeitet 03.10.2026 11:18:25
In the Linux kernel, the following vulnerability has been resolved: net: dsa: bcm_sf2: bound the CFP rule dump by the caller's buffer size bcm_sf2_cfp_rule_get_all() walks the whole cfp.unique bitmap into rule_locs[] without consulting nfc->rule_cn...
- EPSS 0.12%
- Veröffentlicht 25.09.2026 10:23:45
- Zuletzt bearbeitet 03.10.2026 11:18:25
In the Linux kernel, the following vulnerability has been resolved: net: dsa: mv88e6xxx: bound the policy rule dump by the caller's buffer size mv88e6xxx_get_rxnfc() uses rxnfc->rule_cnt as the write index while dumping the policy IDR, clobbering t...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:44
- Zuletzt bearbeitet 03.10.2026 11:18:25
In the Linux kernel, the following vulnerability has been resolved: net: bridge: mcast: properly convert mglist to rcu Sashiko reported a bug [1] that br_multicast_del_port_group unlists the port group not using proper rcu helper that preserves the...
- EPSS 0.22%
- Veröffentlicht 25.09.2026 10:23:43
- Zuletzt bearbeitet 03.10.2026 11:18:25
In the Linux kernel, the following vulnerability has been resolved: net: usb: cx82310_eth: drop URB after 0xffff reboot sentinel to prevent partial_data heap overflow The 0xffff length sentinel detects a router reboot and schedules re-enabling of e...
CVE-2026-98023
- EPSS 0.13%
- Veröffentlicht 25.09.2026 10:23:42
- Zuletzt bearbeitet 03.10.2026 11:18:25
In the Linux kernel, the following vulnerability has been resolved: vxlan: reject dynamic fdb entries that reference a nexthop id The commit cited in the Fixes tag allowed VXLAN FDB entries to point to FDB nexthops so that overlay traffic could be ...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:42
- Zuletzt bearbeitet 03.10.2026 11:18:25
In the Linux kernel, the following vulnerability has been resolved: net: cap tx_queue_len at S16_MAX to prevent oversized ring allocations Several subsystems allocate ring buffers sized by dev->tx_queue_len with no upper bound. An unprivileged user...
- EPSS 0.18%
- Veröffentlicht 25.09.2026 10:23:41
- Zuletzt bearbeitet 25.09.2026 11:17:30
In the Linux kernel, the following vulnerability has been resolved: net: reject oversized tx_queue_len at netlink parse time rtnl_create_link() assigns IFLA_TXQLEN directly to dev->tx_queue_len without going through netif_change_tx_queue_len(), so ...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:23:40
- Zuletzt bearbeitet 25.09.2026 11:17:30
In the Linux kernel, the following vulnerability has been resolved: bpf: mark a NULL call argument precise check_func_arg() allows bpf_register_is_null() for nullable arguments w/o marking the underlying scalar register precise. Hence a checkpoint ...
CVE-2026-98017
- EPSS 0.13%
- Veröffentlicht 25.09.2026 10:23:39
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/sched: defer qdisc freeing after failed creation An RTM_NEWQDISC request can make clsact bind a populated shared ingress block during ->init(), publishing an embedded mini_Qdis...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:38
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free race in sample_restore_put() Concurrent teardown of TC sample rules sharing the same restore context may re-read restore->count after dropping restore...