- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:37
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: E-Switch: fix use-after-free in mlx5_eswitch_termtbl_put In mlx5_eswitch_termtbl_put(), the zero-ref cleanup check reads tt->ref_count after termtbl_mutex has been releas...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:37
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: E-Switch, prevent mc_list repopulation during vport disable In mlx5_esw_vport_disable(), move esw_apply_vport_rx_mode() ahead of esw_vport_change_handle_locked() so vport...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:36
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/sched: fq_pie: clamp quantum in change path fq_pie_change() accepts any quantum value from userspace, including 1. With a crafted size table qdisc_pkt_len reaches ~2 GiB, so qu...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:35
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/sched: sfq: clamp quantum in change path sfq_change() accepts any non-negative quantum (only rejects (int)ctl->quantum < 0). With a crafted size table qdisc_pkt_len reaches ~2 ...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:35
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/sched: hhf: clamp quantum in change and init paths hhf_change() accepts any quantum from userspace, including 1. With a crafted size table qdisc_pkt_len reaches ~2 GiB, so quan...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:34
- Zuletzt bearbeitet 03.10.2026 11:18:24
In the Linux kernel, the following vulnerability has been resolved: net/sched: drr: clamp quantum in change class drr_change_class() rejects explicit quantum==0 but falls back to psched_mtu() with no floor. With a crafted size table qdisc_pkt_len r...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:34
- Zuletzt bearbeitet 03.10.2026 11:18:23
In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: clamp quantum in parse and fallback paths ets_qdisc_change() falls back to psched_mtu() with no floor for bands without an explicit quantum. With a crafted size tab...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:33
- Zuletzt bearbeitet 03.10.2026 11:18:23
In the Linux kernel, the following vulnerability has been resolved: net: macb: fix NULL pointer dereference on unbind with fixed-link When the device tree describes a fixed-link and has no "mdio" child node, macb_mii_init() returns early without al...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:32
- Zuletzt bearbeitet 03.10.2026 11:18:23
In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: Decoupling ep1_in_urb in caiaq dev The epq_in_urb object belonging to the caiaq device is coupled within the struct snd_usb_caiaqdev. After usb_submit_urb(epq_in_urb, ...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:30
- Zuletzt bearbeitet 25.09.2026 11:17:28
In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Do not reallocate GA log buffers on resume Commit c5e1a1eb9279 ("iommu/amd: Simplify and Consolidate Virtual APIC (AVIC) Enablement") moved the GA log allocation from io...