CVE-2026-64390
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:37
- Zuletzt bearbeitet 04.09.2026 19:07:30
In the Linux kernel, the following vulnerability has been resolved: ksmbd: track the connection owning a byte-range lock SMB2_LOCK adds each granted byte-range lock to both the file lock list and the lock list of the connection which handled the re...
CVE-2026-64388
- EPSS 0.16%
- Veröffentlicht 25.07.2026 08:50:36
- Zuletzt bearbeitet 04.09.2026 20:42:42
In the Linux kernel, the following vulnerability has been resolved: smb/client: fix chown/chgrp with SMB3 POSIX Extensions Ownership (chown) and group (chgrp) modifications were being ignored when mounting with SMB3 POSIX Extensions unless CIFS_MOU...
CVE-2026-64389
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:50:36
- Zuletzt bearbeitet 04.09.2026 19:06:31
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate NTLMv2 response before updating session key ksmbd_auth_ntlmv2() derives the NTLMv2 session key into sess->sess_key before it verifies the NTLMv2 response. ksmbd_dec...
CVE-2026-64381
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:31
- Zuletzt bearbeitet 08.09.2026 14:01:34
In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix next buffer leak in receive_encrypted_standard() receive_encrypted_standard() allocates next_buffer before checking whether the number of compound PDUs already rea...
CVE-2026-64380
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:30
- Zuletzt bearbeitet 08.09.2026 14:06:05
In the Linux kernel, the following vulnerability has been resolved: smb: client: harden POSIX SID length parsing posix_info_sid_size() reads sid[1] to obtain the subauthority count, but its existing boundary check still accepts buffers with only on...
CVE-2026-64378
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:29
- Zuletzt bearbeitet 08.09.2026 15:23:22
In the Linux kernel, the following vulnerability has been resolved: writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs() When a container exits, the following BUG_ON() is occasionally triggered: ============================...
CVE-2026-64379
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:29
- Zuletzt bearbeitet 08.09.2026 14:08:51
In the Linux kernel, the following vulnerability has been resolved: smb: client: mask server-provided mode to 07777 in modefromsid When modefromsid is active, parse_dacl() applies the server-provided sub_auth[2] value from the NFS mode SID to cf_mo...
CVE-2026-64376
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:27
- Zuletzt bearbeitet 08.09.2026 14:21:55
In the Linux kernel, the following vulnerability has been resolved: firmware_loader: fix device reference leak in firmware_upload_register() firmware_upload_register() -> fw_create_instance() -> device_initialize() After fw_create_instance(...
CVE-2026-64374
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:26
- Zuletzt bearbeitet 08.09.2026 14:35:16
In the Linux kernel, the following vulnerability has been resolved: sched/rt: Have RT_PUSH_IPI be default off for non PREEMPT_RT RT migration is done aggressively. When a CPU schedules out a high priority RT task for a lower priority task, it will ...
CVE-2026-64375
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:26
- Zuletzt bearbeitet 08.09.2026 14:31:06
In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (FD links) proc_pid_get_link() and proc_pid_readlink() currently look up the task from the pid once, then do the ptrace acce...