CVE-2026-64373
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:25
- Zuletzt bearbeitet 08.09.2026 15:23:15
In the Linux kernel, the following vulnerability has been resolved: cpufreq: Fix hotplug-suspend race during reboot During system reboot, cpufreq_suspend() is called via the kernel_restart() -> device_shutdown() path. Unlike the normal system suspe...
CVE-2026-64372
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:24
- Zuletzt bearbeitet 08.09.2026 15:03:00
In the Linux kernel, the following vulnerability has been resolved: cpufreq: pcc: fix use-after-free and double free in _OSC evaluation pcc_cpufreq_do_osc() calls acpi_evaluate_object() twice for the two-phase _OSC negotiation. Between the two call...
CVE-2026-64370
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:23
- Zuletzt bearbeitet 08.09.2026 15:23:56
In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path In do_cpu_nanosleep(), posix_cpu_timer_create() takes a pid reference via get_pid() and stores it in timer....
CVE-2026-64371
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:23
- Zuletzt bearbeitet 08.09.2026 15:23:41
In the Linux kernel, the following vulnerability has been resolved: proc: protect ptrace_may_access() with exec_update_lock (part 1) Fix the easy cases where procfs currently calls ptrace_may_access() without exec_update_lock protection, where the ...
CVE-2026-64365
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:20
- Zuletzt bearbeitet 04.09.2026 20:40:58
In the Linux kernel, the following vulnerability has been resolved: HID: letsketch: fix UAF on inrange_timer at driver unbind letsketch_driver does not provide a .remove callback, but letsketch_probe() arms a per-device timer: timer_setup(&dat...
CVE-2026-64364
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:50:19
- Zuletzt bearbeitet 10.09.2026 21:35:45
In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: fix out-of-bounds bit access on mt_io_flags mt_io_flags is a single unsigned long, but mt_process_slot(), mt_release_pending_palms() and mt_release_contacts() use ...
CVE-2026-64362
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:18
- Zuletzt bearbeitet 04.09.2026 15:56:56
In the Linux kernel, the following vulnerability has been resolved: HID: lg-g15: cancel pending work on remove to fix a use-after-free lg_g15_data is allocated with devm and holds a work item. The report handlers schedule that work straight from de...
CVE-2026-64363
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:50:18
- Zuletzt bearbeitet 04.09.2026 15:56:32
In the Linux kernel, the following vulnerability has been resolved: HID: appleir: fix UAF on pending key_up_timer in remove() appleir_remove() runs hid_hw_stop() before timer_delete_sync(). hid_hw_stop() synchronously unregisters the HID input devi...
CVE-2026-64361
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:17
- Zuletzt bearbeitet 04.09.2026 15:57:14
In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: fix u32 overflow in check_and_correct_requested_length check_and_correct_requested_length() compares (off + len) against node_size using u32 arithmetic. When the call...
CVE-2026-64360
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:16
- Zuletzt bearbeitet 04.09.2026 15:57:26
In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: zero-initialize buffer in hfs_bnode_read hfs_bnode_read() can return early without writing to the output buffer when is_bnode_offset_valid() fails or when check_and_co...