CVE-2026-64298
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:49:35
- Zuletzt bearbeitet 17.08.2026 05:17:29
In the Linux kernel, the following vulnerability has been resolved: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC POSIX requires write permission to truncate a file, so an open() that specifies O_TRUNC must be authorized for write ac...
CVE-2026-64299
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:49:35
- Zuletzt bearbeitet 03.09.2026 16:12:34
In the Linux kernel, the following vulnerability has been resolved: tracing: Prevent out-of-bounds read in glob matching String event fields are not necessarily NUL-terminated, so the filter predicate functions (filter_pred_string(), filter_pred_st...
CVE-2026-64297
- EPSS 0.16%
- Veröffentlicht 25.07.2026 08:49:34
- Zuletzt bearbeitet 17.08.2026 05:17:29
In the Linux kernel, the following vulnerability has been resolved: module: decompress: check return value of module_extend_max_pages() module_extend_max_pages() calls kvrealloc() internally and returns -ENOMEM on allocation failure. The return val...
CVE-2026-64296
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:49:33
- Zuletzt bearbeitet 17.08.2026 05:17:29
In the Linux kernel, the following vulnerability has been resolved: exfat: bound uniname advance in exfat_find_dir_entry() In exfat_find_dir_entry(), each TYPE_EXTEND (file name) entry advances the output pointer by a fixed amount while the loop gu...
CVE-2026-64294
- EPSS 0.16%
- Veröffentlicht 25.07.2026 08:49:32
- Zuletzt bearbeitet 23.08.2026 13:16:31
In the Linux kernel, the following vulnerability has been resolved: mm: do file ownership checks with the proper mount idmap Ever since idmapped mounts were introduced, inode ownership checks (for side-channel protection) in mincore() and madvise(M...
CVE-2026-64279
- EPSS 0.13%
- Veröffentlicht 25.07.2026 08:49:23
- Zuletzt bearbeitet 08.09.2026 09:18:17
In the Linux kernel, the following vulnerability has been resolved: i2c: core: fix adapter deregistration race Adapters can be looked up by their id using i2c_get_adapter() which takes a reference to the embedded struct device. Remove the adapter ...
CVE-2026-64280
- EPSS 0.16%
- Veröffentlicht 25.07.2026 08:49:23
- Zuletzt bearbeitet 23.08.2026 13:16:31
In the Linux kernel, the following vulnerability has been resolved: fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region() afu_ioctl_dma_map() accepts a 64-bit length from userspace via DFL_FPGA_PORT_DMA_MAP ioctl without an upper bound...
CVE-2026-64276
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:49:21
- Zuletzt bearbeitet 17.08.2026 05:17:26
In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - bound the F30 keymap to the GPIO/LED count rmi_f30_map_gpios() allocates gpioled_key_map with min(gpioled_count, TRACKSTICK_RANGE_END) == at most 6 entries,...
CVE-2026-64277
- EPSS 0.21%
- Veröffentlicht 25.07.2026 08:49:21
- Zuletzt bearbeitet 17.08.2026 05:17:26
In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count rmi_f3a_initialize() takes the GPIO count from the device query register (f3a->gpio_count = buf & RMI_F3A_GPIO_COUNT,...
CVE-2026-64274
- EPSS 0.16%
- Veröffentlicht 25.07.2026 08:49:20
- Zuletzt bearbeitet 17.08.2026 05:17:26
In the Linux kernel, the following vulnerability has been resolved: Input: goodix - clamp the device-reported contact count goodix_ts_read_input_report() copies the number of touch points reported by the device into an on-stack buffer u8 point_da...