CVE-2026-31694
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:23:22
In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_add_dirent_to_cache() computes a serialized dirent size from the server-controlled namelen field and copies the dirent into a sing...
CVE-2026-31695
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:19:51
In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free Currently we execute `SET_NETDEV_DEV(dev, &priv->lowerdev->dev)` for the virt_wifi net devices. However, unregisterin...
CVE-2026-31696
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:17:41
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing validation of ticket length in non-XDR key preparsing In rxrpc_preparse(), there are two paths for parsing key payloads: the XDR path (for large payloads) and th...
CVE-2026-31697
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:08:18
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed When retrieving the ID for the CPU, don't attempt to copy the ID blob to userspace if the firmware command ...
CVE-2026-31698
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:06:34
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed When retrieving the PDH cert, don't attempt to copy the blobs to userspace if the firmware command fa...
CVE-2026-31699
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:04:51
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed When retrieving the PEK CSR, don't attempt to copy the blob to userspace if the firmware command failed. ...
CVE-2026-31700
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:16:19
- Zuletzt bearbeitet 06.05.2026 19:01:07
In the Linux kernel, the following vulnerability has been resolved: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() In tpacket_snd(), when PACKET_VNET_HDR is enabled, vnet_hdr points directly into the mmap'd TX ring buffer shared wi...
CVE-2026-43057
- EPSS 0.07%
- Veröffentlicht 01.05.2026 14:15:49
- Zuletzt bearbeitet 06.05.2026 18:48:59
In the Linux kernel, the following vulnerability has been resolved: net: correctly handle tunneled traffic on IPV6_CSUM GSO fallback NETIF_F_IPV6_CSUM only advertises support for checksum offload of packets without IPv6 extension headers. Packets w...
CVE-2026-43054
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:47
- Zuletzt bearbeitet 07.05.2026 18:28:19
In the Linux kernel, the following vulnerability has been resolved: scsi: target: tcm_loop: Drain commands in target_reset handler tcm_loop_target_reset() violates the SCSI EH contract: it returns SUCCESS without draining any in-flight commands. T...
CVE-2026-43052
- EPSS 0.01%
- Veröffentlicht 01.05.2026 14:15:46
- Zuletzt bearbeitet 07.05.2026 18:19:17
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: check tdls flag in ieee80211_tdls_oper When NL80211_TDLS_ENABLE_LINK is called, the code only checks if the station exists but not whether it is actually a TDLS sta...