- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:03
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: hwmon: (gpio-fan) Fix use-after-free in alarm work fan_alarm_irq_handler() queues fan_data->alarm_work, but nothing cancels it. fan_alarm_notify() dereferences fan_data and its hw...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:02
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: hantro: bound G2 HEVC tile loop to the buffer capacity prepare_tile_info_buffer() writes one entry per tile into the tile_sizes DMA buffer, sized for a grid equ...
CVE-2026-97576
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:21:59
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: media: v4l2-ctrls: validate HEVC tile counts The stateless HEVC decoders read num_tile_columns_minus1 + 1 entries from column_width_minus1[] and num_tile_rows_minus1 + 1 from row_h...
CVE-2026-97573
- EPSS 0.53%
- Veröffentlicht 25.09.2026 10:21:57
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Handle buffer allocation failure in bnxt_rx_ring_reset() bnxt_rx_ring_reset() frees the ring buffers and then reallocates them, ignoring the result. bnxt_alloc_one_rx_rin...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:56
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Propagate RX ring init failures in bnxt_init_nic() bnxt_init_rx_rings() returns an error when bnxt_alloc_one_rx_ring() fails, but bnxt_init_nic() discards that return valu...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:54
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: mptcp: syncookies: remember the request backup flag Instead of using an uninitialised bit when copying the info in subflow_ulp_clone(). To fix this, no need to extend the join_ent...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:53
- Zuletzt bearbeitet 25.09.2026 11:17:07
In the Linux kernel, the following vulnerability has been resolved: mptcp: prevent race between disconnect() and rtx Sashiko noted that the two event can race, leading to inconsistent status. Prevent the race using the synchronous timer stop operat...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:53
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: kernel: drop pending ADD_ADDR when removing ID0 The in-kernel MPTCP path manager can leave a stale ADD_ADDR announcement entry alive when removing the id 0 endpoint. Thi...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:52
- Zuletzt bearbeitet 25.09.2026 11:17:07
In the Linux kernel, the following vulnerability has been resolved: smb: client: reject short READ responses in CIFSSMBRead() CIFSSMBRead() reads DataLengthHigh, DataLength and DataOffset out of the READ_RSP returned by the server without first che...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:51
- Zuletzt bearbeitet 03.10.2026 11:18:03
In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.idmap descriptions cifs.idmap key descriptions carry authority-bearing fields (owner and group SIDs and uid/gid values in "os:"/"gs:"/"oi:"/"gi:"...