- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:58
- Zuletzt bearbeitet 06.10.2026 09:18:21
In the Linux kernel, the following vulnerability has been resolved: net: bridge: mst: move switchdev call outside rcu This is a follow-up of one of sashiko's pre-existing bug reports. br_mst_set_state() calls switchdev_port_attr_set() for nonzero M...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:58
- Zuletzt bearbeitet 06.10.2026 09:18:20
In the Linux kernel, the following vulnerability has been resolved: tcp: Don't call skb_clone_and_charge_r() for close()d listener in tcp_v6_do_rcv(). tcp_v6_do_rcv() no longer calls skb_clone_and_charge_r() for TCP_LISTEN since commit 073d89808c06...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:57
- Zuletzt bearbeitet 06.10.2026 09:18:20
In the Linux kernel, the following vulnerability has been resolved: tcp: do not let tcp_rmem be set below 4096 We can hit a division by zero crash in tcp_rcvbuf_grow() and tcp_rcv_space_adjust(): divide error: 0000 [#1] PREEMPT SMP RIP: 0010:tcp_r...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:56
- Zuletzt bearbeitet 06.10.2026 09:18:20
In the Linux kernel, the following vulnerability has been resolved: dmaengine: mmp_pdma: fix wrong sg length in mmp_pdma_prep_slave_sg() In mmp_pdma_prep_slave_sg(), for_each_sg() iterates the scatterlist putting each entry into 'sg', but the entry...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:45:54
- Zuletzt bearbeitet 06.10.2026 09:18:20
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: coredump: Quiesce dump work on unregister hci_devcd_handle_pkt_init() arms dump_timeout and coredump producers queue dump_rx without holding an hdev reference. Unregiste...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:45:53
- Zuletzt bearbeitet 06.10.2026 09:18:19
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_qca: Do not write to the serial port after it is closed hci_uart_close() closes the serdev port if HCI_QUIRK_NON_PERSISTENT_SETUP is set (for example, for the WCN399...
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:45:51
- Zuletzt bearbeitet 06.10.2026 09:18:19
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtksdio, btmtkuart: validate WMT event length before struct access btmtksdio.c and btmtkuart.c cast a received WMT event straight to struct btmtk_hci_wmt_evt and read ...
CVE-2026-98290
- EPSS 0.26%
- Veröffentlicht 06.10.2026 08:45:50
- Zuletzt bearbeitet 07.10.2026 07:17:08
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: avoid socket lock inversion in listener cleanup rfcomm_sock_cleanup_listen() closes unaccepted child sockets through rfcomm_sock_close(), which takes the child s...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:45:49
- Zuletzt bearbeitet 06.10.2026 09:18:19
In the Linux kernel, the following vulnerability has been resolved: af_unix: Unify scc_index when finalising SCC in __unix_walk_scc(). Commit bfdb01283ee8 ("af_unix: Assign a unique index to SCC.") changed Tarjan's algorithm to update lowlink with ...
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:45:48
- Zuletzt bearbeitet 06.10.2026 09:18:19
In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix TSO header length truncation stmmac_tso_xmit() stores the protocol header length returned by stmmac_tso_header_size() in a u8. stmmac_tso_valid_packet() admits hea...