- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:07:04
- Zuletzt bearbeitet 17.09.2026 17:17:11
In the Linux kernel, the following vulnerability has been resolved: apparmor: fix deadlock in complain-mode change_hat The use of change_hat when in complain mode can cause a deadlock when the hat doesn't exist and a new learning profile is created...
CVE-2026-90176
- EPSS 0.49%
- Veröffentlicht 17.09.2026 16:07:02
- Zuletzt bearbeitet 18.09.2026 18:17:45
In the Linux kernel, the following vulnerability has been resolved: ksmbd: Do not skip lock checks for single-byte ranges check_lock_range() uses inclusive ranges. Its callers pass the end offset as start + length - 1, so start == end represents a ...
CVE-2026-90174
- EPSS 0.15%
- Veröffentlicht 17.09.2026 16:07:01
- Zuletzt bearbeitet 18.09.2026 18:17:45
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds read in ksmbd_alloc_user() ksmbd_alloc_user() copies resp->hash_sz bytes out of the mountd IPC login response with user->passkey_sz = resp->hash_sz;...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:57
- Zuletzt bearbeitet 18.09.2026 18:17:44
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
- EPSS 0.24%
- Veröffentlicht 17.09.2026 16:06:57
- Zuletzt bearbeitet 17.09.2026 17:17:10
In the Linux kernel, the following vulnerability has been resolved: ksmbd: free preauth sessions on connection teardown SMB3.1.1 multichannel binding preserves the preauthentication hash in a preauth_session between the NTLM negotiate and authentic...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:56
- Zuletzt bearbeitet 17.09.2026 17:17:10
In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize oplock close with pending break ownership close may abort an in-flight oplock break while another breaker already holds an opinfo reference. Releasing pending_brea...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:55
- Zuletzt bearbeitet 17.09.2026 17:17:09
In the Linux kernel, the following vulnerability has been resolved: smb/server: fix null-ptr-deref in ksmbd_ipc_tree_connect_request() See the procedure below: ksmbd_tree_conn_connect ksmbd_share_config_get share->name = kstrdup() // f...
CVE-2026-90162
- EPSS 0.58%
- Veröffentlicht 17.09.2026 16:06:53
- Zuletzt bearbeitet 18.09.2026 18:17:44
In the Linux kernel, the following vulnerability has been resolved: ksmbd: defer publishing granted locks to prevent UAF/double-free race In smb2_lock(), mid-batch granted locks are published to connection-wide (conn->lock_list) and file-wide (fp->...
CVE-2026-90161
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:06:52
- Zuletzt bearbeitet 18.09.2026 18:17:44
In the Linux kernel, the following vulnerability has been resolved: erofs: fix interlaced ztailpacking pclusters On-disk sizes of interlaced pclusters should be block-aligned, and ztailpacking interlaced pclusters should be invalid at all. Current...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:06:51
- Zuletzt bearbeitet 17.09.2026 17:17:09
In the Linux kernel, the following vulnerability has been resolved: lwt_bpf: Restore reserved headroom after xmit program ip_finish_output2() expands an skb to LL_RESERVED_SPACE(dev) before LWT xmit. An LWT_XMIT BPF program can then modify the skb ...