CVE-2026-89980
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:32:57
- Zuletzt bearbeitet 16.09.2026 15:18:22
In the Linux kernel, the following vulnerability has been resolved: ALSA: harmony: initialize locks before requesting IRQ snd_harmony_create() registers the IRQ before initializing h->lock and h->mixer_lock. A pending interrupt can invoke the handl...
CVE-2026-89979
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:56
- Zuletzt bearbeitet 17.09.2026 10:17:05
In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race between non-atomic ops and trigger-start We protect the races of the concurrent state transitions between atomic PCM ops, but the checks between the non-atomic ...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:53
- Zuletzt bearbeitet 16.09.2026 11:17:08
In the Linux kernel, the following vulnerability has been resolved: nvme-fabrics: fix DHCHAP secret leak on parse failure nvmf_parse_options() duplicates dhchap_secret and dhchap_ctrl_secret with match_strdup() before validating the DHHC-1: represe...
CVE-2026-89973
- EPSS 0.61%
- Veröffentlicht 16.09.2026 10:32:52
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: check the data direction of a C2HData PDU nvme_tcp_handle_c2h_data() finds the request by command id and checks that it has a payload, but it does not check that the comm...
CVE-2026-89972
- EPSS 0.6%
- Veröffentlicht 16.09.2026 10:32:51
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: nvme: add missing SRCU grace period in error path nvme_alloc_ns() error path at out_unlink_ns removes ns from the namespace head siblings list with list_del_rcu(&ns->siblings) but ...
CVE-2026-89970
- EPSS 0.78%
- Veröffentlicht 16.09.2026 10:32:50
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: Synchronize timeout work during SQ teardown nvmet_auth_sq_free() cancels auth_expired_work with cancel_delayed_work(). If the work has already started, cancellation doe...
CVE-2026-89969
- EPSS 0.7%
- Veröffentlicht 16.09.2026 10:32:49
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix out-of-bounds write when receiving an over-long PDU nvmet_tcp_try_recv_pdu() reads a PDU header into the fixed 128-byte queue->pdu union, then computes the remaining...
CVE-2026-89968
- EPSS 0.8%
- Veröffentlicht 16.09.2026 10:32:48
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: reject unsolicited H2CData PDUs nvmet_tcp_handle_h2c_data_pdu() accepts an H2CData PDU after only checking that its TTAG is a valid in-range command index and that the c...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:46
- Zuletzt bearbeitet 17.09.2026 10:17:05
In the Linux kernel, the following vulnerability has been resolved: parisc: eisa: Fix infinite loop when parsing invalid IRQ value When an invalid value is passed via the "eisa_irq_edge=" kernel command line parameter (e.g. "eisa_irq_edge=16,5"), e...
CVE-2026-89965
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:46
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: nvdimm/btt: reject an arena whose nfree is below the lane count The BTT info block's nfree field, the number of reserve free blocks, is read from the medium without validation. bt...