- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:44
- Zuletzt bearbeitet 16.09.2026 11:17:06
In the Linux kernel, the following vulnerability has been resolved: powerpc/kexec_file: Prevent kexec range truncation Sashiko AI review pointed out the following issue. The __merge_memory_ranges() function incorrectly handles overlapping memory r...
CVE-2026-89960
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:42
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix stale pqap_hook pointer on error in vfio_ap_mdev_set_kvm() In vfio_ap_mdev_set_kvm(), kvm->arch.crypto.pqap_hook is set to &matrix_mdev->pqap_hook before the upda...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:41
- Zuletzt bearbeitet 16.09.2026 11:17:06
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix dereference matrix_mdev->kvm without checking for NULL The ap_driver structure has two fields which are function pointers to callbacks: * .on_config_changed: cal...
CVE-2026-89959
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:41
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix control domain removal in vfio_ap_mdev_cfg_remove The vfio_ap_config_remove function uses the bitmap_andnot function to clear bits from the matrix_mdev->matrix.ad...
CVE-2026-89957
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:40
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix hot-unplug skipped when last AP adapter or domain removed The vfio_ap_mdev_hot_unplug_cfg() function uses the return value of bitmap_andnot() to determine whether...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:39
- Zuletzt bearbeitet 16.09.2026 11:17:05
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix NULL deref in status_show() during queue probe When vfio_ap_mdev_probe_queue() creates the sysfs attribute group, the queue's driver data has not yet been set. A ...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:39
- Zuletzt bearbeitet 03.10.2026 11:17:44
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix missing lock required to access list of ap_matrix_mdev objects In order to traverse or add/remove ap_matrix_mdev objects in the matrix_dev->mdev_list, the matrix_...
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:32:38
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: mtd: afs: validate v2 image info bounds The AFS v2 parser uses footer[8] to locate the image information block inside the current erase block, then uses the image information regio...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:37
- Zuletzt bearbeitet 16.09.2026 11:17:05
In the Linux kernel, the following vulnerability has been resolved: mtd: mtdoops: free page bitmap when the backing MTD is removed mtdoops_notify_add() allocates oops_page_used when the configured MTD device is registered. mtdoops_notify_remove() ...
CVE-2026-89951
- EPSS 0.35%
- Veröffentlicht 16.09.2026 10:32:36
- Zuletzt bearbeitet 16.09.2026 15:18:19
In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix stale receive device on merged fragments Fragment reassembly reuses the skb from the highest-numbered buffered fragment as the merged packet. When that fragment was...