- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:43
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: net/sched: bound qdisc_pkt_len to prevent qdisc soft lockup qdisc_get_stab() accepts a user-supplied size table, and __qdisc_calculate_pkt_len() amplifies qdisc_pkt_len() through t...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:41
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: net: fec: only stop PTP if it was initialized fec_ptp_init() is only called when fep->bufdesc_ex is available. However, fec_probe() unconditionally calls fec_ptp_stop() on the fail...
CVE-2026-90057
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:05:41
- Zuletzt bearbeitet 18.09.2026 18:17:40
In the Linux kernel, the following vulnerability has been resolved: slip: remove slip_hangup() to fix use-after-free in slip_receive_buf() Jaeyoung Chung and Eulgyu Kim reported a slab-use-after-free read in slip_receive_buf() when racing against t...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:40
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: usb: atm: usbatm: fix invalid ci_range initialization syzbot reported a shift-out-of-bounds in __vcc_connect(): UBSAN: shift-out-of-bounds in net/atm/common.c:382:32 shift exp...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:39
- Zuletzt bearbeitet 17.09.2026 17:16:53
In the Linux kernel, the following vulnerability has been resolved: tcp: fix corruption of urgent data on multi-segment retransmit On the normal xmit path, while in urgent mode we refuse to build a multi-segment TSO packet, so every segment gets it...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:38
- Zuletzt bearbeitet 17.09.2026 17:16:53
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_htb: limit htb_classify inner-class filter hops htb_classify() follows each filter-selected inner class by switching to cl->filter_list, but never bounds the number ...
CVE-2026-90049
- EPSS 0.17%
- Veröffentlicht 16.09.2026 10:33:45
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in skb_zerocopy() skb_zerocopy() copies frags from @from into @to. On an skb_orphan_frags() failure it calls skb_tx_error(@from), a...
CVE-2026-90048
- EPSS 0.51%
- Veröffentlicht 16.09.2026 10:33:44
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates a fixed buffer of al_aligned(record_size) (== record_size) bytes and then walks ever...
CVE-2026-90045
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:42
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pendi...
CVE-2026-90044
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:41
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix Use-After-Free in AIO error path In ffs_epfile_write_iter() and ffs_epfile_read_iter(), when ffs_epfile_io() fails with an error other than -EIOCBQUEUED, the...