CVE-2026-43339
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:24
- Zuletzt bearbeitet 15.05.2026 19:50:34
In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent possible UaF in addrconf_permanent_addr() The mentioned helper try to warn the user about an exceptional condition, but the message is delivered too late, accessing t...
CVE-2026-43338
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:23
- Zuletzt bearbeitet 15.05.2026 19:52:36
In the Linux kernel, the following vulnerability has been resolved: btrfs: reserve enough transaction items for qgroup ioctls Currently our qgroup ioctls don't reserve any space, they just do a transaction join, which does not reserve any space, ne...
CVE-2026-43337
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:22
- Zuletzt bearbeitet 15.05.2026 19:56:32
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix NULL pointer dereference in dcn401_init_hw() dcn401_init_hw() assumes that update_bw_bounding_box() is valid when entering the update path. However, the existi...
CVE-2026-43336
- EPSS 0.05%
- Veröffentlicht 08.05.2026 13:31:22
- Zuletzt bearbeitet 15.05.2026 19:57:38
In the Linux kernel, the following vulnerability has been resolved: lib/crypto: chacha: Zeroize permuted_state before it leaves scope Since the ChaCha permutation is invertible, the local variable 'permuted_state' is sufficient to compute the origi...
CVE-2026-43334
- EPSS 0.03%
- Veröffentlicht 08.05.2026 13:31:20
- Zuletzt bearbeitet 15.05.2026 20:01:41
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SMP: force responder MITM requirements before building the pairing response smp_cmd_pairing_req() currently builds the pairing response from the initiator auth_req befor...
CVE-2026-43333
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:20
- Zuletzt bearbeitet 15.05.2026 20:07:34
In the Linux kernel, the following vulnerability has been resolved: bpf: reject direct access to nullable PTR_TO_BUF pointers check_mem_access() matches PTR_TO_BUF via base_type() which strips PTR_MAYBE_NULL, allowing direct dereference without a n...
CVE-2026-43332
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:19
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: thermal: core: Fix thermal zone device registration error path If thermal_zone_device_register_with_trips() fails after registering a thermal zone device, it needs to wait for the ...
- EPSS 0.02%
- Veröffentlicht 08.05.2026 13:31:18
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Disable KCOV instrumentation after load_segments() The load_segments() function changes segment registers, invalidating GS base (which KCOV relies on for per-cpu data). ...
CVE-2026-43330
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:18
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: crypto: caam - fix overflow on long hmac keys When a key longer than block size is supplied, it is copied and then hashed into the real key. The memory allocated for the copy need...
CVE-2026-43329
- EPSS 0.01%
- Veröffentlicht 08.05.2026 13:31:17
- Zuletzt bearbeitet 12.05.2026 14:10:27
In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: strictly check for maximum number of actions The maximum number of flowtable hardware offload actions in IPv6 is: * ethernet mangling (4 payload actions, 2 f...