CVE-2026-90003
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:13
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: futex: Prevent rcuwait use-after-free during requeue PI On PREEMPT_RT, FUTEX_CMP_REQUEUE_PI can trigger a KASAN report (slab-out-of-bounds) in futex_requeue_pi_complete() invocatio...
CVE-2026-90001
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:12
- Zuletzt bearbeitet 16.09.2026 15:18:23
In the Linux kernel, the following vulnerability has been resolved: HID: bpf: serialize device reference release in struct_ops destroy path __hid_bpf_ops_destroy_device() and hid_bpf_unreg() can race on the same registration reference, double-putti...
CVE-2026-90002
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:12
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: ftrace: Take trace_array reference before accessing its ftrace_ops The trace instance files set_ftrace_filter and set_ftrace_notrace was updated to work with specific trace instanc...
CVE-2026-90000
- EPSS 0.35%
- Veröffentlicht 16.09.2026 10:33:11
- Zuletzt bearbeitet 16.09.2026 15:18:23
In the Linux kernel, the following vulnerability has been resolved: HID: rmi: fix OOB access with undersized RMI reports The hid-rmi driver sizes its writeReport/readReport buffer purely from the report descriptor supplied by the device, with no mi...
CVE-2026-89998
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:10
- Zuletzt bearbeitet 17.09.2026 10:17:05
In the Linux kernel, the following vulnerability has been resolved: dm: fix race when loading and unloading a table If the userspace calls two concurrent table load ioctls and one of them succeeds and the other fails, there is a race condition beca...
CVE-2026-89999
- EPSS 0.36%
- Veröffentlicht 16.09.2026 10:33:10
- Zuletzt bearbeitet 16.09.2026 15:18:23
In the Linux kernel, the following vulnerability has been resolved: HID: wacom: validate report length in wacom_intuos_pro2_bt_irq wacom_intuos_pro2_bt_irq() receives the wire report length in `len` but never consults it before parsing. After the r...
CVE-2026-89997
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:09
- Zuletzt bearbeitet 17.09.2026 10:17:05
In the Linux kernel, the following vulnerability has been resolved: dm: fix resume-vs-remove race If the user issues the resume ioctl and the remove ioctl at the same time, it may be possible that the device is resumed after it is suspended in __dm...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:33:08
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: dma-buf: dma-heap: don't publish fd before copy_to_user() succeeds DMA_HEAP_IOCTL_ALLOC allocates a dma-buf and installs an fd into the caller's fd table via dma_buf_fd() -> fd_ins...
CVE-2026-89994
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:33:07
- Zuletzt bearbeitet 16.09.2026 15:18:23
In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-edma: tracing: no ptr dereference during log output The fsl edma events store a pointer to a struct fsl_edma_engine in the ringbuffer and dereference it when a log e...
CVE-2026-89995
- EPSS 0.32%
- Veröffentlicht 16.09.2026 10:33:07
- Zuletzt bearbeitet 16.09.2026 15:18:23
In the Linux kernel, the following vulnerability has been resolved: dma-direct: return struct page from dma_direct_alloc_from_pool() Commit 5b138c534fda ("dma-direct: factor out a dma_direct_alloc_from_pool helper") changed dma_direct_alloc_from_po...