CVE-2026-89747
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:52
- Zuletzt bearbeitet 13.09.2026 07:17:39
In the Linux kernel, the following vulnerability has been resolved: tracing: Fix use-after-free in trace_pipe read on sub-buffer order change Writing to buffer_subbuf_size_kb calls ring_buffer_subbuf_order_set(), which frees every sub-buffer of the...
CVE-2026-89746
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:51
- Zuletzt bearbeitet 14.09.2026 13:19:23
In the Linux kernel, the following vulnerability has been resolved: tracing: Fix use-after-free with same-name named triggers When two hist triggers on different events are registered with the same name=, the second one reuses the first as named_da...
CVE-2026-89744
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:46:50
- Zuletzt bearbeitet 14.09.2026 13:19:23
In the Linux kernel, the following vulnerability has been resolved: device property: fix infinite loop in fwnode_for_each_child_node() When iterate over children of a fwnode that has a secondary fwnode, fwnode_get_next_child_node() can enter an inf...
CVE-2026-89743
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:46:49
- Zuletzt bearbeitet 13.09.2026 07:17:38
In the Linux kernel, the following vulnerability has been resolved: misc: nsm: bound the device-reported response length nsm_sendrecv_msg_locked() stores the virtqueue used-ring length reported by the NSM device into msg->resp.len without bounding ...
CVE-2026-89742
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:48
- Zuletzt bearbeitet 14.09.2026 13:19:23
In the Linux kernel, the following vulnerability has been resolved: rapidio: mport_cdev: fix use-after-free in dma_req_free() dma_req_free() acquires buf_mutex through req->map, drops the mapping reference with kref_put(), and then dereferences req...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:46:47
- Zuletzt bearbeitet 11.09.2026 20:20:04
In the Linux kernel, the following vulnerability has been resolved: serial: imx: serialize imx_uart_ports[] lifetime imx_uart_probe() publishes its devm-allocated port in imx_uart_ports[] before uart_add_one_port() because console setup uses the ta...
CVE-2026-89741
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:47
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: Revert "media: v4l2-dev: fix error handling in __video_register_device()" This reverts commit 2a934fdb01db6458288fc9386d3d8ceba6dd551a. The intentions of that patch were good, but...
CVE-2026-89738
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:45
- Zuletzt bearbeitet 13.09.2026 07:17:38
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: at91_udc: drain polled-VBUS timer/work before udc is freed In polled-VBUS mode (board.vbus_pin && board.vbus_polled), probe arms a self-restarting cycle: at91_vbus_tim...
CVE-2026-89736
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:46:44
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_audio: Fix use-after-free on sound card disconnect g_audio_cleanup() invokes snd_card_free_when_closed() to initiate sound card teardown and immediately frees the un...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:43
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: midi2: remove default configfs groups on teardown f_midi2_alloc_inst() creates default configfs child groups for the default endpoint and default block using configfs_...