CVE-2026-89733
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:42
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: fix dangling pointers in uvc_function_bind() and uvc_function_unbind() In uvc_function_bind() error path, we use usb_ep_free_request which uses uvc->control_req b...
CVE-2026-89731
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:41
- Zuletzt bearbeitet 21.09.2026 14:17:26
In the Linux kernel, the following vulnerability has been resolved: cxl/ras: Fix cxl_rch_get_aer_info() out-of-bounds AER register read cxl_rch_get_aer_info() copies the RCH Downstream Port AER capability from the RCRB MMIO block using a readl() lo...
- EPSS 0.22%
- Veröffentlicht 11.09.2026 19:46:41
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Prevent deadlock during ep0 read loop Currently, ffs_ep0_read() holds ffs->mutex when it prepares to go to sleep waiting for an event. When no setup events are p...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:46:40
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: fpga: altera-cvp: Avoid out-of-bounds read in trailing byte write The trailing byte path in altera_cvp_send_block() dereferences a u32 pointer even when only 1-3 bytes remain in th...
CVE-2026-89729
- EPSS 0.32%
- Veröffentlicht 11.09.2026 19:46:39
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: HID: sensor-hub: Fix out-of-bounds write in sensor_hub_get_feature sensor_hub_get_feature() clamps its return value to the caller's buffer size, but the copy loop still copies fiel...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:37
- Zuletzt bearbeitet 14.09.2026 13:19:21
In the Linux kernel, the following vulnerability has been resolved: lib/ucs2_string.c: fix out-of-bounds read in ucs2_strnlen() Patch series "lib/ucs2_string.c: fix out-of-bounds read in ucs2_strnlen()", v2. This series fixes an off-by-one out-of-...
CVE-2026-89725
- EPSS 0.25%
- Veröffentlicht 11.09.2026 19:46:36
- Zuletzt bearbeitet 14.09.2026 13:19:21
In the Linux kernel, the following vulnerability has been resolved: media: cec: stm32: prevent out-of-bounds write on RX overflow stm32_rx_done() appends each received CEC byte to rx_msg.msg[] using rx_msg.len as the write index, incrementing it on...
CVE-2026-89723
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:35
- Zuletzt bearbeitet 14.09.2026 13:19:21
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix slab-out-of-bounds in nilfs_direct_propagate after truncation Shuangpeng Bai reported that KASAN detected a slab-out-of-bounds error in nilfs_direct_propagate() during ...
CVE-2026-89724
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:35
- Zuletzt bearbeitet 14.09.2026 13:19:21
In the Linux kernel, the following vulnerability has been resolved: media: vicodec: fix out-of-bounds write in FWHT encoder vidioc_s_fmt_vid_out() sizes the encoder CAPTURE buffer from the compressed descriptor pixfmt_fwht, whose sizeimage_mult is ...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:46:34
- Zuletzt bearbeitet 13.09.2026 07:17:37
In the Linux kernel, the following vulnerability has been resolved: PCI/sysfs: Fix out-of-bounds read in pci_write_legacy_io() pci_write_legacy_io() loads 4 bytes from the kernfs write buffer regardless of how many bytes userspace wrote: if (cou...