CVE-2026-89611
- EPSS 0.38%
- Veröffentlicht 11.09.2026 19:45:12
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: validate non-resident attribute offsets ntfs_attr_update_meta() shifts the attribute name when converting between non-sparse and sparse attributes. Converting to sparse also ...
CVE-2026-89609
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:45:11
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: hold msg ctx list lock when cleaning daemon queue ecryptfs_exorcise_daemon() drops queued messages from a dying daemon without holding ecryptfs_msg_ctx_lists_mux, but ecr...
CVE-2026-89610
- EPSS 0.55%
- Veröffentlicht 11.09.2026 19:45:11
- Zuletzt bearbeitet 13.09.2026 07:17:26
In the Linux kernel, the following vulnerability has been resolved: ntfs: verify run length exceeding volume boundary The mapping pairs decoder validates that the starting LCN is within the volume but does not check if the run extends beyond the vo...
CVE-2026-89608
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:10
- Zuletzt bearbeitet 14.09.2026 13:19:15
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: pass packet set buffer size to parser ecryptfs_parse_packet_set() receives a pointer into the file header, but it calculates the remaining packet buffer size from PAGE_SI...
CVE-2026-89607
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:09
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject oversized encrypted_key_size in parse_tag_3_packet parse_tag_3_packet() set encrypted_key_size from the Tag 3 packet body without bounding it against ECRYPTFS_MAX_...
CVE-2026-89605
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:45:08
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: release message context on send failure ecryptfs_send_message_locked() moves a message context from the free list to the allocated list before sending the request to the ...
CVE-2026-89606
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:45:08
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject too-small tag 70 packets ecryptfs_parse_tag_70_packet() subtracts fixed metadata fields from the parsed packet body size to derive the encrypted filename size. A ...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:45:07
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: efivarfs: Rate limit statfs() handler Ravi reports that statfs() may be called by unprivileged users on the efivarfs mount point, which may result in a flood of calls to the QueryV...
CVE-2026-89603
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:45:06
- Zuletzt bearbeitet 14.09.2026 13:19:14
In the Linux kernel, the following vulnerability has been resolved: entry: Fix seccomp bypass after ptrace with TSYNC Sashiko review pointed out the following issue. If a thread is stopped in syscall_trace_enter() for ptrace, another thread can in...
CVE-2026-89602
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:45:05
- Zuletzt bearbeitet 21.09.2026 14:17:23
In the Linux kernel, the following vulnerability has been resolved: erofs: skip sufficiently large global buffers when resizing z_erofs_gbuf_nrpages is advanced only after every global buffer has been grown. If a resize fails after some buffers wer...