CVE-2026-89574
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:44:42
- Zuletzt bearbeitet 13.09.2026 07:17:23
In the Linux kernel, the following vulnerability has been resolved: dm array: validate array block headers on read array_block_check() validates blocknr and csum and nothing else, while node_check(), next to it, has bounded the structural fields si...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:44:41
- Zuletzt bearbeitet 21.09.2026 14:17:23
In the Linux kernel, the following vulnerability has been resolved: cpufreq: apple-soc: Fix OPP table cleanup apple_soc_cpufreq_init() adds OPP tables from firmware, but some failure paths do not remove them. The driver also uses dev_pm_opp_remove_...
CVE-2026-89573
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:44:41
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: dm array: reject an array block whose value size is not the caller's array_block_check() can only compare the header against itself, so a block with value_size 4 and max_entries 10...
CVE-2026-89569
- EPSS 0.31%
- Veröffentlicht 11.09.2026 19:44:38
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: serialize security confirmation handling rfcomm_security_cfm() looks up a session on session_list and then walks its DLC list without holding rfcomm_mutex. Since...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:44:37
- Zuletzt bearbeitet 11.09.2026 20:19:40
In the Linux kernel, the following vulnerability has been resolved: jbd2: bound shrinker scans by examined checkpoint buffers The jbd2 shrinker currently accounts only checkpoint buffers that it successfully releases against nr_to_scan. Busy buffe...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:44:36
- Zuletzt bearbeitet 11.09.2026 20:19:40
In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy checkpoint buffers journal_shrink_one_cp_list() skips busy checkpoint buffers when called with JBD2_SHRINK_BUSY_SKIP. The continue st...
CVE-2026-89564
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:44:35
- Zuletzt bearbeitet 21.09.2026 14:17:23
In the Linux kernel, the following vulnerability has been resolved: ip: orphan prefetched skbs before multicast forwarding IPv4 and IPv6 input preserve an skb->sk association installed by bpf_sk_assign() so that local delivery can use the selected ...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:44:35
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: ipip: fix skb leak in collect_md mode when metadata_dst allocation fails In collect_md mode ipip_tunnel_rcv() returns 0 without freeing the skb when ip_tun_rx_dst() fails to alloca...
CVE-2026-89563
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:44:34
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: use skb_cow_head() in ip6_tnl_xmit() ip6_tnl_xmit() may need to expand headroom before it can push the outer IPv6 and optional encap headers. It currently does that wit...
CVE-2026-89562
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:44:33
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: ip6_gre: fix hardware header length for NBMA tunnels ip6gre_tnl_link_config_route() accumulates the lower device's hardware header length into dev->hard_header_len whenever header_...