CVE-2026-89483
- EPSS 0.49%
- Veröffentlicht 11.09.2026 19:43:38
- Zuletzt bearbeitet 14.09.2026 13:19:05
In the Linux kernel, the following vulnerability has been resolved: nvme: zero the discard fallback page nvme_setup_discard() always maps sizeof(struct nvme_dsm_range) * NVME_DSM_MAX_RANGES = 4096 bytes as the DSM payload however many ranges the co...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:38
- Zuletzt bearbeitet 11.09.2026 20:19:30
In the Linux kernel, the following vulnerability has been resolved: lockd: fix NULL dereference on lockowner allocation failure nlmclnt_locks_init_private() installs NLM file lock operations even when nlmclnt_find_lockowner() fails to allocate a lo...
CVE-2026-89482
- EPSS 0.63%
- Veröffentlicht 11.09.2026 19:43:37
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: do not accept C2HData based on blk_rq_payload_bytes() alone Commit 25e5cb780e62 ("nvme-tcp: fix possible crash in write_zeroes processing") established that blk_rq_payloa...
CVE-2026-89481
- EPSS 0.38%
- Veröffentlicht 11.09.2026 19:43:36
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix host memory disclosure on R2T for a read command nvme_tcp_handle_r2t() does not check the direction of the request the R2T refers to. A malicious controller can send ...
CVE-2026-89479
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:43:35
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: stop processing a packet once its association is deleted sctp_endpoint_bh_rcv() looks the association up only when chunk->asoc is NULL, and caches the result in chunk->asoc a...
CVE-2026-89480
- EPSS 0.37%
- Veröffentlicht 11.09.2026 19:43:35
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: reject a read that transferred too few bytes nvme_tcp_recv_data() completes a request once the current C2HData PDU has been consumed. Nothing compares the total bytes rec...
CVE-2026-89478
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:43:34
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: drop a chunk if its transport was removed sctp_rcv() resolves the transport once per packet and leaves it in chunk->transport. The lookup reference, or the one sctp_add_backl...
CVE-2026-89476
- EPSS 0.6%
- Veröffentlicht 11.09.2026 19:43:33
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->outcnt underflow on duplicate RECONF responses A cached RECONF chunk may contain more than one request parameter. A duplicate response can therefore find and pro...
CVE-2026-89477
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:43:33
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref on untransmitted RECONF completion sctp_process_strreset_outreq(), sctp_process_strreset_addstrm_out() and sctp_process_strreset_resp() complete a pending stre...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:32
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq24257: fix use-after-free on remove The STAT-pin interrupt is devm-managed, so it stays armed until the devm cleanup that runs after remove() returns. remove() can...