CVE-2026-74662
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:39
- Zuletzt bearbeitet 27.08.2026 13:18:36
In the Linux kernel, the following vulnerability has been resolved: inet: frags: publish queues before arming timer inet_frag_create() arms the fragment queue timer before inserting the queue into the fqdir rhashtable. If the namespace fragment tim...
CVE-2026-74647
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Remove buffer from list prior to unmap operation fastrpc_req_munmap_impl() is called to unmap any buffer. The buffer is getting removed from the list after it is unm...
CVE-2026-74648
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 25.08.2026 06:18:44
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: validate monitor transmit frame lengths rtw_cfg80211_monitor_if_xmit_entry() removes the radiotap header and then reads the 802.11 frame control field without c...
CVE-2026-74649
- EPSS 0.21%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 25.08.2026 06:18:45
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix missing shared-key auth challenge length check The WEP shared-key authentication handler uses the challenge-text element's attacker-controlled length withou...
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in WMM_param_handler() WMM_param_handler() copies a fixed-size WMM parameter element out of a received information element without checking that th...
CVE-2026-74651
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 25.08.2026 06:18:45
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in rtw_get_wpa_ie() rtw_get_wpa_ie() reads bytes at fixed offsets into a vendor-specific information element without checking that the element is l...
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: serial: 8250_of: clear stuck empty-FIFO RX-timeout on LPC32xx The NXP LPC32xx UART (PORT_LPC3220) can latch an RX character-timeout interrupt while the RX FIFO is empty: IIR report...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 22.08.2026 16:16:38
In the Linux kernel, the following vulnerability has been resolved: serial: 8250_dma: Clear stale RX state on shutdown serial8250_release_dma() terminates RX DMA and releases the channel, but leaves rx_running set. If the port is closed while an R...
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:37
- Zuletzt bearbeitet 25.08.2026 06:18:43
In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Serialize the scheduler timeout handlers V3D exposes several independent hardware queues (BIN, RENDER, TFU and CSD) but has only a single, global reset. A timeout on any o...
CVE-2026-74641
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:37
- Zuletzt bearbeitet 25.08.2026 06:18:43
In the Linux kernel, the following vulnerability has been resolved: ALSA: usx2y: bound the hwdep mmap fault offset snd_us428ctls_vm_fault() turns the faulting page offset into a kernel address with no bound of any kind: offset = vmf->pgoff << PAG...