CVE-2026-98349
- EPSS 0.26%
- Veröffentlicht 06.10.2026 08:46:37
- Zuletzt bearbeitet 07.10.2026 07:17:09
In the Linux kernel, the following vulnerability has been resolved: wifi: libipw: reject too-short beacon and probe responses libipw_process_probe_response() and the libipw_network_init() call it makes assume the frame contains the full 36-byte bea...
CVE-2026-98348
- EPSS 0.26%
- Veröffentlicht 06.10.2026 08:46:36
- Zuletzt bearbeitet 07.10.2026 07:17:09
In the Linux kernel, the following vulnerability has been resolved: wifi: libipw: reject too-short association responses libipw_handle_assoc_resp() reads the capability, status and aid fields of the 30-byte association response prefix and then comp...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:36
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: IB/IPoIB: Avoid restoring OPER_UP after multicast flush ipoib_ib_dev_flush_light() temporarily clears IPOIB_FLAG_OPER_UP to prevent multicast joins while ipoib_mcast_dev_flush() is...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:35
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: don't get the radio mask for netdev-less wdevs cfg80211_calculate_bi_data() calls rdev_get_radio_mask() with wdev->netdev, which can be NULL and then crashes in mac...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:34
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: check IP header size in cfg80211_classify8021d() A frame that looks like IP can be transmitted, but be too short, so the DS field is read incorrectly: BUG: KMSAN...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:33
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: dmaengine: Fix device kref underflow in dma_chan_put() dma_chan_get() takes chan->device->ref only on the slow path: /* no kref on fast path */ if (chan->client_count) { __mod...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:33
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: dmaengine: fix use-after-free in dma_chan_put() and dma_release_channel() When dma_device_put() drops the last reference on chan->device->ref, dma_device_release() runs and may fre...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:32
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: dmaengine: wait for RCU readers before releasing dma_device dma_issue_pending_all() walks the dma_device_list with list_for_each_entry_rcu() under rcu_read_lock(). dma_device_relea...
CVE-2026-98341
- EPSS 0.14%
- Veröffentlicht 06.10.2026 08:46:31
- Zuletzt bearbeitet 07.10.2026 07:17:09
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: don't free driver-owned scan requests When an interface goes down while a scan is running, cfg80211 completes the scan towards userspace and frees the scan request....
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:30
- Zuletzt bearbeitet 06.10.2026 09:18:26
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: only group hidden BSSes with beacon entries When a probe response for an unknown BSS comes in, __cfg80211_bss_update() looks for an existing entry with the same BSS...