- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:39
- Zuletzt bearbeitet 03.10.2026 11:18:09
In the Linux kernel, the following vulnerability has been resolved: tracing: Take the reference before publishing the named histogram trigger event_hist_trigger_named_init() puts the trigger on the global named_triggers list and only then takes the...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:39
- Zuletzt bearbeitet 03.10.2026 11:18:09
In the Linux kernel, the following vulnerability has been resolved: tracing: Undo the registration when enabling the histogram trigger fails Commit 6f86bdeab633 ("tracing: Fix bad hist from corrupting named_triggers list") described how a trigger t...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:38
- Zuletzt bearbeitet 25.09.2026 11:17:18
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Validate full buffer range in ivpu_to_cpu_addr Add a size parameter to ivpu_to_cpu_addr() and validate that the whole [vpu_addr, vpu_addr + size) range stays within the...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:37
- Zuletzt bearbeitet 25.09.2026 11:17:18
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Validate firmware log buffer metadata The tracing log headers parsed by fw_log_print_buffer() reside in DMA-shared BOs that the NPU firmware can write to. fw_log_from_...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:37
- Zuletzt bearbeitet 25.09.2026 11:17:18
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Limit firmware log name prints to field size The name in struct vpu_tracing_buffer_header is a fixed-size array populated by the NPU firmware. It is expected to be NUL-...
CVE-2026-97910
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:34
- Zuletzt bearbeitet 03.10.2026 11:18:09
In the Linux kernel, the following vulnerability has been resolved: ASoC: sprd: validate compress buffer sizes against fixed allocations sprd_platform_compr_open() allocates the stage 0 IRAM buffer (32K data area) and the stage 1 DDR buffer (2M dat...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:33
- Zuletzt bearbeitet 03.10.2026 11:18:09
In the Linux kernel, the following vulnerability has been resolved: ASoC: sti: initialize IRQ lock before requesting IRQ uni_reader_init() registers the shared IRQ before initializing reader->irq_lock. A pending interrupt can invoke the handler whi...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:32
- Zuletzt bearbeitet 25.09.2026 11:17:17
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btqcomsmd: destroy RPMsg endpoints before freeing hci_dev The command and ACL RPMsg endpoints store struct btqcomsmd as their callback private data. The receive callback...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:32
- Zuletzt bearbeitet 03.10.2026 11:18:09
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: Don't leak return code when parsing firmware format v2 When key_id from chip is zero, rtlbt_parse_firmware_v2() intentionally ignores all security headers. Howeve...
- EPSS 0.21%
- Veröffentlicht 25.09.2026 10:22:31
- Zuletzt bearbeitet 03.10.2026 11:18:08
In the Linux kernel, the following vulnerability has been resolved: bootconfig: Fix integer overflow in initrd size check Sashiko reported that in get_boot_config_from_initrd(), a crafted initrd with a huge bootconfig size (such as 0xFFFFFFFF) can ...