CVE-2026-97594
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:10
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: landlock: Fix use-after-free of the source's parent directory current_check_refer_path() reads old_dentry->d_parent without holding a reference nor a lock on it, and then dereferen...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:09
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: s390/crypto: Fix missing scrub of temp buffers with AES ctr and gcm algorithm In function ctr_aes_crypt() there is a buffer used to process remaining bytes < AES_BLOCK_SIZE. This b...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:06
- Zuletzt bearbeitet 25.09.2026 11:17:09
In the Linux kernel, the following vulnerability has been resolved: perf: RISC-V: store available counter mask as bitmap The available-counter mask was a single unsigned long, but iteration uses RISCV_MAX_COUNTERS, which is 64. On RV32 that reads p...
CVE-2026-97584
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:04
- Zuletzt bearbeitet 25.09.2026 15:18:00
In the Linux kernel, the following vulnerability has been resolved: afs: Fix incorrect free in candidate cleanup in afs_lookup_server() Fix afs_lookup_server() to not free an existing server's endpoint state when cleaning up a candidate server. Th...
CVE-2026-97583
- EPSS 0.41%
- Veröffentlicht 25.09.2026 10:22:03
- Zuletzt bearbeitet 25.09.2026 15:18:00
In the Linux kernel, the following vulnerability has been resolved: afs: Clear stale peer app data after address list changes afs_fs_probe_fileserver() fetches the current endpoint state under server->fs_lock, but leaves old_alist as NULL. Consequ...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:03
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: hwmon: (gpio-fan) Fix use-after-free in alarm work fan_alarm_irq_handler() queues fan_data->alarm_work, but nothing cancels it. fan_alarm_notify() dereferences fan_data and its hw...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:02
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: hantro: bound G2 HEVC tile loop to the buffer capacity prepare_tile_info_buffer() writes one entry per tile into the tile_sizes DMA buffer, sized for a grid equ...
CVE-2026-97579
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:01
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: bound AV1 tile-start copy to the array capacity vdec_av1_slice_setup_tile() copies tile_cols + 1 / tile_rows + 1 entries into mi_col_starts[] / mi_row_star...
CVE-2026-97578
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:00
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: rockchip: guard VPU981 AV1 divisor and tile buffer rockchip_vpu981_av1_dec_set_tile_info() divides context_update_tile_id by tile_info->tile_cols and writes one...
CVE-2026-97577
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:21:59
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: rockchip: reject AV1 frames exceeding the tile capacity rockchip_vpu981_av1_dec_set_tile_info() indexes the tile group entry array by tile1 * tile_cols + tile0,...