- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:43
- Zuletzt bearbeitet 03.10.2026 11:17:50
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: caiaq: validate EP1 reply lengths usb_ep1_command_reply_dispatch() uses buf[0] as a command byte and then reads command-specific fixed items from the same URB buff...
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:41
- Zuletzt bearbeitet 03.10.2026 11:17:50
In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: avoid reading TKIP MIC keys for non-TKIP ciphers rsi_hal_load_key() copies tx_mic_key and rx_mic_key from data[16] and data[24] whenever key data is present. Those offse...
CVE-2026-93806
- EPSS 0.24%
- Veröffentlicht 24.09.2026 16:02:40
- Zuletzt bearbeitet 03.10.2026 11:17:50
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: validate assoc response length before status and IE access cfg80211_rx_assoc_resp() initialises the status and response-IE fields of cfg80211_connect_resp_params fr...
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:39
- Zuletzt bearbeitet 03.10.2026 11:17:50
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: validate rx/tx MLME callback frame lengths before access cfg80211_rx_mlme_mgmt() and cfg80211_tx_mlme_mgmt() call tracepoints before rejecting frames shorter than t...
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:38
- Zuletzt bearbeitet 25.09.2026 13:17:21
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: ibss: wait for in-flight TX on disconnect While leaving an IBSS in ieee80211_ibss_disconnect() mac80211 flushes stations, turns the carrier off and immediately tell...
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:37
- Zuletzt bearbeitet 03.10.2026 11:17:50
In the Linux kernel, the following vulnerability has been resolved: wifi: libipw: fix key index receive bound checks libipw_rx() reads skb->data[hdrlen + 3] to extract the WEP key index in both the software-decrypt key selection path and the hardwa...
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:36
- Zuletzt bearbeitet 03.10.2026 11:17:49
In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: validate beacon length before fixed buffer copy rsi_prepare_beacon() copies the mac80211 beacon frame after FRAME_DESC_SZ into a management skb whose usable tailroom may...
- EPSS 0.12%
- Veröffentlicht 24.09.2026 16:02:35
- Zuletzt bearbeitet 25.09.2026 13:17:20
In the Linux kernel, the following vulnerability has been resolved: smb/client: zero-initialize stack-allocated cifs_open_info_data Stack-allocated cifs_open_info_data may contain random data. This can make some fields have wrong value if they are ...
- EPSS 0.17%
- Veröffentlicht 24.09.2026 16:02:34
- Zuletzt bearbeitet 03.10.2026 11:17:49
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free on reloc root after error in insert_dirty_subvol() If during relocation we fail in insert_dirty_subvol() because btrfs_update_reloc_root() returned an err...
CVE-2026-93799
- EPSS 0.24%
- Veröffentlicht 24.09.2026 16:02:32
- Zuletzt bearbeitet 03.10.2026 11:17:49
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: validate sta_id in BA window status notif BA_WINDOW_STATUS_NOTIFICATION_ID extracts a 5-bit sta_id from the firmware notification and uses it to index fw_id_to_...