- EPSS -
- Veröffentlicht 07.10.2026 13:01:48
- Zuletzt bearbeitet 07.10.2026 13:17:23
In the Linux kernel, the following vulnerability has been resolved: tcp: fix use-after-free of retransmit_skb_hint in tcp_send_synack() When tcp_send_synack() replaces the cloned SYN skb at the head of the retransmit queue with a copy, it frees the...
- EPSS -
- Veröffentlicht 07.10.2026 13:01:47
- Zuletzt bearbeitet 07.10.2026 13:17:22
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: preserve mremap address delta when skipping page tables move_hugetlb_page_tables() optimizes mremap() by advancing to the last entry in the page table when the source p...
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:46:56
- Zuletzt bearbeitet 06.10.2026 09:18:31
In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: fix stack OOB read in iptfs_skb_reset_frag_walk() iptfs_skb_reset_frag_walk() advances to the fragment containing @offset with an unbounded loop: while (offset >= wa...
- EPSS 0.16%
- Veröffentlicht 06.10.2026 08:46:55
- Zuletzt bearbeitet 06.10.2026 09:18:31
In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: fix runt reassembly panic from short inner tot_len When the start of an inner packet is split across two outer packets such that fewer than 4 bytes land at the end of ...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:46:54
- Zuletzt bearbeitet 06.10.2026 09:18:31
In the Linux kernel, the following vulnerability has been resolved: xfrm: fix compat ALLOCSPI request use-after-free xfrm_state_netlink() builds the ALLOCSPI response with dump_one_state(), which already calls alloc_compat() with the response skb a...
CVE-2026-98369
- EPSS 0.15%
- Veröffentlicht 06.10.2026 08:46:54
- Zuletzt bearbeitet 07.10.2026 07:17:11
In the Linux kernel, the following vulnerability has been resolved: xfrm: add missing rcu_read_lock(), skb_dst_force() and dev_hold() for xfrm_trans_reinject() syzbot reported a suspicious RCU usage warning in ip6_pkt_drop(): WARNING: suspicious...
CVE-2026-98368
- EPSS 0.13%
- Veröffentlicht 06.10.2026 08:46:53
- Zuletzt bearbeitet 07.10.2026 07:17:11
In the Linux kernel, the following vulnerability has been resolved: esp: downgrade zerocopy managed frags before mutating skb frags On the out-of-place output path (esp->inplace == false) ESP rewrites the skb frag array: esp_output_head() appends a...
CVE-2026-98367
- EPSS 0.13%
- Veröffentlicht 06.10.2026 08:46:52
- Zuletzt bearbeitet 07.10.2026 07:17:11
In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Clear association under lock if siw_qp_modify fails in siw_accept We need to clear cep before release state_lock as siw_qp_llp_close and siw_qp_modify->siw_qp_llp_close d...
CVE-2026-98366
- EPSS 0.12%
- Veröffentlicht 06.10.2026 08:46:51
- Zuletzt bearbeitet 07.10.2026 07:17:10
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: validate access flags before swapping the MR's PD rxe_rereg_user_mr() reassigns mr->ibmr.pd first and only then validates the IB_MR_REREG_ACCESS argument: if (flags & I...
CVE-2026-98365
- EPSS 0.38%
- Veröffentlicht 06.10.2026 08:46:50
- Zuletzt bearbeitet 07.10.2026 07:17:10
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix integer overflow in mr_check_range() leading to OOB access mr_check_range() validates that [iova, iova+length) falls within the registered MR range using wraparound-p...