- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:19
- Zuletzt bearbeitet 17.09.2026 17:17:03
In the Linux kernel, the following vulnerability has been resolved: net: qlcnic: validate unified ROM sections before loading The unified ROM parser reads directory, product, and data-descriptor fields from the firmware file. Existing validation f...
CVE-2026-90110
- EPSS 0.6%
- Veröffentlicht 17.09.2026 16:06:18
- Zuletzt bearbeitet 18.09.2026 18:17:42
In the Linux kernel, the following vulnerability has been resolved: inetpeer: randomize RB-tree node comparison using SipHash The inetpeer rate limiting system stores peer entries in a Red-Black tree keyed deterministically on the remote IP address...
CVE-2026-90111
- EPSS 0.15%
- Veröffentlicht 17.09.2026 16:06:18
- Zuletzt bearbeitet 18.09.2026 18:17:42
In the Linux kernel, the following vulnerability has been resolved: ip6mr: do not clone dst in ip6mr_cache_report() IPv6 input attaches a non-refcounted (NOREF) dst to skbs under RCU. When an ingress multicast packet misses MFC lookup, ip6mr_cache_...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:17
- Zuletzt bearbeitet 17.09.2026 17:17:02
In the Linux kernel, the following vulnerability has been resolved: net: sched: fix 32-bit backlog wrap in gred, bfifo and plug enqueue gred_enqueue(), bfifo_enqueue() and plug_enqueue() admit a packet when the current backlog plus the packet lengt...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:06:16
- Zuletzt bearbeitet 17.09.2026 17:17:02
In the Linux kernel, the following vulnerability has been resolved: net/smc: free pending qentry in smc_llc_flow_stop() before memset smc_llc_flow_stop() resets a flow struct with a blind memset: spin_lock_bh(&lgr->llc_flow_lock); memset(flow, 0...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:06:16
- Zuletzt bearbeitet 17.09.2026 17:17:02
In the Linux kernel, the following vulnerability has been resolved: net/smc: free stashed qentry before overwrite in REQ_ADD_LINK to ADD_LINK transition When smc_llc_event_handler() transitions the local LLC flow from SMC_LLC_FLOW_REQ_ADD_LINK to S...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:15
- Zuletzt bearbeitet 17.09.2026 17:17:02
In the Linux kernel, the following vulnerability has been resolved: net: bridge: arp/nd proxy: fix reading neigh ha Currently neigh ha address is read directly, but that can result in torn/partial reads if the neigh is being updated. Use neigh_ha_s...
CVE-2026-90104
- EPSS 0.52%
- Veröffentlicht 17.09.2026 16:06:14
- Zuletzt bearbeitet 18.09.2026 18:17:42
In the Linux kernel, the following vulnerability has been resolved: NFSv4.1: zero referring call lists before decoding decode_cb_sequence_args() allocates csa_rclists with kmalloc_objs(), so each referring_call_list starts uninitialized. decode_rc_...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:14
- Zuletzt bearbeitet 17.09.2026 17:17:02
In the Linux kernel, the following vulnerability has been resolved: vxlan: fix reading neigh ha Currently arp/neigh_reduce read neigh ha directly which can lead to partial reads while the neigh is being updated. Use neigh_ha_snapshot to take a stab...
CVE-2026-90103
- EPSS 0.69%
- Veröffentlicht 17.09.2026 16:06:13
- Zuletzt bearbeitet 18.09.2026 18:17:42
In the Linux kernel, the following vulnerability has been resolved: NFSv4.2: fix LAYOUTSTATS send buffer exhaustion encode_layoutstats_maxsz budgets XDR_QUADLEN(PNFS_LAYOUTSTATS_MAXSIZE), i.e. 256 bytes, for the layoutupdate4 body written by the la...