- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:45
- Zuletzt bearbeitet 11.09.2026 20:20:04
In the Linux kernel, the following vulnerability has been resolved: usb: typec: thunderbolt: Disable work before freeing tbt on remove tbt_altmode_remove() drops the plug and cable references without draining tbt->work. The work function dereferenc...
CVE-2026-89738
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:45
- Zuletzt bearbeitet 13.09.2026 07:17:38
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: at91_udc: drain polled-VBUS timer/work before udc is freed In polled-VBUS mode (board.vbus_pin && board.vbus_polled), probe arms a self-restarting cycle: at91_vbus_tim...
CVE-2026-89736
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:46:44
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_audio: Fix use-after-free on sound card disconnect g_audio_cleanup() invokes snd_card_free_when_closed() to initiate sound card teardown and immediately frees the un...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:43
- Zuletzt bearbeitet 11.09.2026 20:20:03
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Fix null pointer dereference in uvcg_video_init() In uvcg_video_init(), if kthread_run_worker() fails, the error logged uses uvcg_err(), however, the pointer it u...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:43
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: midi2: remove default configfs groups on teardown f_midi2_alloc_inst() creates default configfs child groups for the default endpoint and default block using configfs_...
CVE-2026-89733
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:42
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: fix dangling pointers in uvc_function_bind() and uvc_function_unbind() In uvc_function_bind() error path, we use usb_ep_free_request which uses uvc->control_req b...
CVE-2026-89731
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:41
- Zuletzt bearbeitet 21.09.2026 14:17:26
In the Linux kernel, the following vulnerability has been resolved: cxl/ras: Fix cxl_rch_get_aer_info() out-of-bounds AER register read cxl_rch_get_aer_info() copies the RCH Downstream Port AER capability from the RCRB MMIO block using a readl() lo...
- EPSS 0.22%
- Veröffentlicht 11.09.2026 19:46:41
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Prevent deadlock during ep0 read loop Currently, ffs_ep0_read() holds ffs->mutex when it prepares to go to sleep waiting for an event. When no setup events are p...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:46:40
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: fpga: altera-cvp: Avoid out-of-bounds read in trailing byte write The trailing byte path in altera_cvp_send_block() dereferences a u32 pointer even when only 1-3 bytes remain in th...
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:39
- Zuletzt bearbeitet 11.09.2026 20:20:03
In the Linux kernel, the following vulnerability has been resolved: i3c: renesas: Fix out-of-bounds access for newdevs mask When software initiates DAA (Dynamic Address Assignment), the controller reports the result via the NRSPQP (Normal Response ...