CVE-2026-89445
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:12
- Zuletzt bearbeitet 03.10.2026 11:17:42
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix UAF in selftest IOPF reporting IOMMUFD selftest TRIGGER_IOPF borrows an attach handle from group->pasid_array without synchronizing against PASID detach, then a concur...
CVE-2026-89443
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:11
- Zuletzt bearbeitet 14.09.2026 13:19:01
In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Validate level in perf mask ioctls isst_if_get_perf_level_mask() and isst_if_get_base_freq_mask() use the user-provided level as an index into perf_levels[] via...
CVE-2026-89441
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:43:10
- Zuletzt bearbeitet 03.10.2026 11:17:41
In the Linux kernel, the following vulnerability has been resolved: mmc: via-sdmmc: cancel card-detect work on remove Disabling the device interrupt and freeing the IRQ prevents new card-detect work from being queued, but carddet_work already queue...
CVE-2026-89442
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:10
- Zuletzt bearbeitet 14.09.2026 13:19:01
In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Validate socket ID in clos_assoc ioctl isst_if_clos_assoc() validates the user-supplied socket_id with 'socket_id > topology_max_packages()', but isst_common.ss...
CVE-2026-89440
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:09
- Zuletzt bearbeitet 14.09.2026 13:19:01
In the Linux kernel, the following vulnerability has been resolved: mmc: via-sdmmc: stop card-detect handling on probe failure request_irq() registers the SD card-detect interrupt and the probe enables it before mmc_add_host() runs. If mmc_add_host...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:08
- Zuletzt bearbeitet 14.09.2026 13:19:01
In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Validate logical CPU id and clos id Validate max CLOS ID and logical CPU ID for core power feature. Reject any clos level or logical CPU number greater than the...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:08
- Zuletzt bearbeitet 11.09.2026 20:19:24
In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Add a NULL check for sst_inst[] To be consistent with other places, add a NULL check for failed socket loading by checking isst_common.sst_inst[].
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:07
- Zuletzt bearbeitet 03.10.2026 11:17:41
In the Linux kernel, the following vulnerability has been resolved: platform/x86: int1092: Fix potential memory leak in sar_probe() The memory allocated for device_mode_info in parse_package() called by sar_get_data() is not freed in some of the er...
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:43:06
- Zuletzt bearbeitet 11.09.2026 20:19:10
In the Linux kernel, the following vulnerability has been resolved: platform/x86: think-lmi: Free system certificate signatures Multi-certificate support also allows the system authentication object to store ->signature and ->save_signature, which ...
CVE-2026-81017
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:43:05
- Zuletzt bearbeitet 14.09.2026 13:18:55
In the Linux kernel, the following vulnerability has been resolved: platform/chrome: sensorhub: Bound the EC-reported sensor number Each EC FIFO event carries an 8-bit sensor number (in->sensor_num). cros_ec_sensorhub_ring_handler() validates the F...