CVE-2026-80937
- EPSS 0.32%
- Veröffentlicht 11.09.2026 19:42:10
- Zuletzt bearbeitet 03.10.2026 11:17:41
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: bound the device EEPROM address before the EFUSE copy mt7915_mcu_get_eeprom() copies a fixed EFUSE block into the driver's dev->mt76.eeprom.data buffer at the o...
CVE-2026-80935
- EPSS 0.22%
- Veröffentlicht 11.09.2026 19:42:09
- Zuletzt bearbeitet 03.10.2026 11:17:41
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: bound the device EEPROM address before the EFUSE copy mt7996_mcu_get_eeprom() derives the destination of the EFUSE/EXT block copy from the address reported by t...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:08
- Zuletzt bearbeitet 11.09.2026 20:18:57
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix TX DMA mapping leak for AddBA req frames mt7996/mt7992 hand the firmware a HW MAC-TXP for AddBA req action frames (MT_TXD7_MAC_TXD, set in mt7996_mac_write_...
CVE-2026-80932
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:42:07
- Zuletzt bearbeitet 14.09.2026 13:18:49
In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: flush works in dependency order virtio_vsock_remove() stops the virtqueues and then flushes each work item before freeing the enclosing virtio_vsock. The current ord...
CVE-2026-80933
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:07
- Zuletzt bearbeitet 14.09.2026 13:18:49
In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate default EEPROM firmware size The default EEPROM firmware is parsed and copied as a full EEPROM without checking its length. A truncated file can make t...
CVE-2026-80931
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:06
- Zuletzt bearbeitet 14.09.2026 13:18:49
In the Linux kernel, the following vulnerability has been resolved: w1: ds28e17: reject an oversize length on an I2C block read w1_f19_i2c_master_transfer() is the master_xfer for the DS28E17 1-Wire to I2C bridge. On an I2C_M_RECV_LEN read, it take...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:05
- Zuletzt bearbeitet 14.09.2026 13:18:49
In the Linux kernel, the following vulnerability has been resolved: tpm: tpm_i2c_nuvoton: disable IRQ on wait timeout i2c_nuvoton_wait_for_stat() enables the IRQ before waiting for the interrupt handler to report a status change. If the wait times ...
CVE-2026-80928
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:04
- Zuletzt bearbeitet 14.09.2026 13:18:49
In the Linux kernel, the following vulnerability has been resolved: smack: fix cred UAF in smack_file_send_sigiotask() When inspecting the credentials of another task, objective credentials (->real_cred, accessed with __task_cred()) must always be ...
CVE-2026-80929
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:42:04
- Zuletzt bearbeitet 13.09.2026 07:17:00
In the Linux kernel, the following vulnerability has been resolved: sysctl: move the "cad_pid" entry from pid_table[] to kern_reboot_table[] cad_pid is global, and kill_cad_pid() is only used in the root namespace. However, due to pid_table_root_p...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:03
- Zuletzt bearbeitet 11.09.2026 20:18:56
In the Linux kernel, the following vulnerability has been resolved: timekeeping: Check the return value of tk_get_aux_ts64 in __do_adjtimex() If the auxiliary clock is disabled during tk_get_aux_ts64() but is enabled before tks->clock_valid is chec...