CVE-2026-80554
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:37:22
- Zuletzt bearbeitet 27.08.2026 06:17:38
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Limit the number of channel program segments The processing of channel programs, and the CCWs within them, is done recursively. As such, there is an arbitrary (but n...
CVE-2026-80555
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:37:22
- Zuletzt bearbeitet 27.08.2026 13:18:40
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Free all memory if cp_init() fails The routine cp_free() is called to unpin/free any memory once an I/O is completed successfully, or if cp_prefetch() fails. But if ...
CVE-2026-80552
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:21
- Zuletzt bearbeitet 27.08.2026 13:18:39
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Ensure index for read/write regions are within range The introduction of the capability chain rightly clamped the region indexes to the range of the capabilities its...
CVE-2026-80553
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:21
- Zuletzt bearbeitet 27.08.2026 13:18:40
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Cancel existing workqueues The initialization of the io_work and crw_work workqueues begs the question of whether they should be un-initialized. Add the correspondin...
CVE-2026-80551
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:37:20
- Zuletzt bearbeitet 27.08.2026 13:18:39
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Ensure first IDAW remains constant The first IDAW in a list does not need to be on a 2K/4K boundary like all others, and so is read separately to accurately calculat...
CVE-2026-80549
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:19
- Zuletzt bearbeitet 27.08.2026 13:18:39
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Move cp cleanup out of not operational The fsm_notoper() routine is called when the device has been lost, and is (by definition) no longer operational. Since this ca...
CVE-2026-80550
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:37:19
- Zuletzt bearbeitet 27.08.2026 06:17:37
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Fix out of bounds check on CCW array The routine ccwchain_calc_length() counts the number of channel command words (CCWs) that are chained together in a single chann...
CVE-2026-80547
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:18
- Zuletzt bearbeitet 27.08.2026 13:18:39
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Implement a crw lock Unlike the channel_program struct, which covers synchronous I/O submissions and asynchronous interrupts, the CRW region relies exclusively on as...
CVE-2026-80548
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:18
- Zuletzt bearbeitet 27.08.2026 13:18:39
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Selectively expand io_mutex The io_mutex was defined to serialize the io_regions, but then has also sort of been associated with the I/O themselves because of the cl...
CVE-2026-80546
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:37:17
- Zuletzt bearbeitet 27.08.2026 06:17:36
In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: Improve CCA CPRB length and overflow checks The xcrb_msg_to_type6cprb_msgx() function lacks proper input validation, creating security vulnerabilities: 1. Integer over...