CVE-2026-74637
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:36
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix group leader use-after-free after sibling detach perf_group_detach() handles leader and sibling detach differently. When the group leader is detached, all siblings a...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 22.08.2026 16:16:35
In the Linux kernel, the following vulnerability has been resolved: net: atlantic: free RX pages of consumed but not refilled buffers aq_ring_rx_deinit() only walks [sw_head, sw_tail), the region posted to hardware. Since the page reuse strategy wa...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 23.08.2026 13:16:47
In the Linux kernel, the following vulnerability has been resolved: net: atlantic: free stranded TX buffers on ring deinit aq_vec_deinit() drains the TX rings with a single aq_ring_tx_clean() call, which frees at most AQ_CFG_TX_CLEAN_BUDGET (256) d...
CVE-2026-74624
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 25.08.2026 06:18:40
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: defer invalid log until after unlock TCP and SCTP conntrack paths can emit invalid-packet logs while ct->lock is still held. When invalid logging is route...
CVE-2026-74625
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 25.08.2026 06:18:40
In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: release template ct on non-IP path A bridge nftables ct zone set rule can attach a conntrack template to an skb before nf_ct_bridge_pre() sees it. For non-IPv4 a...
CVE-2026-74626
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 27.08.2026 13:18:34
In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_netdev: Preserve RX queue depth on allocation failure ntb_netdev_rx_handler() hands the received skb to the network stack before allocating its replacement. If the allocat...
CVE-2026-74627
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 25.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: net: devmem: prevent net-iov / page mixing We should either have net_iov or page backed frags in a single skb, otherwise it blows up down the stack. Don't allow mixing in zerocopy_...
CVE-2026-74628
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 27.08.2026 13:18:34
In the Linux kernel, the following vulnerability has been resolved: net/x25: fix use-after-free of the socket by its timers The x25 timers are armed with mod_timer() and cancelled with timer_delete(), so a pending timer holds no reference on the so...
CVE-2026-74629
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 25.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: net/dibs: Correct freeing of dmb_clientid_arr A dibs device interrupt handler can be active after dibs_dev_del() and may still access dmb_clientid_arr. (UAF) In case of a failure ...
CVE-2026-74630
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 25.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent in6_dev_get() from resurrecting inet6_dev in6_dev_get() reads dev->ip6_ptr under RCU and then unconditionally increments its refcount. Device teardown can clear the p...