- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:57:57
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_flow: Dont expose folded kernel pointers The flow classifier falls back to addr_fold() for fields that are missing from packet headers. In map mode, userspace contro...
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:57
- Zuletzt bearbeitet 03.10.2026 11:17:38
In the Linux kernel, the following vulnerability has been resolved: ASoC: topology: Check PCM and DAI name strings before use Topology objects store several PCM and DAI names in fixed-size UAPI arrays. Other topology parser paths validate these fie...
CVE-2026-74289
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:56
- Zuletzt bearbeitet 03.10.2026 11:17:38
In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: Don't dump dying fib_info in fib_leaf_notify(). syzbot reported use-after-free in nsim_fib4_prepare_event(). [0] The problem is that the following functions call fib_in...
CVE-2026-74287
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:55
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded address parameter length sctp_verify_asconf() and sctp_verify_param() only validate ADD_IP, DEL_IP, and SET_PRIMARY parameters against a fixed minimum size ...
CVE-2026-74288
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:55
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net: fib_rules: Don't dump dying fib_rule in fib_rules_dump(). rocker_router_fib_event() calls fib_rule_get() during RCU dump. If the fib_rule is dying, refcount_inc() will compla...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:57:54
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net: pfcp: allocate per-cpu tstats for PFCP netdevs PFCP uses dev_get_tstats64() as its ndo_get_stats64 callback, but pfcp_link_setup() does not request NETDEV_PCPU_STAT_TSTATS. T...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:53
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_hfsc: Don't make class passive twice update_vf() is called from two places for the same class during a single dequeue when the class's child qdisc (e.g. codel/fq_cod...
CVE-2026-74285
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:53
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net: Stop leased rxq before uninstalling its memory provider netif_rxq_cleanup_unlease() tears down the memory provider that was installed on a physical RX queue through a netkit q...
CVE-2026-74282
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:52
- Zuletzt bearbeitet 17.08.2026 06:19:21
In the Linux kernel, the following vulnerability has been resolved: tipc: prevent snt_unacked underflow on CONN_ACK tipc_sk_conn_proto_rcv() subtracts the peer-supplied connection ack count from the unsigned 16-bit send counter snt_unacked without ...
CVE-2026-74283
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:52
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: tipc: require net admin for TIPCv2 netlink mutators TIPCv2 registers mutating generic-netlink operations without admin permission flags. Generic netlink only checks CAP_NET_ADMIN w...