- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:46:41
- Zuletzt bearbeitet 06.10.2026 09:18:28
In the Linux kernel, the following vulnerability has been resolved: RDMA/mad: Fix receive buffer leak when PKey enforcement fails ib_mad_complete_recv() initializes mad_recv_wc->rmpp_list and then runs ib_mad_enforce_security() before linking recv_...
- EPSS 0.15%
- Veröffentlicht 06.10.2026 08:46:40
- Zuletzt bearbeitet 06.10.2026 09:18:28
In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Use IRQ-safe XArray helpers for QP and CQ tables Locked QP and CQ lookups from EQ interrupts can deadlock with create-path XArray updates. If an interrupt arrives while...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:46:40
- Zuletzt bearbeitet 06.10.2026 09:18:28
In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-clt: Fix CQ pool leak when connect is interrupted The client borrows shared CQ credits in the ADDR_RESOLVED handler via ib_cq_pool_get(), before the peer is connected. cr...
- EPSS 0.17%
- Veröffentlicht 06.10.2026 08:46:39
- Zuletzt bearbeitet 06.10.2026 09:18:28
In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: free skb when disconnected When the simulated link is disconnected, virt_wifi_start_xmit() returns NET_XMIT_DROP without freeing the skb. dev_hard_start_xmit() tre...
- EPSS 0.2%
- Veröffentlicht 06.10.2026 08:46:38
- Zuletzt bearbeitet 06.10.2026 09:18:28
In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: cyw: pass PMKID to firmware if present Zero out auth_status on initialization. Otherwise, garbage will leak from the stack to the firmware (when ssid is less than 3...
CVE-2026-98349
- EPSS 0.26%
- Veröffentlicht 06.10.2026 08:46:37
- Zuletzt bearbeitet 07.10.2026 07:17:09
In the Linux kernel, the following vulnerability has been resolved: wifi: libipw: reject too-short beacon and probe responses libipw_process_probe_response() and the libipw_network_init() call it makes assume the frame contains the full 36-byte bea...
CVE-2026-98348
- EPSS 0.26%
- Veröffentlicht 06.10.2026 08:46:36
- Zuletzt bearbeitet 07.10.2026 07:17:09
In the Linux kernel, the following vulnerability has been resolved: wifi: libipw: reject too-short association responses libipw_handle_assoc_resp() reads the capability, status and aid fields of the 30-byte association response prefix and then comp...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:36
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: IB/IPoIB: Avoid restoring OPER_UP after multicast flush ipoib_ib_dev_flush_light() temporarily clears IPOIB_FLAG_OPER_UP to prevent multicast joins while ipoib_mcast_dev_flush() is...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:35
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: don't get the radio mask for netdev-less wdevs cfg80211_calculate_bi_data() calls rdev_get_radio_mask() with wdev->netdev, which can be NULL and then crashes in mac...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 08:46:34
- Zuletzt bearbeitet 06.10.2026 09:18:27
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: check IP header size in cfg80211_classify8021d() A frame that looks like IP can be transmitted, but be too short, so the DS field is read incorrectly: BUG: KMSAN...