CVE-2026-72450
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:58
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: xfrm: validate selector family and prefixlen during match syzbot reported a shift-out-of-bounds in xfrm_selector_match() due to AF_UNSPEC selector with large prefixlen (e.g. 128) m...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:57
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: sctp: hold socket lock when dumping endpoints in sctp_diag SCTP_DIAG endpoint dumping was traversing endpoint address lists without holding lock_sock(), while those lists could cha...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:56:57
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix leak of SQ timestamp buffer on teardown The send-queue timestamp ring is allocated with qmem_alloc() when timestamping is used, but otx2_free_sq_res() never freed...
CVE-2026-72446
- EPSS 0.19%
- Veröffentlicht 15.08.2026 05:56:56
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: qcom: reject stream disable with no active interface handle_uaudio_stream_req() resolves an interface index with info_idx_from_ifnum(), which returns -EINVAL when ...
CVE-2026-72444
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:56:55
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: flow_dissector: check device type before reading ETH_ADDRS __skb_flow_dissect() unconditionally reads 12 bytes from eth_hdr(skb) when FLOW_DISSECTOR_KEY_ETH_ADDRS is requested. Thi...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:55
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: qcom: clear opened when stream enable fails On enable, subs->opened is set before the service_interval is validated; an invalid interval jumps to the response labe...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:56:54
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Kill MIDI 2.0 URBs before freeing endpoints MIDI 2.0 input URBs are started during snd_usb_midi_v2_create(). A later setup failure can still jump to snd_usb_midi_v...
- EPSS 0.24%
- Veröffentlicht 15.08.2026 05:56:53
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: ieee802154: fix kernel-infoleak in dgram_recvmsg() KMSAN reported a kernel-infoleak in move_addr_to_user(): BUG: KMSAN: kernel-infoleak in instrument_copy_to_user include/linux/in...
CVE-2026-72442
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:56:53
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: fix and simplify IP6IP6 tunnel handling Fix nf_flow_ip6_tunnel_proto() to use pskb_may_pull() instead of skb_header_pointer() to ensure the outer IPv6 header ...
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:56:52
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix writes_pending leak on write request failures raid10_make_request() acquires a writes_pending reference with md_write_start() before dispatching write requests. Seve...