- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:04
- Zuletzt bearbeitet 25.09.2026 11:17:09
In the Linux kernel, the following vulnerability has been resolved: afs: Fix double-unmap of directory block Fix afs_edit_dir_remove() to use a cleanup function to unmap the block pointed to by afs_dir_iter::block if it's left pointing to something...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:03
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: hwmon: (gpio-fan) Fix use-after-free in alarm work fan_alarm_irq_handler() queues fan_data->alarm_work, but nothing cancels it. fan_alarm_notify() dereferences fan_data and its hw...
CVE-2026-97583
- EPSS 0.41%
- Veröffentlicht 25.09.2026 10:22:03
- Zuletzt bearbeitet 25.09.2026 15:18:00
In the Linux kernel, the following vulnerability has been resolved: afs: Clear stale peer app data after address list changes afs_fs_probe_fileserver() fetches the current endpoint state under server->fs_lock, but leaves old_alist as NULL. Consequ...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:22:02
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: hantro: bound G2 HEVC tile loop to the buffer capacity prepare_tile_info_buffer() writes one entry per tile into the tile_sizes DMA buffer, sized for a grid equ...
CVE-2026-97579
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:01
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: bound AV1 tile-start copy to the array capacity vdec_av1_slice_setup_tile() copies tile_cols + 1 / tile_rows + 1 entries into mi_col_starts[] / mi_row_star...
CVE-2026-97580
- EPSS 0.15%
- Veröffentlicht 25.09.2026 10:22:01
- Zuletzt bearbeitet 25.09.2026 15:18:00
In the Linux kernel, the following vulnerability has been resolved: media: rkvdec: bound HEVC tile loops and PPS id to the array capacity compute_tiles_uniform() and compute_tiles_non_uniform() loop over num_tile_columns_minus1 + 1 / num_tile_rows_...
CVE-2026-97578
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:22:00
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: rockchip: guard VPU981 AV1 divisor and tile buffer rockchip_vpu981_av1_dec_set_tile_info() divides context_update_tile_id by tile_info->tile_cols and writes one...
CVE-2026-97576
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:21:59
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: media: v4l2-ctrls: validate HEVC tile counts The stateless HEVC decoders read num_tile_columns_minus1 + 1 entries from column_width_minus1[] and num_tile_rows_minus1 + 1 from row_h...
CVE-2026-97577
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:21:59
- Zuletzt bearbeitet 03.10.2026 11:18:05
In the Linux kernel, the following vulnerability has been resolved: media: verisilicon: rockchip: reject AV1 frames exceeding the tile capacity rockchip_vpu981_av1_dec_set_tile_info() indexes the tile group entry array by tile1 * tile_cols + tile0,...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:21:58
- Zuletzt bearbeitet 03.10.2026 11:18:04
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Don't free the live ring's TPA state on queue restart failure bnxt_queue_mem_alloc() shallow copies the live RX ring into the clone: memcpy(clone, rxr, sizeof(*rxr)); ...