CVE-2026-90161
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:06:52
- Zuletzt bearbeitet 18.09.2026 18:17:44
In the Linux kernel, the following vulnerability has been resolved: erofs: fix interlaced ztailpacking pclusters On-disk sizes of interlaced pclusters should be block-aligned, and ztailpacking interlaced pclusters should be invalid at all. Current...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:51
- Zuletzt bearbeitet 17.09.2026 17:17:09
In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow bpf_{g,s}etsockopt() in cgroup UNIX getname hooks _bpf_setsockopt() and _bpf_getsockopt() call sock_owned_by_me() for full sockets, so these helpers expect the socket...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:06:51
- Zuletzt bearbeitet 17.09.2026 17:17:09
In the Linux kernel, the following vulnerability has been resolved: lwt_bpf: Restore reserved headroom after xmit program ip_finish_output2() expands an skb to LL_RESERVED_SPACE(dev) before LWT xmit. An LWT_XMIT BPF program can then modify the skb ...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:06:49
- Zuletzt bearbeitet 17.09.2026 17:17:08
In the Linux kernel, the following vulnerability has been resolved: bpf: Reject negative optlen in cgroup getsockopt hook A cgroup getsockopt BPF program can shrink ctx->optlen after the kernel getsockopt handler has run. The kernel-buffer variant,...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:49
- Zuletzt bearbeitet 17.09.2026 17:17:08
In the Linux kernel, the following vulnerability has been resolved: m68k: nfcon: Do not call console_is_registered() in nfcon_device() Since 7c2af0f634f1 ("tty: tty_io: use console_list_lock for list synchronization") show_cons_active() calls the ....
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:48
- Zuletzt bearbeitet 18.09.2026 18:17:44
In the Linux kernel, the following vulnerability has been resolved: ksmbd: safely discard unregistered deferred locks When vfs_lock_file() defers a lock, smb2_lock() puts its ksmbd_lock on rollback_list before allocating and registering the asynchr...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:47
- Zuletzt bearbeitet 17.09.2026 17:17:08
In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope session state changes to bound connections ksmbd_all_conn_set_status() treats every connection whose transient binding flag is set as belonging to the target SessionId...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:06:47
- Zuletzt bearbeitet 17.09.2026 17:17:08
In the Linux kernel, the following vulnerability has been resolved: ksmbd: detach blocked lock requests before freeing A file_lock retained by ksmbd for byte-range lock bookkeeping can still be part of the VFS blocked-request graph. In particular, ...
CVE-2026-90153
- EPSS 0.45%
- Veröffentlicht 17.09.2026 16:06:46
- Zuletzt bearbeitet 18.09.2026 18:17:44
In the Linux kernel, the following vulnerability has been resolved: ksmbd: bound smb_check_perm_dacl() ACE walks by DACL size smb_check_perm_dacl() validates that the DACL fits inside the NT security descriptor, but then bounds its two ACE walks by...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:06:45
- Zuletzt bearbeitet 17.09.2026 17:17:08
In the Linux kernel, the following vulnerability has been resolved: smb/server: fix session leak in ksmbd_session_register() See the procedure below: smb2_sess_setup ksmbd_smb2_session_create __session_create atomic_set(&sess->...