CVE-2026-90051
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:05:37
- Zuletzt bearbeitet 18.09.2026 18:17:39
In the Linux kernel, the following vulnerability has been resolved: tcp: reject non zerocopy devmem tx Devmem tcp tx doesn't work without zero-copy, however it's not currently enforced if NETIF_F_SG isn't present. In this case, tcp_sendmsg_locked()...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:05:36
- Zuletzt bearbeitet 17.09.2026 17:16:53
In the Linux kernel, the following vulnerability has been resolved: net/sched: fq: clamp quantum and initial_quantum in change path The fq change path accepts TCA_FQ_QUANTUM in [1, INT_MAX] and TCA_FQ_INITIAL_QUANTUM up to INT_MAX, while fq_init() ...
CVE-2026-90049
- EPSS 0.17%
- Veröffentlicht 16.09.2026 10:33:45
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in skb_zerocopy() skb_zerocopy() copies frags from @from into @to. On an skb_orphan_frags() failure it calls skb_tx_error(@from), a...
CVE-2026-90048
- EPSS 0.51%
- Veröffentlicht 16.09.2026 10:33:44
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates a fixed buffer of al_aligned(record_size) (== record_size) bytes and then walks ever...
CVE-2026-90046
- EPSS 0.14%
- Veröffentlicht 16.09.2026 10:33:43
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: don't spin_trylock() in NMI on UP Patch series "mm/page_alloc: fixes for free_pages_nolock() on RT/UP". Pre-existing bugs found by Sashiko during review of this oth...
CVE-2026-90047
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:43
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't hand out the flat CCS storage as usable VRAM get_flat_ccs_offset() reads the base of the flat CCS storage from the hardware, scales it by the number of enabled L3 nod...
CVE-2026-90045
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:42
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pendi...
CVE-2026-90044
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:41
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix Use-After-Free in AIO error path In ffs_epfile_write_iter() and ffs_epfile_read_iter(), when ffs_epfile_io() fails with an error other than -EIOCBQUEUED, the...
CVE-2026-90042
- EPSS 0.49%
- Veröffentlicht 16.09.2026 10:33:40
- Zuletzt bearbeitet 21.09.2026 14:17:28
In the Linux kernel, the following vulnerability has been resolved: ceph: properly decrypt filenames in vmalloc() buffers The fscrypt subsystem uses the scatterlist crypto API, inheriting its requirement that any buffers are in the linear mapping r...
CVE-2026-90043
- EPSS 0.14%
- Veröffentlicht 16.09.2026 10:33:40
- Zuletzt bearbeitet 16.09.2026 15:18:26
In the Linux kernel, the following vulnerability has been resolved: zram: fix slot lock bit position on big-endian 64-bit The slot lock is a bit operation on the whole __lock word, which flags and ac_time alias as two u32s. On little-endian the lo...