- EPSS 0.19%
- Veröffentlicht 25.09.2026 10:23:54
- Zuletzt bearbeitet 25.09.2026 11:17:33
In the Linux kernel, the following vulnerability has been resolved: bpf: Don't infer non-NULL from a pointer with an unbounded offset reg_not_null() decides that a register holds a non-NULL value by looking at its type alone. For pointer types that...
- EPSS 0.19%
- Veröffentlicht 25.09.2026 10:23:54
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Don't resurrect a scalar id dropped by collect_linked_regs() check_cond_jmp_op() copies the compared registers into env->{false,true}_reg{1,2} before collect_linked_regs() run...
- EPSS 0.14%
- Veröffentlicht 25.09.2026 10:23:53
- Zuletzt bearbeitet 25.09.2026 15:18:04
In the Linux kernel, the following vulnerability has been resolved: bpf: Don't predict JMP32 pointer vs zero comparisons Consider the following program: r1 = map_value; /* low 32 bits are zero at runtime */ r6 = 0xdead00000000...
- EPSS 0.19%
- Veröffentlicht 25.09.2026 10:23:53
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Mark the zero register precise for a register-form NULL check check_cond_jmp_op() accepts "if rA <op> rB" as a NULL check for a nullable pointer rA when rB is a scalar known t...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:52
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Require MEM_PERCPU for percpu kptr stores map_kptr_match_type() treats perm_flags as the set of register type flags that a kptr field permits. Adding MEM_PERCPU to that set fo...
- EPSS 0.19%
- Veröffentlicht 25.09.2026 10:23:51
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Keep refcount_acquire nullable for borrowed RCU kptrs bpf_refcount_acquire() is fallible for a borrowed reference because the object may have reached a zero refcount. The veri...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:51
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Reject untrusted allocated-object pointers When the final RCU read-side critical section ends, a local kptr is demoted to PTR_UNTRUSTED but retains MEM_ALLOC. The pointer may ...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:23:50
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve special fields in recycled rhtab elements rhtab_map_update_elem() initializes special fields after obtaining an element from bpf_mem_cache_alloc(). The allocator can ...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:23:49
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Cancel special fields when recycling rhtab elements rhtab_map_update_existing() and rhtab_delete_elem() call bpf_obj_free_fields() when replacing or deleting a value. These ma...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:23:49
- Zuletzt bearbeitet 25.09.2026 11:17:32
In the Linux kernel, the following vulnerability has been resolved: bpf: Mark NULL kptr stores precise check_map_kptr_access() permits a scalar store into an untrusted kptr field only when the register is known to contain zero. Unlike other verifie...