CVE-2026-89571
- EPSS 0.12%
- Veröffentlicht 11.09.2026 19:44:40
- Zuletzt bearbeitet 13.09.2026 07:17:23
In the Linux kernel, the following vulnerability has been resolved: cxl/features: bound fwctl command payload to the input buffer fwctl_cmd_rpc() copies cmd->in_len bytes into inbuf = kvzalloc(cmd->in_len) and passes inbuf and in_len to ->fw_rpc()....
CVE-2026-89570
- EPSS 0.12%
- Veröffentlicht 11.09.2026 19:44:39
- Zuletzt bearbeitet 13.09.2026 07:17:22
In the Linux kernel, the following vulnerability has been resolved: cxl/mce: Make the MCE notifier per-region Flavien Solt reported lifetime issues with the CXL MCE notifier, which can lead to NULL dereferences and use-after-free in the MCE handler...
- EPSS 0.19%
- Veröffentlicht 11.09.2026 19:44:38
- Zuletzt bearbeitet 11.09.2026 20:19:40
In the Linux kernel, the following vulnerability has been resolved: kho: fix size calculation in kho_preserved_memory_reserve() kho_preserved_memory_reserve() calculates the size of a preservation by doing 1 << (order + PAGE_SHIFT). Since the '1' i...
CVE-2026-89569
- EPSS 0.31%
- Veröffentlicht 11.09.2026 19:44:38
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: serialize security confirmation handling rfcomm_security_cfm() looks up a session on session_list and then walks its DLC list without holding rfcomm_mutex. Since...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:44:37
- Zuletzt bearbeitet 11.09.2026 20:19:40
In the Linux kernel, the following vulnerability has been resolved: jbd2: bound shrinker scans by examined checkpoint buffers The jbd2 shrinker currently accounts only checkpoint buffers that it successfully releases against nr_to_scan. Busy buffe...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:44:36
- Zuletzt bearbeitet 11.09.2026 20:19:40
In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy checkpoint buffers journal_shrink_one_cp_list() skips busy checkpoint buffers when called with JBD2_SHRINK_BUSY_SKIP. The continue st...
CVE-2026-89564
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:44:35
- Zuletzt bearbeitet 21.09.2026 14:17:23
In the Linux kernel, the following vulnerability has been resolved: ip: orphan prefetched skbs before multicast forwarding IPv4 and IPv6 input preserve an skb->sk association installed by bpf_sk_assign() so that local delivery can use the selected ...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:44:35
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: ipip: fix skb leak in collect_md mode when metadata_dst allocation fails In collect_md mode ipip_tunnel_rcv() returns 0 without freeing the skb when ip_tun_rx_dst() fails to alloca...
CVE-2026-89563
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:44:34
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: use skb_cow_head() in ip6_tnl_xmit() ip6_tnl_xmit() may need to expand headroom before it can push the outer IPv6 and optional encap headers. It currently does that wit...
CVE-2026-89562
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:44:33
- Zuletzt bearbeitet 14.09.2026 13:19:11
In the Linux kernel, the following vulnerability has been resolved: ip6_gre: fix hardware header length for NBMA tunnels ip6gre_tnl_link_config_route() accumulates the lower device's hardware header length into dev->hard_header_len whenever header_...