- EPSS 0.2%
- Veröffentlicht 04.09.2026 15:54:54
- Zuletzt bearbeitet 04.09.2026 16:18:13
In the Linux kernel, the following vulnerability has been resolved: xfrm: ah6: validate routing header segments_left AH6 rearranges routing-header addresses before computing or verifying the ICV. ipv6_rearrange_rthdr() assumes that segments_left is...
- EPSS 0.2%
- Veröffentlicht 04.09.2026 15:54:53
- Zuletzt bearbeitet 04.09.2026 16:18:12
In the Linux kernel, the following vulnerability has been resolved: xfrm: fix xfrm_state_construct() auth-trunc leak attach_auth_trunc() can allocate x->aalg while leaving x->props.aalgo at zero when the selected auth algorithm has no sadb_alg_id. ...
- EPSS 0.18%
- Veröffentlicht 04.09.2026 15:54:52
- Zuletzt bearbeitet 04.09.2026 16:18:12
In the Linux kernel, the following vulnerability has been resolved: net: bridge: mcast: fix use-after-free of a master VLAN's multicast context br_multicast_toggle_one_vlan() clears BR_VLFLAG_MCAST_ENABLED under br->multicast_lock before stopping a...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:54:51
- Zuletzt bearbeitet 03.10.2026 11:17:40
In the Linux kernel, the following vulnerability has been resolved: net/packet: defer vmalloc TX_RING free until skbs finish AF_PACKET TX_RING skbs keep a raw pointer to their ring frame. The skb page references preserve page-backed ring blocks aft...
- EPSS 0.21%
- Veröffentlicht 04.09.2026 15:54:50
- Zuletzt bearbeitet 04.09.2026 16:18:12
In the Linux kernel, the following vulnerability has been resolved: ipv6: seg6: clear IPv4 control block on IPIP decapsulation End.DX4 and End.DT4 decapsulate an IPv4 packet through decap_and_validate() and send it directly to IPv4 routing. The inn...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:54:49
- Zuletzt bearbeitet 04.09.2026 16:18:12
In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject unrepresentable multicast TVLV offsets The network and transport header fields in struct sk_buff are 16-bit offsets from skb->head, and U16_MAX is reserved as th...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:54:48
- Zuletzt bearbeitet 04.09.2026 16:18:12
In the Linux kernel, the following vulnerability has been resolved: vxlan: keep the last remote linked during FDB flush A non-nexthop FDB entry is expected to have at least one remote while it remains reachable through the FDB hash table. A filtere...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:54:47
- Zuletzt bearbeitet 03.10.2026 11:17:40
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: don't queue packet path object notifications All file:line references below are against v7.2-rc4 (ac5b0e5651b1). The trace was captured on 7.2.0-rc6-kasan72rc...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:54:44
- Zuletzt bearbeitet 04.09.2026 16:18:11
In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - Remove crypto_rng interface qcom-rng.c exposes the same hardware through two completely separate interfaces, crypto_rng and hwrng. However, the implementation o...
- EPSS 0.17%
- Veröffentlicht 04.09.2026 15:54:44
- Zuletzt bearbeitet 03.10.2026 11:17:40
In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - bound the akcipher result length virtio_crypto_dataq_akcipher_callback() sets the result length from the device-reported response length without bounding it to the...