CVE-2026-74297
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:58:01
- Zuletzt bearbeitet 17.08.2026 06:19:23
In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix undefined shift of user RQ WQE size set_rq_size() computes the RQ WQE size as "1 << rq_wqe_shift" based on the user-provided rq_wqe_shift, which is only checked to b...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:57:57
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_flow: Dont expose folded kernel pointers The flow classifier falls back to addr_fold() for fields that are missing from packet headers. In map mode, userspace contro...
CVE-2026-74287
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:55
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded address parameter length sctp_verify_asconf() and sctp_verify_param() only validate ADD_IP, DEL_IP, and SET_PRIMARY parameters against a fixed minimum size ...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:57:49
- Zuletzt bearbeitet 17.08.2026 06:19:21
In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Fix kernel heap address leak in bounce_error_event() The comment above bounce_error_event() documents that user clients should receive SNDRV_SEQ_EVENT_BOUNCE with the or...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:44
- Zuletzt bearbeitet 17.08.2026 06:19:20
In the Linux kernel, the following vulnerability has been resolved: power: supply: core: fix supplied_from allocations If dts property power-supplies has multiple values, then accessing to psy->supplied_from[i-1] in __power_supply_populate_supplied...
CVE-2026-72493
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:27
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: net: serialize netif_running() check in enqueue_to_backlog() Syzbot reported a KASAN slab-use-after-free in fib_rules_lookup(). The root cause is a race condition where packets ca...
CVE-2026-72489
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:24
- Zuletzt bearbeitet 17.08.2026 06:19:17
In the Linux kernel, the following vulnerability has been resolved: staging: nvec: fix use-after-free in nvec_rx_completed() In nvec_rx_completed(), when an incomplete RX transfer is detected, nvec_msg_free() is called to return the message back to...
CVE-2026-72476
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:57:16
- Zuletzt bearbeitet 17.08.2026 06:19:15
In the Linux kernel, the following vulnerability has been resolved: dmaengine: Fix possible use after free In dma_release_channel(), check chan->device->privatecnt after call dma_chan_put(). However, dma_chan_put() call dma_device_put() which could...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:40
- Zuletzt bearbeitet 17.08.2026 06:19:09
In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: Don't ignore error route in local/main tables. When CONFIG_IP_MULTIPLE_TABLES is enabled but no rule is added, fib_lookup() performs route lookup directly on two tables....
CVE-2026-72416
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:36
- Zuletzt bearbeitet 17.08.2026 06:19:08
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_compat: ebtables emulation must reject non-bridge targets xtables targets return netfilter verdicts: NF_ACCEPT, NF_DROP, and so on. ebtables targets return incompat...