- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:56:34
- Zuletzt bearbeitet 03.10.2026 11:17:37
In the Linux kernel, the following vulnerability has been resolved: sctp: fix err_chunk memory leaks in INIT handling When sctp_verify_init() encounters unrecognized parameters, it allocates an err_chunk to report them. However, this chunk is leake...
CVE-2026-72406
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:30
- Zuletzt bearbeitet 17.08.2026 06:19:07
In the Linux kernel, the following vulnerability has been resolved: net: sungem: fix probe error cleanup gem_init_one() calls gem_remove_one() when register_netdev() fails. gem_remove_one() unregisters and frees resources owned by the net_device, i...
CVE-2026-72398
- EPSS 0.24%
- Veröffentlicht 15.08.2026 05:56:24
- Zuletzt bearbeitet 17.08.2026 06:19:06
In the Linux kernel, the following vulnerability has been resolved: sctp: add INIT verification after cookie unpacking In SCTP handshake, the INIT chunk is initially processed by the server and embedded into the cookie carried in INIT-ACK. The clie...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:23
- Zuletzt bearbeitet 17.08.2026 06:19:06
In the Linux kernel, the following vulnerability has been resolved: hwmon: adm1275: Prevent reading uninitialized stack While adding support for the ROHM BD127X0 hot-swap controllers, sashiko reported an error in device-name comparison, which can l...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:20
- Zuletzt bearbeitet 19.08.2026 17:21:00
In the Linux kernel, the following vulnerability has been resolved: ipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump inet6_dump_fib() saves its progress in cb->args[1] as a positional index within the current hash chain. Betw...
CVE-2026-72390
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:19
- Zuletzt bearbeitet 17.08.2026 06:19:05
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_teql: Introduce slaves_lock to avoid race condition and UAF The teql master->slaves singly linked list is not protected against multiple writes. It can be mod'ed con...
CVE-2026-72389
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:18
- Zuletzt bearbeitet 17.08.2026 06:19:05
In the Linux kernel, the following vulnerability has been resolved: bridge: stp: Fix a potential use-after-free when deleting a bridge The three STP timers are not supposed to be armed while the bridge is administratively down. They are synchronous...
CVE-2026-72383
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:56:14
- Zuletzt bearbeitet 17.08.2026 06:18:42
In the Linux kernel, the following vulnerability has been resolved: sctp: fix addr_wq_timer race in sctp_free_addr_wq() sctp_free_addr_wq() previously removed addr_wq_timer using timer_delete() while holding addr_wq_lock. However, timer_delete() do...
CVE-2026-72375
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:09
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: afs: Fix reinitialisation of the inode, in particular ->lock_work It seems that initalising afs_vnode::lock_work a single time in the slab's init function isn't sufficient for work...
CVE-2026-72350
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:53
- Zuletzt bearbeitet 17.08.2026 06:18:39
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_u32: reject invalid shift counts u32_match_it() executes rule-supplied shift operands on a 32-bit value. A malformed u32 rule can provide a shift count of 32 or more,...