CVE-2026-72115
- EPSS 0.3%
- Veröffentlicht 15.08.2026 05:52:55
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: track a single source interface for ANYDEV timeout/throttle ops An ANYDEV rx op (ifindex == 0) with an active RX timeout and/or throttle timer has no defined semantics wh...
CVE-2026-72113
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:52:54
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing device refcount for CAN filter removal sashiko-bot remarked a problem with a concurrent device unregistration in isotp.c which also is present in the bcm.c co...
CVE-2026-72114
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:52:54
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: validate frame length in bcm_rx_setup() for RTR replies bcm_tx_setup() validates cf->len against the CAN/CAN FD DLC limits before installing frames for TX_SETUP, but bcm_...
CVE-2026-72108
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:50
- Zuletzt bearbeitet 17.08.2026 06:18:09
In the Linux kernel, the following vulnerability has been resolved: dm thin metadata: fix metadata snapshot consistency on commit failure __reserve_metadata_snap() and __release_metadata_snap() modify the superblock's held_root directly in the bloc...
- EPSS 0.23%
- Veröffentlicht 15.08.2026 05:52:48
- Zuletzt bearbeitet 18.08.2026 07:16:52
In the Linux kernel, the following vulnerability has been resolved: dm-ioctl: fix a possible overflow in list_version_get_info sizeof(tt->version) is 12 bytes, but the code writes 16 bytes into the output buffer - info->vers->version[0], info->vers...
CVE-2026-72083
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:32
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE core_scsi3_emulate_pro_register_and_move() maps the PERSISTENT RESERVE OUT parameter list with transport_kmap...
CVE-2026-72084
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:32
- Zuletzt bearbeitet 23.08.2026 13:16:39
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT TransportID parsing to the received buffer core_scsi3_decode_spec_i_port() and core_scsi3_emulate_register_and_move() hand the raw PERSISTENT RESERVE OUT...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:29
- Zuletzt bearbeitet 17.08.2026 06:18:06
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix use-after-free and double-free in disconnect ims_pcu_disconnect() only intended to perform cleanup when the primary (control) interface is unbound. However, it...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:28
- Zuletzt bearbeitet 17.08.2026 06:18:06
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - validate control endpoint type The driver currently assumes that the first endpoint of the control interface is an interrupt IN endpoint without verifying it. A ma...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:27
- Zuletzt bearbeitet 23.08.2026 13:16:39
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix firmware leak in async update The firmware object was not being released if validation failed. Use __free(firmware) to ensure the firmware is always released.