CVE-2026-64384
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:33
- Zuletzt bearbeitet 04.09.2026 20:46:01
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix change notify replay double-free A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_notify_init() fails before the next...
CVE-2026-64385
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:33
- Zuletzt bearbeitet 04.09.2026 20:45:33
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_ioctl() replay A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_ioctl_init() fails before the nex...
CVE-2026-64383
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:32
- Zuletzt bearbeitet 04.09.2026 20:46:44
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_flush() replay SMB2_flush() keeps its response buffer bookkeeping across replay attempts. If a replayable flush response is received and the re...
CVE-2026-64381
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:31
- Zuletzt bearbeitet 08.09.2026 14:01:34
In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix next buffer leak in receive_encrypted_standard() receive_encrypted_standard() allocates next_buffer before checking whether the number of compound PDUs already rea...
CVE-2026-64382
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:31
- Zuletzt bearbeitet 04.09.2026 20:46:59
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_open() replay A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_open_init() fails before the next ...
CVE-2026-64380
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:30
- Zuletzt bearbeitet 08.09.2026 14:06:05
In the Linux kernel, the following vulnerability has been resolved: smb: client: harden POSIX SID length parsing posix_info_sid_size() reads sid[1] to obtain the subauthority count, but its existing boundary check still accepts buffers with only on...
CVE-2026-64378
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:29
- Zuletzt bearbeitet 08.09.2026 15:23:22
In the Linux kernel, the following vulnerability has been resolved: writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs() When a container exits, the following BUG_ON() is occasionally triggered: ============================...
CVE-2026-64379
- EPSS 0.18%
- Veröffentlicht 25.07.2026 08:50:29
- Zuletzt bearbeitet 08.09.2026 14:08:51
In the Linux kernel, the following vulnerability has been resolved: smb: client: mask server-provided mode to 07777 in modefromsid When modefromsid is active, parse_dacl() applies the server-provided sub_auth[2] value from the NFS mode SID to cf_mo...
CVE-2026-64377
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:28
- Zuletzt bearbeitet 08.09.2026 14:20:18
In the Linux kernel, the following vulnerability has been resolved: cpufreq: qcom-cpufreq-hw: Fix possible double free qcom_cpufreq.data is allocated with devm_kzalloc() in probe() as an array of per-domain data. qcom_cpufreq_hw_cpu_init() stores a...
CVE-2026-64376
- EPSS 0.17%
- Veröffentlicht 25.07.2026 08:50:27
- Zuletzt bearbeitet 08.09.2026 14:21:55
In the Linux kernel, the following vulnerability has been resolved: firmware_loader: fix device reference leak in firmware_upload_register() firmware_upload_register() -> fw_create_instance() -> device_initialize() After fw_create_instance(...