CVE-2026-31667
- EPSS 0.01%
- Veröffentlicht 24.04.2026 14:45:15
- Zuletzt bearbeitet 27.04.2026 20:00:40
In the Linux kernel, the following vulnerability has been resolved: Input: uinput - fix circular locking dependency with ff-core A lockdep circular locking dependency warning can be triggered reproducibly when using a force-feedback gamepad with ui...
CVE-2026-31664
- EPSS 0.02%
- Veröffentlicht 24.04.2026 14:45:13
- Zuletzt bearbeitet 27.04.2026 19:59:44
In the Linux kernel, the following vulnerability has been resolved: xfrm: clear trailing padding in build_polexpire() build_expire() clears the trailing padding bytes of struct xfrm_user_expire after setting the hard field via memset_after(), but t...
CVE-2026-31661
- EPSS 0.01%
- Veröffentlicht 24.04.2026 14:45:11
- Zuletzt bearbeitet 27.04.2026 20:17:46
In the Linux kernel, the following vulnerability has been resolved: wifi: brcmsmac: Fix dma_free_coherent() size dma_alloc_consistent() may change the size to align it. The new size is saved in alloced. Change the free size to match the allocation...
CVE-2026-31659
- EPSS 0.07%
- Veröffentlicht 24.04.2026 14:45:10
- Zuletzt bearbeitet 27.04.2026 20:17:17
In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject oversized global TT response buffers batadv_tt_prepare_tvlv_global_data() builds the allocation length for a global TT response in 16-bit temporaries. When a rem...
CVE-2026-31657
- EPSS 0.08%
- Veröffentlicht 24.04.2026 14:45:08
- Zuletzt bearbeitet 27.04.2026 20:16:58
In the Linux kernel, the following vulnerability has been resolved: batman-adv: hold claim backbone gateways by reference batadv_bla_add_claim() can replace claim->backbone_gw and drop the old gateway's last reference while readers still follow the...
CVE-2026-31651
- EPSS 0.01%
- Veröffentlicht 24.04.2026 14:45:03
- Zuletzt bearbeitet 27.04.2026 20:14:45
In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix NULL-deref on disconnect Make sure to deregister the controller before dropping the reference to the driver data on disconnect to avoid NULL-pointer dereferences o...
CVE-2026-31649
- EPSS 0.07%
- Veröffentlicht 24.04.2026 14:45:02
- Zuletzt bearbeitet 27.04.2026 20:13:49
In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix integer underflow in chain mode The jumbo_frm() chain-mode implementation unconditionally computes len = nopaged_len - bmax; where nopaged_len = skb_headlen(...
CVE-2026-31637
- EPSS 0.08%
- Veröffentlicht 24.04.2026 14:44:51
- Zuletzt bearbeitet 27.04.2026 20:20:48
In the Linux kernel, the following vulnerability has been resolved: rxrpc: reject undecryptable rxkad response tickets rxkad_decrypt_ticket() decrypts the RXKAD response ticket and then parses the buffer as plaintext without checking whether crypto...
CVE-2026-31634
- EPSS 0.02%
- Veröffentlicht 24.04.2026 14:44:49
- Zuletzt bearbeitet 27.04.2026 20:30:25
In the Linux kernel, the following vulnerability has been resolved: rxrpc: fix reference count leak in rxrpc_server_keyring() This patch fixes a reference count leak in rxrpc_server_keyring() by checking if rx->securities is already set.
CVE-2026-31628
- EPSS 0.01%
- Veröffentlicht 24.04.2026 14:42:49
- Zuletzt bearbeitet 27.04.2026 20:40:46
In the Linux kernel, the following vulnerability has been resolved: x86/CPU: Fix FPDSS on Zen1 Zen1's hardware divider can leave, under certain circumstances, partial results from previous operations. Those results can be leaked by another, attack...