CVE-2026-31392
- EPSS 0.02%
- Veröffentlicht 03.04.2026 15:15:57
- Zuletzt bearbeitet 27.04.2026 14:16:35
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix krb5 mount with username option Customer reported that some of their krb5 mounts were failing against a single server as the client was trying to mount the shares ...
- EPSS 0.04%
- Veröffentlicht 03.04.2026 15:15:53
- Zuletzt bearbeitet 18.04.2026 09:16:29
In the Linux kernel, the following vulnerability has been resolved: mtd: Avoid boot crash in RedBoot partition table parser Given CONFIG_FORTIFY_SOURCE=y and a recent compiler, commit 439a1bcac648 ("fortify: Use __builtin_dynamic_object_size() when...
- EPSS 0.02%
- Veröffentlicht 03.04.2026 15:15:51
- Zuletzt bearbeitet 07.04.2026 13:20:55
In the Linux kernel, the following vulnerability has been resolved: serial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN uart_write_room() and uart_write() behave inconsistently when xmit_buf is NULL (which happens for PORT_UNKNOWN ports...
- EPSS 0.03%
- Veröffentlicht 03.04.2026 15:15:47
- Zuletzt bearbeitet 17.05.2026 16:16:15
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Limit BO list entry count to prevent resource exhaustion Userspace can pass an arbitrary number of BO list entries via the bo_number field. Although the previous multip...
CVE-2026-23462
- EPSS 0.06%
- Veröffentlicht 03.04.2026 15:15:41
- Zuletzt bearbeitet 27.04.2026 14:16:34
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: Fix possible UAF This fixes the following trace caused by not dropping l2cap_conn reference when user->remove callback is called: [ 97.809249] l2cap_conn_free: ...
- EPSS 0.04%
- Veröffentlicht 03.04.2026 15:15:40
- Zuletzt bearbeitet 18.04.2026 09:16:28
In the Linux kernel, the following vulnerability has been resolved: net/rose: fix NULL pointer dereference in rose_transmit_link on reconnect syzkaller reported a bug [1], and the reproducer is available at [2]. ROSE sockets use four sk->sk_state ...
CVE-2026-23458
- EPSS 0.02%
- Veröffentlicht 03.04.2026 15:15:39
- Zuletzt bearbeitet 27.04.2026 14:16:34
In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: fix use-after-free in ctnetlink_dump_exp_ct() ctnetlink_dump_exp_ct() stores a conntrack pointer in cb->data for the netlink dump callback ctnetlink_exp_ct_du...
CVE-2026-23457
- EPSS 0.07%
- Veröffentlicht 03.04.2026 15:15:38
- Zuletzt bearbeitet 27.04.2026 14:16:34
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: fix Content-Length u32 truncation in sip_help_tcp() sip_help_tcp() parses the SIP Content-Length header with simple_strtoul(), which returns unsigned l...
CVE-2026-23456
- EPSS 0.07%
- Veröffentlicht 03.04.2026 15:15:37
- Zuletzt bearbeitet 27.04.2026 14:16:34
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: fix OOB read in decode_int() CONS case In decode_int(), the CONS case calls get_bits(bs, 2) to read a length value, then calls get_uint(bs, len) witho...
CVE-2026-23455
- EPSS 0.08%
- Veröffentlicht 03.04.2026 15:15:36
- Zuletzt bearbeitet 27.04.2026 14:16:33
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() In DecodeQ931(), the UserUserIE code path reads a 16-bit length from the packet, then decrements it by 1 to skip...