- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:36:00
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: ksmbd: propagate DACL parsing errors parse_dacl() silently accepts truncated ACEs and allocation failures, allowing set_info_sec() to continue with an incomplete ACL conversion. R...
- EPSS 0.2%
- Veröffentlicht 25.09.2026 10:35:59
- Zuletzt bearbeitet 03.10.2026 11:18:33
In the Linux kernel, the following vulnerability has been resolved: ksmbd: rate limit unmapped SID errors A client can include many structurally valid but unmapped SIDs in a DACL. Logging every mapping failure lets one request generate hundreds of ...
CVE-2026-98112
- EPSS 0.12%
- Veröffentlicht 25.09.2026 10:35:59
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix listener task lifetime on netdev events The listener thread exits when its listening socket is shutdown. The netdevice notifier shuts down the socket before calling kthr...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:35:58
- Zuletzt bearbeitet 03.10.2026 11:18:33
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: validate version TLV value lengths btintel_parse_version_tlv() verifies that a complete TLV is present in the response, but it does not ensure that the value is...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:35:58
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: bound firmware ID by TLV length The firmware ID is treated as a NUL-terminated string even though the TLV length is its only boundary. If the value does not con...
CVE-2026-98109
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:35:57
- Zuletzt bearbeitet 03.10.2026 11:18:32
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix race condition during device registration In hci_register_dev(), the power_on work item is queued to hdev->req_workqueue before initializing hdev->adv_moni...
CVE-2026-98108
- EPSS 0.23%
- Veröffentlicht 25.09.2026 10:35:56
- Zuletzt bearbeitet 03.10.2026 11:18:32
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix chan mode for LE_CONN_REQ + EXT_FLOWCTL pchan l2cap_new_connection() sets default value of channel mode to match the parent channel. l2cap_le_connect_req() l...
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:35:56
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix out-of-bounds write in l2cap_ecred_connect l2cap_chan_connect() tries to ensure there are no more than L2CAP_ECRED_CONN_SCID_MAX pending ECRED channels, so th...
- EPSS 0.16%
- Veröffentlicht 25.09.2026 10:35:55
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: drm/pagemap: Prevent double migration of device pages A device-private folio migrated to system memory by a CPU fault can remain reachable through the raw-PFN eviction path until m...
- EPSS 0.19%
- Veröffentlicht 25.09.2026 10:35:55
- Zuletzt bearbeitet 30.09.2026 14:10:59
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: oa_tc6: Improve the error recovery When oversubscribed traffic causes lot of buffer overflow errors, probably due to loss of data chunks, driver fails to find a data...