CVE-2026-90057
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:05:41
- Zuletzt bearbeitet 18.09.2026 18:17:40
In the Linux kernel, the following vulnerability has been resolved: slip: remove slip_hangup() to fix use-after-free in slip_receive_buf() Jaeyoung Chung and Eulgyu Kim reported a slab-use-after-free read in slip_receive_buf() when racing against t...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:40
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: usb: atm: usbatm: fix invalid ci_range initialization syzbot reported a shift-out-of-bounds in __vcc_connect(): UBSAN: shift-out-of-bounds in net/atm/common.c:382:32 shift exp...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:39
- Zuletzt bearbeitet 17.09.2026 17:16:53
In the Linux kernel, the following vulnerability has been resolved: tcp: fix corruption of urgent data on multi-segment retransmit On the normal xmit path, while in urgent mode we refuse to build a multi-segment TSO packet, so every segment gets it...
CVE-2026-90052
- EPSS 0.18%
- Veröffentlicht 17.09.2026 16:05:38
- Zuletzt bearbeitet 18.09.2026 18:17:39
In the Linux kernel, the following vulnerability has been resolved: dm-integrity: fix buffer overflow with keyed discard Since commit 68c5c42567bc ("dm-integrity: replace forgeable discard filler with a keyed sector marker"), integrity_metadata com...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:38
- Zuletzt bearbeitet 17.09.2026 17:16:53
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_htb: limit htb_classify inner-class filter hops htb_classify() follows each filter-selected inner class by switching to cl->filter_list, but never bounds the number ...
CVE-2026-90051
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:05:37
- Zuletzt bearbeitet 18.09.2026 18:17:39
In the Linux kernel, the following vulnerability has been resolved: tcp: reject non zerocopy devmem tx Devmem tcp tx doesn't work without zero-copy, however it's not currently enforced if NETIF_F_SG isn't present. In this case, tcp_sendmsg_locked()...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:05:36
- Zuletzt bearbeitet 17.09.2026 17:16:53
In the Linux kernel, the following vulnerability has been resolved: net/sched: fq: clamp quantum and initial_quantum in change path The fq change path accepts TCA_FQ_QUANTUM in [1, INT_MAX] and TCA_FQ_INITIAL_QUANTUM up to INT_MAX, while fq_init() ...
CVE-2026-90049
- EPSS 0.17%
- Veröffentlicht 16.09.2026 10:33:45
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in skb_zerocopy() skb_zerocopy() copies frags from @from into @to. On an skb_orphan_frags() failure it calls skb_tx_error(@from), a...
CVE-2026-90048
- EPSS 0.51%
- Veröffentlicht 16.09.2026 10:33:44
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates a fixed buffer of al_aligned(record_size) (== record_size) bytes and then walks ever...
CVE-2026-90046
- EPSS 0.14%
- Veröffentlicht 16.09.2026 10:33:43
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: don't spin_trylock() in NMI on UP Patch series "mm/page_alloc: fixes for free_pages_nolock() on RT/UP". Pre-existing bugs found by Sashiko during review of this oth...