- EPSS 0.19%
- Veröffentlicht 16.09.2026 10:32:54
- Zuletzt bearbeitet 16.09.2026 11:17:08
In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: fix job completion fence cleanup ethosu_ioctl_submit_job() allocates done_fence before validating buffer handles. Errors after allocation call ethosu_job_err_cleanup(...
CVE-2026-89974
- EPSS 0.29%
- Veröffentlicht 16.09.2026 10:32:53
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvme-fc: fix double free of fabrics options when nvme_add_ctrl() fails nvmf_create_ctrl() owns the fabrics options and frees them whenever ->create_ctrl() returns an error, so a tr...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:53
- Zuletzt bearbeitet 16.09.2026 11:17:08
In the Linux kernel, the following vulnerability has been resolved: nvme-fabrics: fix DHCHAP secret leak on parse failure nvmf_parse_options() duplicates dhchap_secret and dhchap_ctrl_secret with match_strdup() before validating the DHHC-1: represe...
CVE-2026-89973
- EPSS 0.61%
- Veröffentlicht 16.09.2026 10:32:52
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: check the data direction of a C2HData PDU nvme_tcp_handle_c2h_data() finds the request by command id and checks that it has a payload, but it does not check that the comm...
CVE-2026-89972
- EPSS 0.6%
- Veröffentlicht 16.09.2026 10:32:51
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: nvme: add missing SRCU grace period in error path nvme_alloc_ns() error path at out_unlink_ns removes ns from the namespace head siblings list with list_del_rcu(&ns->siblings) but ...
CVE-2026-89970
- EPSS 0.78%
- Veröffentlicht 16.09.2026 10:32:50
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: Synchronize timeout work during SQ teardown nvmet_auth_sq_free() cancels auth_expired_work with cancel_delayed_work(). If the work has already started, cancellation doe...
CVE-2026-89971
- EPSS 0.58%
- Veröffentlicht 16.09.2026 10:32:50
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: nvme: skip the zoned limits update if the zone info query failed nvme_query_zone_info() returns either a negative errno or a positive NVMe status code, but nvme_update_ns_info_bloc...
CVE-2026-89969
- EPSS 0.7%
- Veröffentlicht 16.09.2026 10:32:49
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix out-of-bounds write when receiving an over-long PDU nvmet_tcp_try_recv_pdu() reads a PDU header into the fixed 128-byte queue->pdu union, then computes the remaining...
CVE-2026-89967
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:32:48
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: mm/migrate_device: avoid out-of-bounds writes for compound folios migrate_device_range() and migrate_device_pfns() clear the entries following a compound folio so that the PFN arra...
CVE-2026-89968
- EPSS 0.8%
- Veröffentlicht 16.09.2026 10:32:48
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: reject unsolicited H2CData PDUs nvmet_tcp_handle_h2c_data_pdu() accepts an H2CData PDU after only checking that its TTAG is a valid in-range command index and that the c...