- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:46
- Zuletzt bearbeitet 14.09.2026 13:18:53
In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_transport: Fail TX enqueue when the QP link is down Commit f195a1a6fe41 ("ntb: Drop packets when qp link is down") meant to make ntb_transport_tx_enqueue() drop packets su...
CVE-2026-80989
- EPSS 0.32%
- Veröffentlicht 11.09.2026 19:42:46
- Zuletzt bearbeitet 14.09.2026 13:18:53
In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: Mark the connection down when bringing it up fails Every failure path in tbnet_connected_work() undoes its own work and returns without clearing login_sent, so th...
CVE-2026-80987
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:42:45
- Zuletzt bearbeitet 14.09.2026 13:18:53
In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_transport: Reject oversized TX buffers ntb_process_tx() handles an oversized buffer by calling tx_handler() with a NULL data pointer and returning success. ntb_netdev ther...
CVE-2026-80985
- EPSS 0.52%
- Veröffentlicht 11.09.2026 19:42:44
- Zuletzt bearbeitet 13.09.2026 07:17:05
In the Linux kernel, the following vulnerability has been resolved: net/smc: carry oversized SMC-Rv2 LLC messages in the queue entry smc_llc_rmt_delete_rkey() and smc_llc_save_add_link_rkeys() read the part of a v2 message that does not fit into th...
CVE-2026-80986
- EPSS 0.61%
- Veröffentlicht 11.09.2026 19:42:44
- Zuletzt bearbeitet 13.09.2026 07:17:05
In the Linux kernel, the following vulnerability has been resolved: net/smc: bound the peer rkey counts in SMC-Rv2 LLC messages On a link whose device has max_recv_sge == 1 there is no shared v2 receive buffer, and smc_llc_save_add_link_rkeys() tak...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:42:43
- Zuletzt bearbeitet 14.09.2026 13:18:53
In the Linux kernel, the following vulnerability has been resolved: net/smc: do not dereference an unset send buffer on the SMC-D teardown path smc_close_stream_wait() calls smc_tx_prepared_sends() from inside its sk_wait_event() condition, and sk_...
CVE-2026-80982
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:42:42
- Zuletzt bearbeitet 14.09.2026 13:18:52
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix use-after-free in smc_rx_pipe_buf_release() smc_rx_splice() hands RMB pages to a pipe and takes a socket reference per entry so the smc_sock stays alive until the read...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:42
- Zuletzt bearbeitet 14.09.2026 13:18:53
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix socket refcount leak in smc_switch_conns() smc_switch_conns() takes a reference on the SMC socket before dropping lgr->conns_lock, so the connection stays alive while ...
CVE-2026-80981
- EPSS 0.59%
- Veröffentlicht 11.09.2026 19:42:41
- Zuletzt bearbeitet 13.09.2026 07:17:05
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix use-after-free of the LLC qentry in smc_llc_srv_add_link() smc_llc_srv_add_link() keeps add_llc pointing into the queue entry: add_llc = &qentry->msg.add_link; sm...
CVE-2026-80979
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:40
- Zuletzt bearbeitet 14.09.2026 13:18:52
In the Linux kernel, the following vulnerability has been resolved: net/smc: unregister the connection before draining the rx tasklet smc_conn_free() calls smc_ism_unset_conn() only while the link group is still on its device list, and never sets c...