CVE-2026-80591
- EPSS 0.13%
- Veröffentlicht 28.08.2026 06:48:19
- Zuletzt bearbeitet 29.08.2026 07:16:44
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix listxattr handling of corrupted xattr entries Validate the xattr entry before reading its fields in f2fs_listxattr(). Return -EFSCORRUPTED when the entry is outside the v...
CVE-2026-80590
- EPSS 0.51%
- Veröffentlicht 28.08.2026 06:35:12
- Zuletzt bearbeitet 31.08.2026 07:17:46
In the Linux kernel, the following vulnerability has been resolved: inet: frags: strip GSO state from fragments before reassembly A virtio_net_hdr (tun/tap, or AF_PACKET with PACKET_VNET_HDR) can mark an IPv4 or IPv6 fragment as GSO; nothing relate...
CVE-2026-80584
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:40
- Zuletzt bearbeitet 27.08.2026 06:17:45
In the Linux kernel, the following vulnerability has been resolved: s390/qeth: validate user buffer length in SNMP and ARP query ioctls qeth_snmp_command() and qeth_l3_arp_query() allocate a buffer sized by a user-supplied length (udata_len) withou...
CVE-2026-80579
- EPSS 0.11%
- Veröffentlicht 26.08.2026 14:37:37
- Zuletzt bearbeitet 27.08.2026 06:17:44
In the Linux kernel, the following vulnerability has been resolved: fbdev: clear fb_info->mode before deleting a videomode fb_set_var() can delete a mode from info->modelist when userspace passes FB_ACTIVATE_INV_MODE through FBIOPUT_VSCREENINFO. Th...
CVE-2026-80580
- EPSS 0.11%
- Veröffentlicht 26.08.2026 14:37:37
- Zuletzt bearbeitet 27.08.2026 06:17:44
In the Linux kernel, the following vulnerability has been resolved: fbdev: bound mode sysfs output to the sysfs buffer mode_string() uses snprintf() which can return a value larger than the remaining buffer space. show_modes() accumulates the retur...
CVE-2026-80576
- EPSS 0.12%
- Veröffentlicht 26.08.2026 14:37:35
- Zuletzt bearbeitet 27.08.2026 06:17:43
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: reject oversized IBs with per-ring packet limits On GFX rings, amdgpu_cs_p2_ib() passed user-supplied ib_bytes through to ib->length_dw without a limit, while ring_emit...
CVE-2026-80574
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:34
- Zuletzt bearbeitet 27.08.2026 06:17:43
In the Linux kernel, the following vulnerability has been resolved: Input: focaltech - fix array out-of-bounds in focaltech_process_rel_packet Make finger2 (and also finger1) unsigned, so that if the finger index in the packet is 0 then subtracting...
- EPSS 0.16%
- Veröffentlicht 26.08.2026 14:37:33
- Zuletzt bearbeitet 27.08.2026 06:17:42
In the Linux kernel, the following vulnerability has been resolved: Input: iforce - validate input packet lengths iforce_process_packet() reads fixed fields from joystick, wheel and status packets without first checking their lengths. In particular...
- EPSS 0.18%
- Veröffentlicht 26.08.2026 14:37:27
- Zuletzt bearbeitet 27.08.2026 13:18:40
In the Linux kernel, the following vulnerability has been resolved: gpio: ml-ioh: use raw_spinlock_t for the register lock ioh_irq_type() is registered as the irq_chip .irq_set_type callback and takes chip->spinlock with spin_lock_irqsave(). This ...
CVE-2026-80559
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:37:25
- Zuletzt bearbeitet 27.08.2026 06:17:40
In the Linux kernel, the following vulnerability has been resolved: Input: sur40 - fix input device registration ordering In sur40_probe(), input_register_device() was previously called early before the V4L2 video device and vb2_queue components we...