CVE-2026-74444
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:51
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: validate DRAW_PRIMITIVES header size before division vmw_cmd_draw() computes maxnum = (header->size - sizeof(cmd->body)) / sizeof(*decl); where header->size is u32 a...
CVE-2026-74443
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:50
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: bound DMA command body size against suffix pointer vmw_cmd_dma() locates the DMA suffix at (unsigned long) &cmd->body + header->size - sizeof(*suffix) without checki...
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:59:27
- Zuletzt bearbeitet 18.08.2026 07:16:54
In the Linux kernel, the following vulnerability has been resolved: fbcon: fix NULL pointer dereference for a console without vc_data fbcon_new_modelist() runs when a framebuffer's modelist changes. For each console mapped to it with fb_display[i]....
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:59:22
- Zuletzt bearbeitet 17.08.2026 06:19:37
In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix memory leak in radeon_ring_restore() on lock failure radeon_ring_restore() takes ownership of the data buffer allocated by radeon_ring_backup(). The caller (radeon_...
CVE-2026-74417
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:59:22
- Zuletzt bearbeitet 17.08.2026 06:19:37
In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix integer overflow in radeon_align_pitch() radeon_align_pitch() has the same kind of overflow issue as the old amdgpu helper: both the alignment round-up add and the ...
CVE-2026-74408
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:59:16
- Zuletzt bearbeitet 17.08.2026 06:19:36
In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: fix OOB access from firmware tx status queue ID ath_tx_edma_tasklet() accesses sc->tx.txq[ts.qid] where ts.qid is a 4-bit hardware field (0-15), but the txq array only...
CVE-2026-74398
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:59:10
- Zuletzt bearbeitet 17.08.2026 06:19:34
In the Linux kernel, the following vulnerability has been resolved: ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD addrconf_dad_failure() transitions ifp->state from DAD to POSTDAD via addrconf_dad_end(), which drops ifp->l...
CVE-2026-74388
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:59:03
- Zuletzt bearbeitet 17.08.2026 06:19:33
In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: oss: Fix UAF at handling events with embedded SysEx data The OSS sequencer processes the input MIDI bytes into a sequencer event to be dispatched later (in snd_seq_oss_m...
CVE-2026-74387
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:59:02
- Zuletzt bearbeitet 17.08.2026 06:19:33
In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: midi: Serialize output teardown with event_input event_process_midi() borrows msynth->output_rfile.output and then passes the substream to dump_midi() and snd_rawmidi_ke...
CVE-2026-74359
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:58:43
- Zuletzt bearbeitet 17.08.2026 06:19:30
In the Linux kernel, the following vulnerability has been resolved: configfs_lookup(): don't leave ->s_dentry dangling on failure Normally ->s_dentry is cleared when dentry it's pointing to becomes negative (on eviction, realistically). However, t...