CVE-2026-72476
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:57:16
- Zuletzt bearbeitet 17.08.2026 06:19:15
In the Linux kernel, the following vulnerability has been resolved: dmaengine: Fix possible use after free In dma_release_channel(), check chan->device->privatecnt after call dma_chan_put(). However, dma_chan_put() call dma_device_put() which could...
CVE-2026-72472
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:13
- Zuletzt bearbeitet 17.08.2026 06:19:15
In the Linux kernel, the following vulnerability has been resolved: nfs: use nfsi->rwsem to protect traversal of the file lock list Lingfeng identified a bug and suggested two solutions, but both appear to have issues. Generally, we cannot release...
CVE-2026-72450
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:58
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: xfrm: validate selector family and prefixlen during match syzbot reported a shift-out-of-bounds in xfrm_selector_match() due to AF_UNSPEC selector with large prefixlen (e.g. 128) m...
CVE-2026-72444
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:56:55
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: flow_dissector: check device type before reading ETH_ADDRS __skb_flow_dissect() unconditionally reads 12 bytes from eth_hdr(skb) when FLOW_DISSECTOR_KEY_ETH_ADDRS is requested. Thi...
- EPSS 0.24%
- Veröffentlicht 15.08.2026 05:56:53
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: ieee802154: fix kernel-infoleak in dgram_recvmsg() KMSAN reported a kernel-infoleak in move_addr_to_user(): BUG: KMSAN: kernel-infoleak in instrument_copy_to_user include/linux/in...
CVE-2026-72436
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:50
- Zuletzt bearbeitet 17.08.2026 06:19:10
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types Sashiko pointed out that there are a few lockless RCU readers using test_bit() which is a relaxed atomi...
CVE-2026-72435
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:49
- Zuletzt bearbeitet 17.08.2026 06:19:10
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() Sashiko pointed out that kfree_rcu() was called before rcu_assign_pointer() in handling the comment extension. F...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:40
- Zuletzt bearbeitet 17.08.2026 06:19:09
In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: Don't ignore error route in local/main tables. When CONFIG_IP_MULTIPLE_TABLES is enabled but no rule is added, fib_lookup() performs route lookup directly on two tables....
CVE-2026-72420
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:56:39
- Zuletzt bearbeitet 17.08.2026 06:19:09
In the Linux kernel, the following vulnerability has been resolved: md/raid5: avoid R5_Overlap races while breaking stripe batches KCSAN report a race in break_stripe_batch_list() vs. raid5_make_request() on sh->dev[i].flags (plain word write vs. a...
CVE-2026-72416
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:36
- Zuletzt bearbeitet 17.08.2026 06:19:08
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_compat: ebtables emulation must reject non-bridge targets xtables targets return netfilter verdicts: NF_ACCEPT, NF_DROP, and so on. ebtables targets return incompat...