CVE-2026-72122
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:53:00
- Zuletzt bearbeitet 17.08.2026 06:18:11
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure bcm_sendmsg() reads bo->ifindex and checks bo->bound before taking lock_sock(), while bcm_notify(), bcm_connec...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:57
- Zuletzt bearbeitet 19.08.2026 17:20:58
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix CAN frame rx/tx statistics KCSAN detected a data race within the bcm_rx_handler() when two CAN frames have been simultaneously received and processed in a single rx o...
CVE-2026-72116
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:52:56
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix stale rx/tx ops after device removal RX: an RX_SETUP update(!) for an existing op skipped can_rx_register() unconditionally, even when a concurrent NETDEV_UNREGISTER ...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:56
- Zuletzt bearbeitet 19.08.2026 17:20:58
In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix data race on rx_stamp/rx_ifindex in bcm_rx_handler() For an rx op subscribed on all interfaces (ifindex == 0), the same op is registered once in the shared per-netns ...
CVE-2026-72115
- EPSS 0.3%
- Veröffentlicht 15.08.2026 05:52:55
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: track a single source interface for ANYDEV timeout/throttle ops An ANYDEV rx op (ifindex == 0) with an active RX timeout and/or throttle timer has no defined semantics wh...
CVE-2026-72113
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:52:54
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing device refcount for CAN filter removal sashiko-bot remarked a problem with a concurrent device unregistration in isotp.c which also is present in the bcm.c co...
CVE-2026-72114
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:52:54
- Zuletzt bearbeitet 19.08.2026 17:20:57
In the Linux kernel, the following vulnerability has been resolved: can: bcm: validate frame length in bcm_rx_setup() for RTR replies bcm_tx_setup() validates cf->len against the CAN/CAN FD DLC limits before installing frames for TX_SETUP, but bcm_...
CVE-2026-72108
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:50
- Zuletzt bearbeitet 17.08.2026 06:18:09
In the Linux kernel, the following vulnerability has been resolved: dm thin metadata: fix metadata snapshot consistency on commit failure __reserve_metadata_snap() and __release_metadata_snap() modify the superblock's held_root directly in the bloc...
CVE-2026-72107
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:49
- Zuletzt bearbeitet 17.08.2026 06:18:09
In the Linux kernel, the following vulnerability has been resolved: dm era: fix out-of-bounds memory access for non-zero start sector dm-era tracks writes in target-relative blocks, but era_map() calculates the writeset block before applying the ta...
- EPSS 0.23%
- Veröffentlicht 15.08.2026 05:52:48
- Zuletzt bearbeitet 18.08.2026 07:16:52
In the Linux kernel, the following vulnerability has been resolved: dm-ioctl: fix a possible overflow in list_version_get_info sizeof(tt->version) is 12 bytes, but the code writes 16 bytes into the output buffer - info->vers->version[0], info->vers...