CVE-2026-68156
- EPSS 0.68%
- Veröffentlicht 10.08.2026 11:59:22
- Zuletzt bearbeitet 19.08.2026 17:20:32
In the Linux kernel, the following vulnerability has been resolved: libceph: refresh auth->authorizer_buf{,_len} after authorizer update ceph_x_create_authorizer() caches au->buf->vec.iov_base and au->buf->vec.iov_len in struct ceph_auth_handshake....
CVE-2026-68155
- EPSS 0.67%
- Veröffentlicht 10.08.2026 11:59:21
- Zuletzt bearbeitet 03.10.2026 11:17:35
In the Linux kernel, the following vulnerability has been resolved: libceph: Reject monmaps advertising zero monitors A message of type CEPH_MSG_MON_MAP contains a monmap that is sent from a monitor to the client. This monmap contains information a...
CVE-2026-68154
- EPSS 0.7%
- Veröffentlicht 10.08.2026 11:59:20
- Zuletzt bearbeitet 19.08.2026 17:20:32
In the Linux kernel, the following vulnerability has been resolved: libceph: reject zero bucket types in crush_decode CRUSH bucket type 0 is reserved for devices. The mapper relies on that invariant and uses type 0 to identify leaf devices. If cr...
CVE-2026-68153
- EPSS 0.13%
- Veröffentlicht 10.08.2026 11:59:19
- Zuletzt bearbeitet 19.08.2026 17:20:32
In the Linux kernel, the following vulnerability has been resolved: libceph: remove debugfs files before client teardown ceph_destroy_client() tears down the monitor client before removing the per-client debugfs files. A concurrent read of the monm...
- EPSS 0.18%
- Veröffentlicht 10.08.2026 11:59:16
- Zuletzt bearbeitet 19.08.2026 17:20:32
In the Linux kernel, the following vulnerability has been resolved: binfmt_elf_fdpic: only honour the first PT_INTERP The program header scan handles PT_INTERP from a switch nested in the scan loop, so its break leaves the switch and not the loop. ...
- EPSS 0.18%
- Veröffentlicht 10.08.2026 11:59:11
- Zuletzt bearbeitet 23.08.2026 13:16:34
In the Linux kernel, the following vulnerability has been resolved: ftrace: Add global mutex to serialize trace_parser access In ftrace, the trace_parser structure is allocated and initialized when a trace file is opened, and is subsequently used a...
CVE-2026-68144
- EPSS 0.54%
- Veröffentlicht 10.08.2026 11:59:08
- Zuletzt bearbeitet 19.08.2026 17:20:31
In the Linux kernel, the following vulnerability has been resolved: phonet: pep: fix use-after-free in pep_get_sb() pep_get_sb() doesn't consider that pskb_may_pull() might have relocated the skb data, and continue to access the older pointer, caus...
CVE-2026-68143
- EPSS 0.14%
- Veröffentlicht 10.08.2026 11:59:07
- Zuletzt bearbeitet 19.08.2026 17:20:31
In the Linux kernel, the following vulnerability has been resolved: net: slip: serialize receive against buffer reallocation sl_realloc_bufs() replaces rbuff and updates buffsize while holding sl->lock. slip_receive_buf() reads those fields and wri...
CVE-2026-68141
- EPSS 0.53%
- Veröffentlicht 10.08.2026 11:59:05
- Zuletzt bearbeitet 19.08.2026 17:20:31
In the Linux kernel, the following vulnerability has been resolved: net/af_iucv: fix NULL deref in afiucv_hs_callback_syn() afiucv_hs_callback_syn() allocates the child socket with GFP_ATOMIC. If the allocation fails, nsk is NULL. The connection-r...
CVE-2026-68140
- EPSS 0.28%
- Veröffentlicht 10.08.2026 11:59:03
- Zuletzt bearbeitet 19.08.2026 17:20:31
In the Linux kernel, the following vulnerability has been resolved: net/iucv: fix use-after-free of a severed iucv_path af_iucv queues not-yet-received message notifications on iucv->message_q, each holding a raw pointer to the connection's iucv_pa...