CVE-2026-64539
- EPSS 0.16%
- Veröffentlicht 27.07.2026 20:10:33
- Zuletzt bearbeitet 17.08.2026 05:17:58
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD eir_create_adv_data() builds the advertising data into a fixed-size buffer ("size", 31 for the legacy path). It may...
CVE-2026-64540
- EPSS 0.18%
- Veröffentlicht 27.07.2026 20:10:33
- Zuletzt bearbeitet 17.08.2026 05:17:59
In the Linux kernel, the following vulnerability has been resolved: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup() genelink_rx_fixup() splits an aggregated RX frame into its individual packets, using a per-packet length taken from de...
- EPSS 0.17%
- Veröffentlicht 27.07.2026 20:10:32
- Zuletzt bearbeitet 17.08.2026 05:17:58
In the Linux kernel, the following vulnerability has been resolved: bridge: cfm: reject invalid CCM interval at configuration time ccm_tx_work_expired() re-arms itself via queue_delayed_work() using the configured exp_interval converted by interval...
- EPSS 0.18%
- Veröffentlicht 27.07.2026 20:10:32
- Zuletzt bearbeitet 08.09.2026 09:18:19
In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change(). fib6_nh_mtu_change() re-fetches idev via __in6_dev_get(arg->dev) and dereferences idev->cnf.mtu6 without a NULL check. addrconf_if...
CVE-2026-17523
- EPSS 0.12%
- Veröffentlicht 27.07.2026 10:16:36
- Zuletzt bearbeitet 02.10.2026 15:12:08
In the Linux kernel, the following vulnerability has been resolved: can: bcm: switch timer to HRTIMER_MODE_SOFT and remove hrtimer_tasklet This patch switches the timer to HRTIMER_MODE_SOFT, which executed the timer callback in softirq context and ...
CVE-2026-64536
- EPSS 0.16%
- Veröffentlicht 27.07.2026 06:36:04
- Zuletzt bearbeitet 17.08.2026 05:17:58
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB reads in is_ap_in_tkip() IE loop The loop in is_ap_in_tkip() iterates over IEs without verifying that enough bytes remain before dereferencing the IE he...
CVE-2026-64534
- EPSS 0.16%
- Veröffentlicht 27.07.2026 06:32:34
- Zuletzt bearbeitet 05.08.2026 08:16:35
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path In nvmet_tcp_try_recv_ddgst(), when a data digest mismatch is detected, nvmet_req_uninit() is called uncon...
CVE-2026-64535
- EPSS 0.52%
- Veröffentlicht 27.07.2026 06:32:34
- Zuletzt bearbeitet 19.08.2026 17:20:15
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: Fix potential UAF when ddgst mismatch Shivam Kumar found via vulnerability testing: When data digest is enabled on an NVMe/TCP connection and a digest mismatch occurs on...
CVE-2026-64532
- EPSS 0.16%
- Veröffentlicht 27.07.2026 06:32:33
- Zuletzt bearbeitet 17.08.2026 05:17:58
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound NTFS_DE view.data_off in UpdateRecordData{Root,Allocation} In do_action()'s UpdateRecordDataRoot (fslog.c:3489) and UpdateRecordDataAllocation (fslog.c:3697) cases,...
CVE-2026-64533
- EPSS 0.17%
- Veröffentlicht 27.07.2026 06:32:33
- Zuletzt bearbeitet 17.08.2026 05:17:58
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate lcns_follow in log_replay conversion log_replay() converts DIR_PAGE_ENTRY_32 records into DIR_PAGE_ENTRY records when replaying version 0 restart tables. During...