- EPSS 0.22%
- Veröffentlicht 17.09.2026 16:07:16
- Zuletzt bearbeitet 17.09.2026 17:17:14
In the Linux kernel, the following vulnerability has been resolved: ALSA: core: Fix use-after-free in snd_card_do_free() A use-after-free was detected in snd_card_do_free() when a sound card managed by devres is unbound while a user-space applicati...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:07:15
- Zuletzt bearbeitet 17.09.2026 17:17:14
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: validate topology volume range before allocation SOF treats the topology mixer min and max values as non-negative indices into its volume table. It stores them in signed...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:07:14
- Zuletzt bearbeitet 17.09.2026 17:17:14
In the Linux kernel, the following vulnerability has been resolved: ACPI: scan: fix bus ID cleanup on device_add() failures When device_add() fails after acpi_device_set_name() has allocated an instance ID and a new acpi_device_bus_id has been link...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:07:14
- Zuletzt bearbeitet 17.09.2026 17:17:14
In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix missing sign-ext for signed 1-byte and 2-byte kfunc args On RV64, the ABI requires sign-extension for signed 1-byte and 2-byte kfunc args. However, the RV64 JIT cur...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:07:13
- Zuletzt bearbeitet 17.09.2026 17:17:14
In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock in IRQ handler qcom_cpucp_mbox_irq_fn() calls mbox_chan_received_data() while holding chan->lock. Under PREEMPT_RT, spin_lock_irqs...
CVE-2026-90191
- EPSS 0.18%
- Veröffentlicht 17.09.2026 16:07:12
- Zuletzt bearbeitet 18.09.2026 18:17:45
In the Linux kernel, the following vulnerability has been resolved: mailbox: riscv-sbi-mpxy: validate RPMI notification lengths The SBI return value controls how many bytes are copied from shared memory into the RPMI notification buffer. It is not ...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:07:12
- Zuletzt bearbeitet 17.09.2026 17:17:13
In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: handle NULL data in send_data callback mailbox_clear_channel() calls mbox_send_message() with NULL data to notify the remote side that the RX channel has been ...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:07:11
- Zuletzt bearbeitet 17.09.2026 17:17:13
In the Linux kernel, the following vulnerability has been resolved: null_blk: use DEFINE_MUTEX for the file-scope mutex In null_init(), mutex_init(&lock) currently happens after configfs_register_subsystem(), which exposes the nullb subsystem to us...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:07:10
- Zuletzt bearbeitet 17.09.2026 17:17:13
In the Linux kernel, the following vulnerability has been resolved: null_blk: free global tag_set on init error path If shared_tags is enabled, null_setup_tagset() allocates the global tag_set via null_init_global_tag_set(). If device creation late...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:07:10
- Zuletzt bearbeitet 17.09.2026 17:17:13
In the Linux kernel, the following vulnerability has been resolved: null_blk: register configfs subsystem after creating default devices In null_init(), configfs_register_subsystem() currently runs before register_blkdev(), so when null_blk is buil...