CVE-2026-89968
- EPSS 0.8%
- Veröffentlicht 16.09.2026 10:32:48
- Zuletzt bearbeitet 16.09.2026 15:18:21
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: reject unsolicited H2CData PDUs nvmet_tcp_handle_h2c_data_pdu() accepts an H2CData PDU after only checking that its TTAG is a valid in-range command index and that the c...
- EPSS 0.19%
- Veröffentlicht 16.09.2026 10:32:47
- Zuletzt bearbeitet 16.09.2026 11:17:07
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb_cma: fix null nodemask dereference in hugetlb_cma_alloc_frozen_folio alloc_buddy_hugetlb_folio_with_mpol() can pass a NULL nodemask to alloc_fresh_hugetlb_folio() as a f...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:32:46
- Zuletzt bearbeitet 17.09.2026 10:17:05
In the Linux kernel, the following vulnerability has been resolved: parisc: eisa: Fix infinite loop when parsing invalid IRQ value When an invalid value is passed via the "eisa_irq_edge=" kernel command line parameter (e.g. "eisa_irq_edge=16,5"), e...
CVE-2026-89965
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:46
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: nvdimm/btt: reject an arena whose nfree is below the lane count The BTT info block's nfree field, the number of reserve free blocks, is read from the medium without validation. bt...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:45
- Zuletzt bearbeitet 16.09.2026 11:17:06
In the Linux kernel, the following vulnerability has been resolved: powerpc/kexec_file: Fix null-ptr-def in extra size calculation A static Sashiko AI review identified a potential NULL pointer dereference in kexec_extra_fdt_size_ppc64(). On platf...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:44
- Zuletzt bearbeitet 16.09.2026 11:17:06
In the Linux kernel, the following vulnerability has been resolved: powerpc/kexec_file: Prevent kexec range truncation Sashiko AI review pointed out the following issue. The __merge_memory_ranges() function incorrectly handles overlapping memory r...
CVE-2026-89961
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:43
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: powerpc/mm: fix wrong addr_pfn tracking in compound vmemmap population vmemmap_populate_compound_pages() uses addr_pfn to determine the PFN offset within a compound page and to dec...
CVE-2026-89960
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:42
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix stale pqap_hook pointer on error in vfio_ap_mdev_set_kvm() In vfio_ap_mdev_set_kvm(), kvm->arch.crypto.pqap_hook is set to &matrix_mdev->pqap_hook before the upda...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:32:41
- Zuletzt bearbeitet 16.09.2026 11:17:06
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix dereference matrix_mdev->kvm without checking for NULL The ap_driver structure has two fields which are function pointers to callbacks: * .on_config_changed: cal...
CVE-2026-89959
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:41
- Zuletzt bearbeitet 16.09.2026 15:18:20
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix control domain removal in vfio_ap_mdev_cfg_remove The vfio_ap_config_remove function uses the bitmap_andnot function to clear bits from the matrix_mdev->matrix.ad...