- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:30:40
- Zuletzt bearbeitet 16.09.2026 11:16:45
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: guard against NULL restore_mqd in CRIU queue restore Both create_queue_cpsch() and create_queue_nocpsch() unconditionally call mqd_mgr->restore_mqd() when a CRIU restor...
CVE-2026-89806
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:30:39
- Zuletzt bearbeitet 03.10.2026 11:17:43
In the Linux kernel, the following vulnerability has been resolved: drm/sysfb: ofdrm: Fix integer overflow in fb_size calculation The framebuffer size calculation `fb_size = linebytes * height` can overflow when both values are large (e.g., 46341 *...
CVE-2026-89805
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:30:38
- Zuletzt bearbeitet 16.09.2026 15:18:10
In the Linux kernel, the following vulnerability has been resolved: drm/pagemap: Fix folio allocation fallback and use-after-put drm_pagemap_migrate_populate_ram_pfn() had two issues when populating RAM PFNs with higher-order folios: 1. The higher...
CVE-2026-89804
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:30:37
- Zuletzt bearbeitet 16.09.2026 15:18:10
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/dmem: fix mismatched DMA unmap size for large folios Device-private THP migration maps migration buffers with page_size() and records that length in dma_info->size. Fo...
CVE-2026-89803
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:30:36
- Zuletzt bearbeitet 16.09.2026 15:18:09
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: unsubscribe the channel-kill event before the fence context nouveau_channel_del() tears the fence context down first and only drops the channel-kill subscription later...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:30:35
- Zuletzt bearbeitet 16.09.2026 11:16:45
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/uvmm: fix NULL deref unwinding an OP_MAP_SPARSE op Each bind_job_op is zeroed by kzalloc_obj() in bind_job_op_from_uop(), and the OP_MAP_SPARSE case in nouveau_uvmm_bin...
CVE-2026-89801
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:30:34
- Zuletzt bearbeitet 16.09.2026 15:18:09
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/uvmm: fix premature region free on failed OP_UNMAP_SPARSE In nouveau_uvmm_bind_job_submit()'s OP_UNMAP_SPARSE arm, op->reg is set from nouveau_uvma_region_find(), which...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:30:33
- Zuletzt bearbeitet 16.09.2026 11:16:44
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/uvmm: clear the dirty flag when unwinding an OP_UNMAP_SPARSE A successful OP_UNMAP_SPARSE marks its region dirty with nouveau_uvma_region_dirty() and defers the teardow...
CVE-2026-89799
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:30:31
- Zuletzt bearbeitet 21.09.2026 14:17:27
In the Linux kernel, the following vulnerability has been resolved: bpf: Disable preemption in bpf_get_stackid The get_perf_callchain call needs disabled preemption plus we need it disabled as long as we access its returned trace entries buffer. N...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:30:29
- Zuletzt bearbeitet 21.09.2026 14:17:26
In the Linux kernel, the following vulnerability has been resolved: rpcrdma: arm rn_done before publishing the notification rpcrdma_rn_register() inserts @rn into rd_xa with xa_alloc() before storing the caller's callback in rn->rn_done. The xarray...