CVE-2026-80961
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:42:27
- Zuletzt bearbeitet 13.09.2026 07:17:03
In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate kset key_num and intra-segment bounds Two more fields decoded from the cache device go unbounded. The kset key_num drives cache_kset_crc() and the replay loop i...
CVE-2026-80959
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:26
- Zuletzt bearbeitet 13.09.2026 07:17:02
In the Linux kernel, the following vulnerability has been resolved: dm-pcache: bound the persisted tail-position offset cache_pos_decode() takes the persisted key_tail and dirty_tail seg_off from the cache device and addresses within the segment wi...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:25
- Zuletzt bearbeitet 11.09.2026 20:19:01
In the Linux kernel, the following vulnerability has been resolved: dm-pcache: detect a cycle in the last-kset chain during replay cache_replay() follows the on-media last-kset chain by next_cache_seg_id with no cond_resched(). A forged chain that ...
CVE-2026-80958
- EPSS 0.12%
- Veröffentlicht 11.09.2026 19:42:25
- Zuletzt bearbeitet 13.09.2026 07:17:02
In the Linux kernel, the following vulnerability has been resolved: dm-pcache: clamp the tail kset read to the segment data region The tail-kset read in cache_replay(), the writeback worker and the GC worker bounds its length by PCACHE_SEG_SIZE - s...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:42:24
- Zuletzt bearbeitet 11.09.2026 20:19:01
In the Linux kernel, the following vulnerability has been resolved: dm-pcache: only hand out initialized cache segments get_cache_segment() scans the segment map up to cache->n_segs, the physical device segment count, but cache_segs_init() only ini...
CVE-2026-80954
- EPSS 0.15%
- Veröffentlicht 11.09.2026 19:42:23
- Zuletzt bearbeitet 13.09.2026 07:17:02
In the Linux kernel, the following vulnerability has been resolved: i3c: Fix unlocked dereference of dev->desc in i3c_device_get_supported_xfer_mode() i3c_device_get_supported_xfer_mode() uses dev->desc to obtain the master controller. However, de...
CVE-2026-80955
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:42:23
- Zuletzt bearbeitet 13.09.2026 07:17:02
In the Linux kernel, the following vulnerability has been resolved: dm-pcache: fix use-after-free and invalid seg operations in kset_replay() In kset_replay, when key->seg_gen is stale (key->seg_gen < key->cache_pos.cache_seg->gen), cache_key_put(k...
CVE-2026-80953
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:42:22
- Zuletzt bearbeitet 13.09.2026 07:17:02
In the Linux kernel, the following vulnerability has been resolved: i3c: master: adi: initialize the lock before enabling interrupts adi_i3c_master_probe() requests the IRQ and unmasks REG_IRQ_PENDING_CMDR before the controller's IBI state, transfe...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:42:21
- Zuletzt bearbeitet 14.09.2026 13:18:50
In the Linux kernel, the following vulnerability has been resolved: i3c: master: svc: bound IBI payload to the requested max_payload_len svc_i3c_master_handle_ibi() reads the IBI payload from the RX FIFO into the IBI slot. The loop is bounded by th...
CVE-2026-80952
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:21
- Zuletzt bearbeitet 14.09.2026 13:18:50
In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix info leak and UAF in device unregister path i3c_master_unregister_i3c_devs() clears i3cdev->dev->desc before calling device_unregister(). During device_unregister...