- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in WMM_param_handler() WMM_param_handler() copies a fixed-size WMM parameter element out of a received information element without checking that th...
CVE-2026-74651
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 25.08.2026 06:18:45
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in rtw_get_wpa_ie() rtw_get_wpa_ie() reads bytes at fixed offsets into a vendor-specific information element without checking that the element is l...
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: serial: 8250_of: clear stuck empty-FIFO RX-timeout on LPC32xx The NXP LPC32xx UART (PORT_LPC3220) can latch an RX character-timeout interrupt while the RX FIFO is empty: IIR report...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:38
- Zuletzt bearbeitet 22.08.2026 16:16:38
In the Linux kernel, the following vulnerability has been resolved: serial: 8250_dma: Clear stale RX state on shutdown serial8250_release_dma() terminates RX DMA and releases the channel, but leaves rx_running set. If the port is closed while an R...
CVE-2026-74641
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:37
- Zuletzt bearbeitet 25.08.2026 06:18:43
In the Linux kernel, the following vulnerability has been resolved: ALSA: usx2y: bound the hwdep mmap fault offset snd_us428ctls_vm_fault() turns the faulting page offset into a kernel address with no bound of any kind: offset = vmf->pgoff << PAG...
CVE-2026-74637
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:36
- Zuletzt bearbeitet 27.08.2026 13:18:35
In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix group leader use-after-free after sibling detach perf_group_detach() handles leader and sibling detach differently. When the group leader is detached, all siblings a...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 23.08.2026 13:16:47
In the Linux kernel, the following vulnerability has been resolved: net: atlantic: free stranded TX buffers on ring deinit aq_vec_deinit() drains the TX rings with a single aq_ring_tx_clean() call, which frees at most AQ_CFG_TX_CLEAN_BUDGET (256) d...
CVE-2026-74626
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 27.08.2026 13:18:34
In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_netdev: Preserve RX queue depth on allocation failure ntb_netdev_rx_handler() hands the received skb to the network stack before allocating its replacement. If the allocat...
CVE-2026-74628
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 27.08.2026 13:18:34
In the Linux kernel, the following vulnerability has been resolved: net/x25: fix use-after-free of the socket by its timers The x25 timers are armed with mod_timer() and cancelled with timer_delete(), so a pending timer holds no reference on the so...
CVE-2026-74630
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:35
- Zuletzt bearbeitet 25.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent in6_dev_get() from resurrecting inet6_dev in6_dev_get() reads dev->ip6_ptr under RCU and then unconditionally increments its refcount. Device teardown can clear the p...