CVE-2026-74584
- EPSS 0.17%
- Veröffentlicht 22.08.2026 15:16:21
- Zuletzt bearbeitet 25.08.2026 06:18:32
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: zero shared page before exposing to userspace bnxt_re_alloc_ucontext() allocates uctx->shpg via __get_free_page(GFP_KERNEL). The buddy allocator does not zero pages w...
CVE-2026-74580
- EPSS 0.17%
- Veröffentlicht 21.08.2026 17:16:44
- Zuletzt bearbeitet 25.08.2026 06:18:30
In the Linux kernel, the following vulnerability has been resolved: vhost: reset the vring metadata cache on vring reconfiguration vq->meta_iotlb[] caches the vhost_iotlb_map that backs each vring metadata region, and iotlb_access_ok() returns earl...
CVE-2026-74582
- EPSS 0.16%
- Veröffentlicht 21.08.2026 17:16:44
- Zuletzt bearbeitet 27.08.2026 13:18:34
In the Linux kernel, the following vulnerability has been resolved: packet: use consistent hard_header_len in non-ring send paths packet_snd() reads dev->hard_header_len multiple times while allocating and constructing an skb. Device reconfiguratio...
CVE-2026-74583
- EPSS 0.17%
- Veröffentlicht 21.08.2026 17:16:44
- Zuletzt bearbeitet 25.08.2026 06:18:32
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_route: fix fastmap use-after-free on filter The route4 classifier maintains a 16-slot fastmap cache that stores raw struct route4_filter pointers indexed by (id, iif...
CVE-2026-74578
- EPSS 0.19%
- Veröffentlicht 16.08.2026 08:20:32
- Zuletzt bearbeitet 17.08.2026 06:19:56
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_skcipher - force synchronous processing on trees without ctx->state The AIO/async path in skcipher_recvmsg() passes the socket-wide ctx->iv directly into the skcipher...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:28:14
- Zuletzt bearbeitet 19.08.2026 17:21:11
In the Linux kernel, the following vulnerability has been resolved: net: mpls: initialize rtm_tos in mpls_getroute() mpls_getroute() builds the RTM_NEWROUTE reply to an RTM_GETROUTE request by filling a struct rtmsg allocated from an skb whose data...
CVE-2026-74569
- EPSS 0.39%
- Veröffentlicht 15.08.2026 12:28:09
- Zuletzt bearbeitet 19.08.2026 17:21:11
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() sip_help_tcp() stores the size change of each NAT-rewritten SIP message in s16 diff and accumulates it...
CVE-2026-74564
- EPSS 0.12%
- Veröffentlicht 15.08.2026 12:28:06
- Zuletzt bearbeitet 19.08.2026 17:21:11
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH The XT_HASHLIMIT_RATE_MATCH flag mode changes the semantics of the dsthash_ent structure which represen...
CVE-2026-74556
- EPSS 0.4%
- Veröffentlicht 15.08.2026 12:28:01
- Zuletzt bearbeitet 19.08.2026 17:21:10
In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer iscsi_tcp_hdr_dissect() receives the data segment of several PDU types into the fixed-size conn->data ...
CVE-2026-74557
- EPSS 0.33%
- Veröffentlicht 15.08.2026 12:28:01
- Zuletzt bearbeitet 19.08.2026 17:21:10
In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer iscsi_scsi_cmd_rsp() copies the sense data of a SCSI Response from the target-supplied data segment. The segment car...