CVE-2026-74550
- EPSS 0.48%
- Veröffentlicht 15.08.2026 12:27:57
- Zuletzt bearbeitet 19.08.2026 17:21:10
In the Linux kernel, the following vulnerability has been resolved: net: do not send ICMP/NDISC Redirects when peer allocation fails When inet_getpeer_v4() or inet_getpeer_v6() fails to allocate a peer entry under memory pressure or tree size caps,...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 12:27:55
- Zuletzt bearbeitet 19.08.2026 17:21:09
In the Linux kernel, the following vulnerability has been resolved: hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread When userspace configures 'auto_update_interval' to 0 via sysfs, the background kthread executes schedule_timeout_i...
CVE-2026-74544
- EPSS 0.16%
- Veröffentlicht 15.08.2026 12:27:53
- Zuletzt bearbeitet 17.08.2026 06:19:51
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: validate offshift to prevent shift-out-of-bounds u32_change() copies the user-provided tc_u32_sel.offshift (unsigned char, 0-255) into the kernel knode object w...
CVE-2026-74540
- EPSS 0.26%
- Veröffentlicht 15.08.2026 12:27:51
- Zuletzt bearbeitet 19.08.2026 17:21:09
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp l2cap_le_connect_rsp() obtains a channel via __l2cap_get_chan_by_ident() but neither holds a reference nor uses l2cap_chan_hold_un...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 12:27:42
- Zuletzt bearbeitet 19.08.2026 17:21:09
In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: free TX rings on RX allocation failure When RX descriptor ring allocation fails, init_dma_desc_rings() only frees the partially allocated RX rings and returns. The TX r...
CVE-2026-74519
- EPSS 0.15%
- Veröffentlicht 15.08.2026 12:27:38
- Zuletzt bearbeitet 19.08.2026 17:21:08
In the Linux kernel, the following vulnerability has been resolved: pinctrl: devicetree: don't free uninitialized dev_name on error path dt_remember_or_free_map() duplicates dev_name for each map entry. If kstrdup_const() fails, dt_free_map() frees...
CVE-2026-74512
- EPSS 0.13%
- Veröffentlicht 15.08.2026 12:27:33
- Zuletzt bearbeitet 19.08.2026 17:21:07
In the Linux kernel, the following vulnerability has been resolved: audit: fix potential use-after-free in audit_del_rule() `audit_del_rule()` destroys `e->rule.exe` via `audit_remove_mark_rule()` before unlinking the rule from RCU-visible filter l...
CVE-2026-74510
- EPSS 0.2%
- Veröffentlicht 15.08.2026 12:27:32
- Zuletzt bearbeitet 23.08.2026 13:16:45
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix UAF in pair command cancellation The pairing completion and authentication failure callbacks look up the pending MGMT_OP_PAIR_DEVICE command by walking hdev->m...
CVE-2026-74508
- EPSS 0.26%
- Veröffentlicht 15.08.2026 12:27:31
- Zuletzt bearbeitet 23.08.2026 13:16:44
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: reject frames without a transaction header hidp_recv_ctrl_frame() and hidp_recv_intr_frame() read skb->data[0] before checking that the L2CAP SDU contains a transa...
CVE-2026-74507
- EPSS 0.24%
- Veröffentlicht 15.08.2026 12:27:30
- Zuletzt bearbeitet 19.08.2026 17:21:07
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: validate numbered report payloads When hidp_get_raw_report() waits for a numbered report, hidp_process_data() compares the expected report number with skb->data[0]...