CVE-2026-74444
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:51
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: validate DRAW_PRIMITIVES header size before division vmw_cmd_draw() computes maxnum = (header->size - sizeof(cmd->body)) / sizeof(*decl); where header->size is u32 a...
CVE-2026-74443
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:50
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: bound DMA command body size against suffix pointer vmw_cmd_dma() locates the DMA suffix at (unsigned long) &cmd->body + header->size - sizeof(*suffix) without checki...
CVE-2026-74438
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:59:36
- Zuletzt bearbeitet 17.08.2026 06:19:39
In the Linux kernel, the following vulnerability has been resolved: crypto: sun4i-ss - Remove insecure and unused rng_alg Remove sun4i_ss_rng, as it is insecure and unused: - It has multiple vulnerabilities. sun4i_ss_prng_seed() is missing lock...
CVE-2026-74436
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:59:34
- Zuletzt bearbeitet 23.08.2026 13:16:43
In the Linux kernel, the following vulnerability has been resolved: rxrpc: serialize kernel accept preallocation with socket teardown rxrpc_kernel_charge_accept() reads rx->backlog without any socket/backlog synchronization and passes that raw poin...
CVE-2026-74427
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:59:29
- Zuletzt bearbeitet 17.08.2026 06:19:38
In the Linux kernel, the following vulnerability has been resolved: afs: Fix netns teardown to cancel the preallocation charger Fix the teardown of an afs network namespace to make sure it cancels the work item that keeps the preallocated rxrpc cal...
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:59:27
- Zuletzt bearbeitet 18.08.2026 07:16:54
In the Linux kernel, the following vulnerability has been resolved: fbcon: fix NULL pointer dereference for a console without vc_data fbcon_new_modelist() runs when a framebuffer's modelist changes. For each console mapped to it with fb_display[i]....
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:59:22
- Zuletzt bearbeitet 17.08.2026 06:19:37
In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix memory leak in radeon_ring_restore() on lock failure radeon_ring_restore() takes ownership of the data buffer allocated by radeon_ring_backup(). The caller (radeon_...
CVE-2026-74417
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:59:22
- Zuletzt bearbeitet 17.08.2026 06:19:37
In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix integer overflow in radeon_align_pitch() radeon_align_pitch() has the same kind of overflow issue as the old amdgpu helper: both the alignment round-up add and the ...
CVE-2026-74408
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:59:16
- Zuletzt bearbeitet 17.08.2026 06:19:36
In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: fix OOB access from firmware tx status queue ID ath_tx_edma_tasklet() accesses sc->tx.txq[ts.qid] where ts.qid is a 4-bit hardware field (0-15), but the txq array only...
CVE-2026-74406
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:59:15
- Zuletzt bearbeitet 17.08.2026 06:19:35
In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). udp_tunnel_sock_release() could set sk->sk_user_data to NULL while vxlan_gro_prepare_receive() is running. Let'...