CVE-2026-72108
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:50
- Zuletzt bearbeitet 17.08.2026 06:18:09
In the Linux kernel, the following vulnerability has been resolved: dm thin metadata: fix metadata snapshot consistency on commit failure __reserve_metadata_snap() and __release_metadata_snap() modify the superblock's held_root directly in the bloc...
CVE-2026-72107
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:49
- Zuletzt bearbeitet 17.08.2026 06:18:09
In the Linux kernel, the following vulnerability has been resolved: dm era: fix out-of-bounds memory access for non-zero start sector dm-era tracks writes in target-relative blocks, but era_map() calculates the writeset block before applying the ta...
- EPSS 0.23%
- Veröffentlicht 15.08.2026 05:52:48
- Zuletzt bearbeitet 18.08.2026 07:16:52
In the Linux kernel, the following vulnerability has been resolved: dm-ioctl: fix a possible overflow in list_version_get_info sizeof(tt->version) is 12 bytes, but the code writes 16 bytes into the output buffer - info->vers->version[0], info->vers...
CVE-2026-72098
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:43
- Zuletzt bearbeitet 17.08.2026 06:18:08
In the Linux kernel, the following vulnerability has been resolved: dm-verity: fix buffer overflow in FEC calculation There's a buffer overflow in dm-verity-fec: if (neras && *neras <= v->fec->roots) fio->erasures[(*neras)++] = i; This allows *n...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:42
- Zuletzt bearbeitet 23.08.2026 13:16:40
In the Linux kernel, the following vulnerability has been resolved: dm-verity: make error counter atomic The error counter "v->corrupted_errs" was not atomic, thus it could be subject to race conditions. The call to dm_audit_log_target("max-corrupt...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:34
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free the command tag on the TMR submit-failure path scsiback_device_action() obtains a command tag in scsiback_get_pend_req() and submits a task-management req...
CVE-2026-72085
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:33
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsubmitted command instead of double-putting it scsiback_get_pend_req() obtains a command tag and returns a vscsibk_pend whose embedded se_cmd has only b...
CVE-2026-72083
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:32
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE core_scsi3_emulate_pro_register_and_move() maps the PERSISTENT RESERVE OUT parameter list with transport_kmap...
CVE-2026-72084
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:32
- Zuletzt bearbeitet 23.08.2026 13:16:39
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT TransportID parsing to the received buffer core_scsi3_decode_spec_i_port() and core_scsi3_emulate_register_and_move() hand the raw PERSISTENT RESERVE OUT...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:29
- Zuletzt bearbeitet 17.08.2026 06:18:06
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix use-after-free and double-free in disconnect ims_pcu_disconnect() only intended to perform cleanup when the primary (control) interface is unbound. However, it...