- EPSS 0.21%
- Veröffentlicht 10.08.2026 12:00:22
- Zuletzt bearbeitet 17.08.2026 05:18:22
In the Linux kernel, the following vulnerability has been resolved: media: vivid: fix cleanup bugs in vivid_init() When platform_device_register() fails in vivid_init(), the embedded struct device in vivid_pdev has already been initialized by devic...
CVE-2026-68202
- EPSS 0.18%
- Veröffentlicht 10.08.2026 12:00:21
- Zuletzt bearbeitet 23.08.2026 13:16:35
In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: close a re-opened queue timer in the destructor queue_delete() closes the queue timer, then frees it. snd_seq_timer_close() clears q->timer->timeri. snd_use_lock_sync() ...
CVE-2026-68199
- EPSS 0.41%
- Veröffentlicht 10.08.2026 12:00:18
- Zuletzt bearbeitet 19.08.2026 17:20:36
In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: fix OOB access from firmware ADDBA window size aggr_recv_addba_req_evt() logs a debug message when the firmware-supplied win_sz is outside [AGGR_WIN_SZ_MIN, AGGR_WIN_...
CVE-2026-68198
- EPSS 0.27%
- Veröffentlicht 10.08.2026 12:00:16
- Zuletzt bearbeitet 23.08.2026 13:16:35
In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: fix use-after-free in aggr_reset_state() The aggr_reset_state() function uses timer_delete() (non-synchronous) for the aggregation timer before proceeding to delete T...
- EPSS 0.21%
- Veröffentlicht 10.08.2026 12:00:15
- Zuletzt bearbeitet 19.08.2026 17:20:35
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper mwifiex_tdls_add_ht_oper() gates its follow-the-AP-bandwidth path on bss_desc->bcn_ht_cap being present, b...
CVE-2026-68196
- EPSS 0.42%
- Veröffentlicht 10.08.2026 12:00:14
- Zuletzt bearbeitet 19.08.2026 17:20:35
In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: validate assoc response length before subtracting header wilc_parse_assoc_resp_info() computes the trailing IE length as ies_len = buffer_len - sizeof(*res); wit...
- EPSS 0.21%
- Veröffentlicht 10.08.2026 12:00:07
- Zuletzt bearbeitet 19.08.2026 17:20:35
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB reads in rtw_get_wps_ie() rtw_get_wps_ie() iterates over IE data from network frames without validating that the IE header and payload fit within the re...
- EPSS 0.21%
- Veröffentlicht 10.08.2026 12:00:00
- Zuletzt bearbeitet 19.08.2026 17:20:35
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: Fix session UAF in set_termios rfcomm_tty_set_termios() tests dlc->session without rfcomm_mutex and later passes the pointer to rfcomm_send_rpn(). The latter der...
- EPSS 0.22%
- Veröffentlicht 10.08.2026 11:59:59
- Zuletzt bearbeitet 19.08.2026 17:20:34
In the Linux kernel, the following vulnerability has been resolved: exec: fix unsigned loop counter wrap in transfer_args_to_stack() The stop value is derived from bprm->p >> PAGE_SHIFT. The index variable is an unsigned long. If bprm->p drops belo...
- EPSS 0.21%
- Veröffentlicht 10.08.2026 11:59:56
- Zuletzt bearbeitet 19.08.2026 17:20:34
In the Linux kernel, the following vulnerability has been resolved: cdrom: fix stack out-of-bounds read in CDROMVOLCTRL mmc_ioctl_cdrom_volume() first reads the audio control mode page into a 32-byte stack buffer with cgc->buflen set to 24. If the...