CVE-2026-43076
- EPSS 0.01%
- Veröffentlicht 06.05.2026 07:40:13
- Zuletzt bearbeitet 08.05.2026 13:16:38
In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate inline data i_size during inode read When reading an inode from disk, ocfs2_validate_inode_block() performs various sanity checks but does not validate the size of ...
CVE-2026-43075
- EPSS 0.01%
- Veröffentlicht 06.05.2026 07:40:03
- Zuletzt bearbeitet 08.05.2026 13:16:38
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix out-of-bounds write in ocfs2_write_end_inline KASAN reports a use-after-free write of 4086 bytes in ocfs2_write_end_inline, called from ocfs2_write_end_nolock during a c...
- EPSS 0.03%
- Veröffentlicht 05.05.2026 16:16:16
- Zuletzt bearbeitet 06.05.2026 13:08:07
In the Linux kernel, the following vulnerability has been resolved: ext4: avoid allocate block from corrupted group in ext4_mb_find_by_goal() There's issue as follows: ... EXT4-fs (mmcblk0p1): Delayed block allocation failed for inode 206 at logica...
- EPSS 0.03%
- Veröffentlicht 05.05.2026 16:16:16
- Zuletzt bearbeitet 06.05.2026 13:08:07
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_ll: Fix firmware leak on error path Smatch reports: drivers/bluetooth/hci_ll.c:587 download_firmware() warn: 'fw' from request_firmware() not released on lines: 544...
CVE-2026-43070
- EPSS 0.01%
- Veröffentlicht 05.05.2026 16:16:16
- Zuletzt bearbeitet 08.05.2026 13:16:37
In the Linux kernel, the following vulnerability has been resolved: bpf: Reset register ID for BPF_END value tracking When a register undergoes a BPF_END (byte swap) operation, its scalar value is mutated in-place. If this register previously share...
CVE-2026-43071
- EPSS 0.07%
- Veröffentlicht 05.05.2026 16:16:16
- Zuletzt bearbeitet 08.05.2026 13:16:37
In the Linux kernel, the following vulnerability has been resolved: dcache: Limit the minimal number of bucket to two There is an OOB read problem on dentry_hashtable when user sets 'dhash_entries=1': BUG: unable to handle page fault for address:...
- EPSS 0.03%
- Veröffentlicht 05.05.2026 16:16:16
- Zuletzt bearbeitet 06.05.2026 13:08:07
In the Linux kernel, the following vulnerability has been resolved: drm/vc4: platform_get_irq_byname() returns an int platform_get_irq_byname() will return a negative value if an error happens, so it should be checked and not just passed directly i...
- EPSS 0.02%
- Veröffentlicht 05.05.2026 16:16:16
- Zuletzt bearbeitet 06.05.2026 13:08:07
In the Linux kernel, the following vulnerability has been resolved: x86-64: rename misleadingly named '__copy_user_nocache()' function This function was a masterclass in bad naming, for various historical reasons. It claimed to be a non-cached use...
CVE-2026-43060
- EPSS 0.01%
- Veröffentlicht 05.05.2026 16:16:15
- Zuletzt bearbeitet 08.05.2026 13:16:37
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: drop pending enqueued packets on removal Packets sitting in nfqueue might hold a reference to: - templates that specify the conntrack zone, because a percpu are...
- EPSS 0.03%
- Veröffentlicht 05.05.2026 16:16:15
- Zuletzt bearbeitet 06.05.2026 13:08:07
In the Linux kernel, the following vulnerability has been resolved: serial: 8250: Fix TX deadlock when using DMA `dmaengine_terminate_async` does not guarantee that the `__dma_tx_complete` callback will run. The callback is currently the only place...