- EPSS 0.04%
- Veröffentlicht 25.03.2026 10:26:48
- Zuletzt bearbeitet 18.04.2026 09:16:16
In the Linux kernel, the following vulnerability has been resolved: IB/mthca: Add missed mthca_unmap_user_db() for mthca_create_srq() Fix a user triggerable leak on the system call failure path.
- EPSS 0.04%
- Veröffentlicht 25.03.2026 10:26:48
- Zuletzt bearbeitet 18.04.2026 09:16:16
In the Linux kernel, the following vulnerability has been resolved: net: usb: pegasus: validate USB endpoints The pegasus driver should validate that the device it is probing has the proper number and types of USB endpoints it is expecting before i...
- EPSS 0.04%
- Veröffentlicht 25.03.2026 10:26:45
- Zuletzt bearbeitet 18.04.2026 09:16:16
In the Linux kernel, the following vulnerability has been resolved: atm: lec: fix null-ptr-deref in lec_arp_clear_vccs syzkaller reported a null-ptr-deref in lec_arp_clear_vccs(). This issue can be easily reproduced using the syzkaller reproducer. ...
- EPSS 0.03%
- Veröffentlicht 25.03.2026 10:26:44
- Zuletzt bearbeitet 25.03.2026 15:41:33
In the Linux kernel, the following vulnerability has been resolved: drbd: fix null-pointer dereference on local read error In drbd_request_endio(), READ_COMPLETED_WITH_ERROR is passed to __req_mod() with a NULL peer_device: __req_mod(req, what, ...
- EPSS 0.04%
- Veröffentlicht 25.03.2026 10:26:41
- Zuletzt bearbeitet 18.04.2026 09:16:16
In the Linux kernel, the following vulnerability has been resolved: wifi: libertas: fix use-after-free in lbs_free_adapter() The lbs_free_adapter() function uses timer_delete() (non-synchronous) for both command_timer and tx_lockup_timer before the...
- EPSS 0.13%
- Veröffentlicht 25.03.2026 10:26:39
- Zuletzt bearbeitet 18.04.2026 09:16:16
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix NULL pointer dereference in mesh_rx_csa_frame() In mesh_rx_csa_frame(), elems->mesh_chansw_params_ie is dereferenced at lines 1638 and 1642 without a prior NULL...
CVE-2026-31788
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:25:05
- Zuletzt bearbeitet 24.04.2026 15:19:57
In the Linux kernel, the following vulnerability has been resolved: xen/privcmd: restrict usage in unprivileged domU The Xen privcmd driver allows to issue arbitrary hypercalls from user space processes. This is normally no problem, as access is us...
CVE-2026-33064
- EPSS 0.3%
- Veröffentlicht 20.03.2026 08:16:12
- Zuletzt bearbeitet 23.03.2026 18:43:25
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2 are vulnerable to procedure panic caused by Nil Pointer Dereference in the /sdm-subscriptions endpoint. A remote attacker can cau...
CVE-2026-33065
- EPSS 0.05%
- Veröffentlicht 20.03.2026 08:16:12
- Zuletzt bearbeitet 23.03.2026 18:32:57
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. In versions prior to 1.4.2, the UDM incorrectly converts a downstream 400 Bad Request (from UDR) into a 500 Internal Server Error when handling DELETE re...
CVE-2026-33191
- EPSS 0.2%
- Veröffentlicht 20.03.2026 08:16:12
- Zuletzt bearbeitet 23.03.2026 18:24:15
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2 are vulnerable to null byte injection in URL path parameters. A remote attacker can inject null bytes (URL-encoded as %00) into t...