- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:11:26
- Zuletzt bearbeitet 17.09.2026 17:18:06
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: fix out-of-bounds read of qw_sign os_desc_qw_sign_show() passes OS_STRING_QW_SIGN_LEN as the input length to utf16s_to_utf8s(), but that argument counts UTF-...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:11:25
- Zuletzt bearbeitet 17.09.2026 17:18:06
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: aspeed_udc: check endpoint DMA allocation ast_udc_probe() allocates a coherent DMA buffer used as the backing store for endpoint buffers. ast_udc_init_ep() derives per...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:11:25
- Zuletzt bearbeitet 17.09.2026 17:18:06
In the Linux kernel, the following vulnerability has been resolved: usb: ljca: bound bank_num in ljca_enumerate_gpio() ljca_enumerate_gpio() reads desc->bank_num from the device and loops valid_pin[i] = get_unaligned_le32(...) for i < bank_num. val...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:11:24
- Zuletzt bearbeitet 17.09.2026 17:18:06
In the Linux kernel, the following vulnerability has been resolved: usb: fix UAF when probe runs concurrent to dyn ID removal Dynamic IDs are only guaranteed to be valid when usb_dynids_lock is held, as remove_id_store can free the node. Thus, make...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:11:23
- Zuletzt bearbeitet 17.09.2026 17:18:06
In the Linux kernel, the following vulnerability has been resolved: platform/mellanox: mlxbf-pmc: Check ACPI_COMPANION() against NULL Every platform driver can be forced to match a device that doesn't match its list of device IDs because of device_...
- EPSS 0.12%
- Veröffentlicht 17.09.2026 16:11:23
- Zuletzt bearbeitet 18.09.2026 18:18:21
In the Linux kernel, the following vulnerability has been resolved: platform/x86: asus-wmi: fix resource leaks on probe failure During driver initialization in asus_wmi_add(), various subsystems are registered sequentially. However, the error path ...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:11:22
- Zuletzt bearbeitet 17.09.2026 17:18:05
In the Linux kernel, the following vulnerability has been resolved: platform/surface: acpi-notify: Check ACPI companion before use Since every platform driver can be forced to match a device that doesn't match its list of device IDs because of devi...
CVE-2026-93112
- EPSS 0.12%
- Veröffentlicht 17.09.2026 16:11:21
- Zuletzt bearbeitet 18.09.2026 18:18:21
In the Linux kernel, the following vulnerability has been resolved: bpf: Require a BPF cpumask for bpf_cpumask_populate() bpf_cpumask_populate() writes to its destination with bitmap_copy(), but the destination is typed as struct cpumask *. That al...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:11:21
- Zuletzt bearbeitet 17.09.2026 17:18:05
In the Linux kernel, the following vulnerability has been resolved: clk: qcom: camcc-sc8280xp: unregister CAMCC_GDSC_CLK With the introduction of sync_state support in the clk and pmdomain subsystems, the following warning happens when the unused c...
CVE-2026-93111
- EPSS 0.12%
- Veröffentlicht 17.09.2026 16:11:20
- Zuletzt bearbeitet 18.09.2026 18:18:20
In the Linux kernel, the following vulnerability has been resolved: bpf: Mark tracing_multi trampolines as ftrace managed Since tracing_multi link does not set ftrace_managed, it would fail to release the tracing_multi link when attaching tracing_m...