- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:33:21
- Zuletzt bearbeitet 16.09.2026 11:17:14
In the Linux kernel, the following vulnerability has been resolved: xhci: fix lost bounce buffers on TDs spanning several ring segments When a TD reaches a link TRB with data that is not aligned to the endpoint's wMaxPacketSize, xhci_align_td() sta...
CVE-2026-90013
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:20
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: tracing: Take trace_array reference when opening options file The options files do not take the trace_array reference for the options they represent. This could cause a use-after-f...
CVE-2026-90014
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:20
- Zuletzt bearbeitet 16.09.2026 15:18:25
In the Linux kernel, the following vulnerability has been resolved: tracing: Have show_event_filters/triggers files take trace array ref The newly added files show_event_filters and show_event_triggers that show all filters or triggers that are set...
CVE-2026-90012
- EPSS 0.63%
- Veröffentlicht 16.09.2026 10:33:19
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: spi: Fix DMA mapping ownership on partial map failure If RX mapping fails after TX mapping succeeds, __spi_map_msg() unmaps TX but leaves tx_sg_mapped set. If TX mapping fails on a...
CVE-2026-90010
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:18
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: scsi: bsg: Cap io_uring sense copy to max_response_len Completion copied scmd->sense_len to the user response buffer without honoring max_response_len. After a valid sense, the mid...
CVE-2026-90011
- EPSS 0.83%
- Veröffentlicht 16.09.2026 10:33:18
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Reserve a terminator byte for the login payload iscsi_target_check_login_request() rejects a login PDU whose DataSegmentLength exceeds MAX_KEY_VALUE_PAIRS, but...
CVE-2026-90009
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:17
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: scsi: bsg: Fix TOCTOU in io_uring passthrough command setup scsi_bsg_uring_cmd() reads bsg_uring_cmd from the shared mmap'd SQE. Userspace can change a field after we check it and ...
CVE-2026-90007
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:16
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: scsi: pm8001: Use rollback index when freeing MSI-X vectors pm8001_request_msix() unwinds previously registered handlers with free_irq() when request_irq() fails. The rollback loop...
CVE-2026-90008
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:33:16
- Zuletzt bearbeitet 16.09.2026 15:18:24
In the Linux kernel, the following vulnerability has been resolved: scsi: megaraid_sas: Limit NVMe request size to the PRP chain frame megasas_make_prp_nvme() builds a command's PRP list in cmd->sg_frame, a DMA pool buffer of instance->max_chain_fr...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:33:15
- Zuletzt bearbeitet 16.09.2026 11:17:13
In the Linux kernel, the following vulnerability has been resolved: samples/damon/mtier: handle damon_stop() failure damon_sample_mtier_stop() assumes its damon_stop() call will always successfully stops the two DAMON contexts. Hence it deallocate...