- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:57
- Zuletzt bearbeitet 03.10.2026 11:17:38
In the Linux kernel, the following vulnerability has been resolved: ASoC: topology: Check PCM and DAI name strings before use Topology objects store several PCM and DAI names in fixed-size UAPI arrays. Other topology parser paths validate these fie...
CVE-2026-74289
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:56
- Zuletzt bearbeitet 03.10.2026 11:17:38
In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: Don't dump dying fib_info in fib_leaf_notify(). syzbot reported use-after-free in nsim_fib4_prepare_event(). [0] The problem is that the following functions call fib_in...
CVE-2026-74287
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:55
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded address parameter length sctp_verify_asconf() and sctp_verify_param() only validate ADD_IP, DEL_IP, and SET_PRIMARY parameters against a fixed minimum size ...
CVE-2026-74288
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:55
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net: fib_rules: Don't dump dying fib_rule in fib_rules_dump(). rocker_router_fib_event() calls fib_rule_get() during RCU dump. If the fib_rule is dying, refcount_inc() will compla...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:53
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_hfsc: Don't make class passive twice update_vf() is called from two places for the same class during a single dequeue when the class's child qdisc (e.g. codel/fq_cod...
CVE-2026-74282
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:52
- Zuletzt bearbeitet 17.08.2026 06:19:21
In the Linux kernel, the following vulnerability has been resolved: tipc: prevent snt_unacked underflow on CONN_ACK tipc_sk_conn_proto_rcv() subtracts the peer-supplied connection ack count from the unsigned 16-bit send counter snt_unacked without ...
CVE-2026-74283
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:52
- Zuletzt bearbeitet 17.08.2026 06:19:22
In the Linux kernel, the following vulnerability has been resolved: tipc: require net admin for TIPCv2 netlink mutators TIPCv2 registers mutating generic-netlink operations without admin permission flags. Generic netlink only checks CAP_NET_ADMIN w...
CVE-2026-74281
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:57:51
- Zuletzt bearbeitet 17.08.2026 06:19:21
In the Linux kernel, the following vulnerability has been resolved: tipc: reject inverted service ranges from peer bindings tipc_update_nametbl() inserts a binding advertised by a peer node using the lower and upper service-range bounds taken direc...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:50
- Zuletzt bearbeitet 17.08.2026 06:19:21
In the Linux kernel, the following vulnerability has been resolved: crypto: cavium/cpt - fix DMA cleanup using wrong loop index The sg_cleanup error path used list[i] instead of list[j] when unmapping DMA buffers, leaking successfully mapped entrie...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 05:57:49
- Zuletzt bearbeitet 17.08.2026 06:19:21
In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Fix kernel heap address leak in bounce_error_event() The comment above bounce_error_event() documents that user clients should receive SNDRV_SEQ_EVENT_BOUNCE with the or...