CVE-2026-72466
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:57:09
- Zuletzt bearbeitet 17.08.2026 06:19:14
In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Fix bcall rep leak and unbounded peek rpcrdma_is_bcall() decodes a reply's first words to decide whether the frame is a backchannel call. Two issues in that decode path l...
CVE-2026-72464
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:57:08
- Zuletzt bearbeitet 17.08.2026 06:19:14
In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Repost Receive buffers for malformed replies rpcrdma_wc_receive() decrements the transport's Receive count for every completion before it dispatches a successful Receive ...
CVE-2026-72460
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:05
- Zuletzt bearbeitet 17.08.2026 06:19:13
In the Linux kernel, the following vulnerability has been resolved: apparmor: check label build before no_new_privs test aa_change_profile() builds a replacement label with fn_label_build_in_scope() before the no_new_privs subset check. The build h...
CVE-2026-72459
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:57:04
- Zuletzt bearbeitet 17.08.2026 06:19:13
In the Linux kernel, the following vulnerability has been resolved: apparmor: aa_label_alloc use aa_label_free on alloc failure aa_label_alloc() allocates a secid before allocating or taking the label proxy. If the later proxy step fails, the error...
CVE-2026-72450
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:58
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: xfrm: validate selector family and prefixlen during match syzbot reported a shift-out-of-bounds in xfrm_selector_match() due to AF_UNSPEC selector with large prefixlen (e.g. 128) m...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:57
- Zuletzt bearbeitet 17.08.2026 06:19:12
In the Linux kernel, the following vulnerability has been resolved: sctp: hold socket lock when dumping endpoints in sctp_diag SCTP_DIAG endpoint dumping was traversing endpoint address lists without holding lock_sock(), while those lists could cha...
CVE-2026-72444
- EPSS 0.18%
- Veröffentlicht 15.08.2026 05:56:55
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: flow_dissector: check device type before reading ETH_ADDRS __skb_flow_dissect() unconditionally reads 12 bytes from eth_hdr(skb) when FLOW_DISSECTOR_KEY_ETH_ADDRS is requested. Thi...
- EPSS 0.24%
- Veröffentlicht 15.08.2026 05:56:53
- Zuletzt bearbeitet 17.08.2026 06:19:11
In the Linux kernel, the following vulnerability has been resolved: ieee802154: fix kernel-infoleak in dgram_recvmsg() KMSAN reported a kernel-infoleak in move_addr_to_user(): BUG: KMSAN: kernel-infoleak in instrument_copy_to_user include/linux/in...
CVE-2026-72436
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:50
- Zuletzt bearbeitet 17.08.2026 06:19:10
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types Sashiko pointed out that there are a few lockless RCU readers using test_bit() which is a relaxed atomi...
CVE-2026-72435
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:49
- Zuletzt bearbeitet 17.08.2026 06:19:10
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() Sashiko pointed out that kfree_rcu() was called before rcu_assign_pointer() in handling the comment extension. F...