CVE-2026-72098
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:43
- Zuletzt bearbeitet 17.08.2026 06:18:08
In the Linux kernel, the following vulnerability has been resolved: dm-verity: fix buffer overflow in FEC calculation There's a buffer overflow in dm-verity-fec: if (neras && *neras <= v->fec->roots) fio->erasures[(*neras)++] = i; This allows *n...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:42
- Zuletzt bearbeitet 23.08.2026 13:16:40
In the Linux kernel, the following vulnerability has been resolved: dm-verity: make error counter atomic The error counter "v->corrupted_errs" was not atomic, thus it could be subject to race conditions. The call to dm_audit_log_target("max-corrupt...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:36
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: hpsa: Fix DMA mapping leak on IOACCEL2 reset path If phys_disk->in_reset is set, the function returns directly without undoing the resources acquired for the command. Add the...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:35
- Zuletzt bearbeitet 23.08.2026 13:16:39
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix memory leak in lpfc_sli4_driver_resource_setup() The memory allocated for mboxq using mempool_alloc() is not freed in some of the early exit error paths. Fix that b...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:34
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free the command tag on the TMR submit-failure path scsiback_device_action() obtains a command tag in scsiback_get_pend_req() and submits a task-management req...
CVE-2026-72085
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:52:33
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsubmitted command instead of double-putting it scsiback_get_pend_req() obtains a command tag and returns a vscsibk_pend whose embedded se_cmd has only b...
CVE-2026-72083
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:32
- Zuletzt bearbeitet 17.08.2026 06:18:07
In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE core_scsi3_emulate_pro_register_and_move() maps the PERSISTENT RESERVE OUT parameter list with transport_kmap...
CVE-2026-72084
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:32
- Zuletzt bearbeitet 23.08.2026 13:16:39
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT TransportID parsing to the received buffer core_scsi3_decode_spec_i_port() and core_scsi3_emulate_register_and_move() hand the raw PERSISTENT RESERVE OUT...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:29
- Zuletzt bearbeitet 17.08.2026 06:18:06
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix use-after-free and double-free in disconnect ims_pcu_disconnect() only intended to perform cleanup when the primary (control) interface is unbound. However, it...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:52:28
- Zuletzt bearbeitet 17.08.2026 06:18:06
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - validate control endpoint type The driver currently assumes that the first endpoint of the control interface is an interrupt IN endpoint without verifying it. A ma...