CVE-2026-33064
- EPSS 0.3%
- Veröffentlicht 20.03.2026 08:16:12
- Zuletzt bearbeitet 23.03.2026 18:43:25
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2 are vulnerable to procedure panic caused by Nil Pointer Dereference in the /sdm-subscriptions endpoint. A remote attacker can cau...
CVE-2026-33065
- EPSS 0.05%
- Veröffentlicht 20.03.2026 08:16:12
- Zuletzt bearbeitet 23.03.2026 18:32:57
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. In versions prior to 1.4.2, the UDM incorrectly converts a downstream 400 Bad Request (from UDR) into a 500 Internal Server Error when handling DELETE re...
CVE-2026-33191
- EPSS 0.2%
- Veröffentlicht 20.03.2026 08:16:12
- Zuletzt bearbeitet 23.03.2026 18:24:15
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2 are vulnerable to null byte injection in URL path parameters. A remote attacker can inject null bytes (URL-encoded as %00) into t...
CVE-2026-33192
- EPSS 0.01%
- Veröffentlicht 20.03.2026 08:09:07
- Zuletzt bearbeitet 23.03.2026 18:32:46
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. In versions prior to 1.4.2, the UDM incorrectly converts a downstream 400 Bad Request (from UDR) into a 500 Internal Server Error when handling PATCH req...
- EPSS 0.05%
- Veröffentlicht 20.03.2026 08:08:57
- Zuletzt bearbeitet 18.04.2026 09:16:15
In the Linux kernel, the following vulnerability has been resolved: net/sched: teql: fix NULL pointer dereference in iptunnel_xmit on TEQL slave xmit teql_master_xmit() calls netdev_start_xmit(skb, slave) to transmit through slave devices, but does...
- EPSS 0.03%
- Veröffentlicht 20.03.2026 08:08:56
- Zuletzt bearbeitet 25.03.2026 11:16:21
In the Linux kernel, the following vulnerability has been resolved: net: add xmit recursion limit to tunnel xmit functions Tunnel xmit functions (iptunnel_xmit, ip6tunnel_xmit) lack their own recursion limit. When a bond device in broadcast mode ha...
CVE-2026-23272
- EPSS 0.02%
- Veröffentlicht 20.03.2026 08:08:52
- Zuletzt bearbeitet 02.04.2026 15:16:28
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nelems before insertion In case that the set is full, a new element gets published then removed without waiting for the RCU grace pe...
CVE-2026-23271
- EPSS 0.02%
- Veröffentlicht 20.03.2026 08:08:46
- Zuletzt bearbeitet 02.04.2026 15:16:28
In the Linux kernel, the following vulnerability has been resolved: perf: Fix __perf_event_overflow() vs perf_remove_from_context() race Make sure that __perf_event_overflow() runs with IRQs disabled for all possible callchains. Specifically the so...
CVE-2026-23269
- EPSS 0.02%
- Veröffentlicht 18.03.2026 17:54:42
- Zuletzt bearbeitet 18.04.2026 09:16:15
In the Linux kernel, the following vulnerability has been resolved: apparmor: validate DFA start states are in bounds in unpack_pdb Start states are read from untrusted data and used as indexes into the DFA state tables. The aa_dfa_next() function ...
CVE-2026-23268
- EPSS 0.02%
- Veröffentlicht 18.03.2026 17:54:41
- Zuletzt bearbeitet 18.04.2026 09:16:15
In the Linux kernel, the following vulnerability has been resolved: apparmor: fix unprivileged local user can do privileged policy management An unprivileged local user can load, replace, and remove profiles by opening the apparmorfs interfaces, vi...