CVE-2026-89736
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:46:44
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_audio: Fix use-after-free on sound card disconnect g_audio_cleanup() invokes snd_card_free_when_closed() to initiate sound card teardown and immediately frees the un...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:43
- Zuletzt bearbeitet 11.09.2026 20:20:03
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Fix null pointer dereference in uvcg_video_init() In uvcg_video_init(), if kthread_run_worker() fails, the error logged uses uvcg_err(), however, the pointer it u...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:43
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: midi2: remove default configfs groups on teardown f_midi2_alloc_inst() creates default configfs child groups for the default endpoint and default block using configfs_...
CVE-2026-89733
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:42
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: fix dangling pointers in uvc_function_bind() and uvc_function_unbind() In uvc_function_bind() error path, we use usb_ep_free_request which uses uvc->control_req b...
CVE-2026-89731
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:41
- Zuletzt bearbeitet 21.09.2026 14:17:26
In the Linux kernel, the following vulnerability has been resolved: cxl/ras: Fix cxl_rch_get_aer_info() out-of-bounds AER register read cxl_rch_get_aer_info() copies the RCH Downstream Port AER capability from the RCRB MMIO block using a readl() lo...
- EPSS 0.22%
- Veröffentlicht 11.09.2026 19:46:41
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Prevent deadlock during ep0 read loop Currently, ffs_ep0_read() holds ffs->mutex when it prepares to go to sleep waiting for an event. When no setup events are p...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:46:40
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: fpga: altera-cvp: Avoid out-of-bounds read in trailing byte write The trailing byte path in altera_cvp_send_block() dereferences a u32 pointer even when only 1-3 bytes remain in th...
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:39
- Zuletzt bearbeitet 11.09.2026 20:20:03
In the Linux kernel, the following vulnerability has been resolved: i3c: renesas: Fix out-of-bounds access for newdevs mask When software initiates DAA (Dynamic Address Assignment), the controller reports the result via the NRSPQP (Normal Response ...
CVE-2026-89729
- EPSS 0.32%
- Veröffentlicht 11.09.2026 19:46:39
- Zuletzt bearbeitet 14.09.2026 13:19:22
In the Linux kernel, the following vulnerability has been resolved: HID: sensor-hub: Fix out-of-bounds write in sensor_hub_get_feature sensor_hub_get_feature() clamps its return value to the caller's buffer size, but the copy loop still copies fiel...
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:46:38
- Zuletzt bearbeitet 11.09.2026 20:20:03
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: GICv2: Don't WARN on out-of-range GICV_DIR INTID vgic_v2_deactivate() passes the INTID a guest wrote to GICV_DIR straight to vgic_get_vcpu_irq(), and treats a failed lo...