CVE-2026-74726
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:47
- Zuletzt bearbeitet 25.08.2026 06:18:58
In the Linux kernel, the following vulnerability has been resolved: bonding: alb: re-check primary_is_promisc under RTNL in bond_alb_monitor bond_alb_monitor() reads primary_is_promisc under RCU, then drops RCU and takes RTNL via rtnl_trylock() bef...
CVE-2026-74713
- EPSS 0.16%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:56
In the Linux kernel, the following vulnerability has been resolved: vhost_iotlb: bound map allocation in add_range vhost_iotlb_add_range_ctx() only retires an old entry when the table has a non-zero limit, has exactly reached that limit and has VHO...
CVE-2026-74714
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:56
In the Linux kernel, the following vulnerability has been resolved: bpf: tcp: Fix use-after-free in bpf_iter_tcp_established_batch() reqsk_queue_hash_req() publishes a TCP_NEW_SYN_RECV request_sock onto the ehash chain, drops the bucket lock, and o...
CVE-2026-74717
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:57
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fw_tracer, return NULL on create error Tracer creation can fail by returning either NULL or ERR_PTR. The return value is stored without a check on the device, and users t...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 22.08.2026 16:16:46
In the Linux kernel, the following vulnerability has been resolved: net/smc: fix qentry overwrite for CONFIRM_LINK and ADD_LINK_CONT in smc_llc_event_handler() The SMC_LLC_CONFIRM_LINK / SMC_LLC_ADD_LINK_CONT branch in smc_llc_event_handler() store...
CVE-2026-74720
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:46
- Zuletzt bearbeitet 25.08.2026 06:18:57
In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve pointer state for commuted arithmetic When scalar += pointer is handled in adjust_ptr_min_max_vals(), the destination register inherits the pointer state from the sou...
CVE-2026-74704
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:45
- Zuletzt bearbeitet 25.08.2026 06:18:54
In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter The sch_cake ACK filter parses packets to find the TCP header and filter duplicated ACKs if the flow is bac...
- EPSS 0.18%
- Veröffentlicht 22.08.2026 16:16:45
- Zuletzt bearbeitet 25.08.2026 06:18:54
In the Linux kernel, the following vulnerability has been resolved: udp: fix potential use-after-free in tunnel segmentation __skb_udp_tunnel_segment() gets the UDP header before ensuring the tunnel header is in the skb head. If the pull reallocate...
CVE-2026-74695
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:44
- Zuletzt bearbeitet 25.08.2026 06:18:53
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_flow_table: drop existing skb dst before skb_dst_set_noref() Incoming skbs passing through netfilter flowtable offload hooks (or XFRM offload path) might already carr...
CVE-2026-74696
- EPSS 0.17%
- Veröffentlicht 22.08.2026 16:16:44
- Zuletzt bearbeitet 25.08.2026 06:18:53
In the Linux kernel, the following vulnerability has been resolved: tcp: fix TFO max_qlen accounting across reuseport migration A listener's TCP_FASTOPEN max_qlen stops being accurate and lets through far more pending Fast Open requests than it was...