- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:12
- Zuletzt bearbeitet 17.08.2026 06:18:42
In the Linux kernel, the following vulnerability has been resolved: fs: refuse O_TMPFILE creation with an unmapped fsuid or fsgid vfs_tmpfile() never checked that the caller's fsuid and fsgid map into the filesystem. On an idmapped mount whose idm...
CVE-2026-72380
- EPSS 0.19%
- Veröffentlicht 15.08.2026 05:56:12
- Zuletzt bearbeitet 17.08.2026 06:18:42
In the Linux kernel, the following vulnerability has been resolved: xen/pvcalls: bound backend response req_id before indexing rsp[] pvcalls_front_event_handler() takes req_id directly from the backend-supplied ring response and uses it to index th...
CVE-2026-72378
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:11
- Zuletzt bearbeitet 17.08.2026 06:18:42
In the Linux kernel, the following vulnerability has been resolved: afs: Fix error code in afs_extract_vl_addrs() The error codes on these paths are only set on the first iteration through the loop. Set the correct error code on every iteration.
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:10
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: afs: Fix misplaced inc of net->cells_outstanding Fix net->cells_outstanding being incremented before the check for failure of idr_alloc_cyclic(), leaving the count incremented on e...
CVE-2026-72374
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:09
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: afs: Fix callback service message parsers to pass through -EAGAIN The AFS filesystem client uses an rxrpc server to listen for callback notifications. Each callback call type hand...
CVE-2026-72375
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:09
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: afs: Fix reinitialisation of the inode, in particular ->lock_work It seems that initalising afs_vnode::lock_work a single time in the slab's init function isn't sufficient for work...
CVE-2026-72373
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:08
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: afs: Fix missing NULL pointer check in afs_break_some_callbacks() Fix afs_break_some_callbacks() to check to see if afs_lookup_volume_rcu() returned NULL (e.g. the specified volume...
CVE-2026-72371
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:56:07
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: afs: Fix the volume AFS_VOLUME_RM_TREE is set on Fix afs_insert_volume_into_cell() to set AFS_VOLUME_RM_TREE on the volume replaced, not the new volume, as it's now removed from th...
CVE-2026-72369
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:56:05
- Zuletzt bearbeitet 17.08.2026 06:18:41
In the Linux kernel, the following vulnerability has been resolved: minix: avoid overflow in bitmap block count calculation minix_check_superblock() uses minix_blocks_needed() to verify that the on-disk imap and zmap block counts are large enough f...
CVE-2026-72351
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:54
- Zuletzt bearbeitet 17.08.2026 06:18:39
In the Linux kernel, the following vulnerability has been resolved: gue: validate REMCSUM private option length GUE private flags can indicate that remote checksum offload metadata is present. The private flags field itself is accounted for by gueh...