CVE-2026-72350
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:53
- Zuletzt bearbeitet 17.08.2026 06:18:39
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_u32: reject invalid shift counts u32_match_it() executes rule-supplied shift operands on a 32-bit value. A malformed u32 rule can provide a shift count of 32 or more,...
CVE-2026-72348
- EPSS 0.23%
- Veröffentlicht 15.08.2026 05:55:52
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop The ah, hbh and rt matches check that the fixed extension header is present, then use the header length fiel...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:52
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt() On links faster than ~34 Gbps, where byte rate may exceed 2^32-1 (~ 4.3 GBps), the comparison result becomes incorrect ...
CVE-2026-72347
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:51
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_connmark: reject invalid shift parameters Revision 2 of the CONNMARK target accepts user-controlled shift parameters and applies them to 32-bit mark values in connmar...
CVE-2026-72342
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:48
- Zuletzt bearbeitet 17.08.2026 06:18:38
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix HV VHCA stats agent registration race mlx5e_hv_vhca_stats_create() registers the stats agent through mlx5_hv_vhca_agent_create(). The helper publishes the agent in h...
CVE-2026-72339
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:46
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: qede: fix off-by-one in BD ring consumption on build_skb failure qede_rx_build_skb() and qede_tpa_rx_build_skb() do not check for a NULL return from qede_build_skb(). When it retur...
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:55:45
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: 6lowpan: avoid untracked enable work lowpan_enable_set() allocates a temporary work item and schedules do_enable_set() on system_wq, then returns to debugfs. The debugfs...
CVE-2026-72338
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:55:45
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_pedit: fix TOCTOU heap OOB write in tc offload There is a TOCTOU race condition in flower lockless approach between sizing a flow_rule buffer and filling it. zdi-dis...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:44
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: 6lowpan: hold L2CAP conn across debugfs control get_l2cap_conn() looks up an LE hci_conn under hdev protection, but then drops that protection before reading hcon->l2cap...
CVE-2026-72335
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:43
- Zuletzt bearbeitet 17.08.2026 06:18:37
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix adv monitor add failure cleanup hci_add_adv_monitor() publishes a new adv_monitor in hdev->adv_monitors_idr before the powered MSFT setup step. The MSFT offloa...