CVE-2026-23240
- EPSS 0.07%
- Veröffentlicht 10.03.2026 17:28:27
- Zuletzt bearbeitet 02.04.2026 15:16:25
In the Linux kernel, the following vulnerability has been resolved: tls: Fix race condition in tls_sw_cancel_work_tx() This issue was discovered during a code audit. After cancel_delayed_work_sync() is called from tls_sk_proto_close(), tx_work_han...
CVE-2026-23239
- EPSS 0.02%
- Veröffentlicht 10.03.2026 17:28:26
- Zuletzt bearbeitet 02.04.2026 15:16:25
In the Linux kernel, the following vulnerability has been resolved: espintcp: Fix race condition in espintcp_close() This issue was discovered during a code audit. After cancel_work_sync() is called from espintcp_close(), espintcp_tx_work() can st...
- EPSS 0.01%
- Veröffentlicht 09.03.2026 16:16:14
- Zuletzt bearbeitet 06.04.2026 08:16:36
In the Linux kernel, the following vulnerability has been resolved: fs/xattr: missing fdput() in fremovexattr error path In the Linux kernel, the fremovexattr() syscall calls fdget() to acquire a file reference but returns early without calling fdp...
CVE-2026-25702
- EPSS 0.06%
- Veröffentlicht 05.03.2026 07:16:13
- Zuletzt bearbeitet 09.03.2026 18:31:36
A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5 breaks nftables, causing firewall rules applied via nftables to not be effective.This issue affects SUSE Linux Enterprise Server: from 9e6d9d4601768c75f...
CVE-2025-12801
- EPSS 0.02%
- Veröffentlicht 04.03.2026 15:25:53
- Zuletzt bearbeitet 02.04.2026 15:16:22
A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to a...
CVE-2026-23238
- EPSS 0.01%
- Veröffentlicht 04.03.2026 14:38:42
- Zuletzt bearbeitet 17.03.2026 21:15:39
In the Linux kernel, the following vulnerability has been resolved: romfs: check sb_set_blocksize() return value romfs_fill_super() ignores the return value of sb_set_blocksize(), which can fail if the requested block size is incompatible with the ...
CVE-2026-23237
- EPSS 0.01%
- Veröffentlicht 04.03.2026 14:38:41
- Zuletzt bearbeitet 17.03.2026 21:16:04
In the Linux kernel, the following vulnerability has been resolved: platform/x86: classmate-laptop: Add missing NULL pointer checks In a few places in the Classmate laptop driver, code using the accel object may run before that object's address is ...
CVE-2026-23236
- EPSS 0.01%
- Veröffentlicht 04.03.2026 14:36:40
- Zuletzt bearbeitet 02.04.2026 15:16:24
In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: properly copy ioctl memory to kernelspace The UFX_IOCTL_REPORT_DAMAGE ioctl does not properly copy data from userspace to kernelspace, and instead directly referenc...
CVE-2026-23235
- EPSS 0.02%
- Veröffentlicht 04.03.2026 14:36:39
- Zuletzt bearbeitet 17.03.2026 21:20:33
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix out-of-bounds access in sysfs attribute read/write Some f2fs sysfs attributes suffer from out-of-bounds memory access and incorrect handling of integer values whose size ...
CVE-2026-23234
- EPSS 0.02%
- Veröffentlicht 04.03.2026 14:36:38
- Zuletzt bearbeitet 17.03.2026 21:21:25
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid UAF in f2fs_write_end_io() As syzbot reported an use-after-free issue in f2fs_write_end_io(). It is caused by below race condition: loop device umount - wor...