- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:09:56
- Zuletzt bearbeitet 17.09.2026 17:17:49
In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate connected lane counts The connected lane count is used by TX equalization code to index arrays sized by UFS_MAX_LANES. Reject zero and out-of-range RX or ...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:09:55
- Zuletzt bearbeitet 17.09.2026 17:17:49
In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requesting IRQ kmb_ocs_aes_probe() requests the device IRQ before initializing irq_completion. Once the handler is registered it can ...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:09:55
- Zuletzt bearbeitet 17.09.2026 17:17:49
In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: debugfs: Reserve space for a string terminator ufs_saved_err_write() copies user input into a zero-initialized stack buffer and passes it to kstrtoint(). A write that fi...
CVE-2026-90435
- EPSS 0.13%
- Veröffentlicht 17.09.2026 16:09:54
- Zuletzt bearbeitet 18.09.2026 18:17:59
In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix integer overflow of user QP buffer size set_user_buf_size() computes the QP buffer size by left-shifting the user-supplied rq.wqe_cnt and rq.wqe_shift values as sign...
- EPSS 0.17%
- Veröffentlicht 17.09.2026 16:09:53
- Zuletzt bearbeitet 17.09.2026 17:17:48
In the Linux kernel, the following vulnerability has been resolved: spi: oc-tiny: switch to managed controller allocation The controller is allocated with the non-managed spi_alloc_host() while the interrupt is registered with devm_request_irq(). ...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:09:53
- Zuletzt bearbeitet 17.09.2026 17:17:48
In the Linux kernel, the following vulnerability has been resolved: isofs: release zisofs block pointer buffer head zisofs_fill_pages() reads the compressed block pointer table. The error paths release the current buffer_head, the loop also releas...
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:09:52
- Zuletzt bearbeitet 17.09.2026 17:17:48
In the Linux kernel, the following vulnerability has been resolved: sched_ext: Abort directly from the hardlockup handler scx_hardlockup() defers the abort to an irq_work because exit claiming used to take scx_sched_lock and couldn't run from NMI. ...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:09:51
- Zuletzt bearbeitet 21.09.2026 14:17:29
In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Publish an LVCMDQ only after it is fully initialized tegra241_vintf_init_lvcmdq() stores the freshly allocated vcmdq pointer to the vintf->lvcmdqs[] array, be...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:09:51
- Zuletzt bearbeitet 17.09.2026 17:17:48
In the Linux kernel, the following vulnerability has been resolved: remoteproc: Prevent crash handling to race with rproc_del() There's no synchronization between rproc_crash_handler_work() and rproc_del(), as such it's possible for a driver to be ...
CVE-2026-90429
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:09:50
- Zuletzt bearbeitet 18.09.2026 18:17:59
In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Synchronize the error ISR against VINTF (de)init A user VINTF is torn down by tegra241_cmdqv_deinit_vintf(), which runs from the destroy callback and from the...