CVE-2026-23021
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:39:05
- Zuletzt bearbeitet 25.03.2026 15:56:19
In the Linux kernel, the following vulnerability has been resolved: net: usb: pegasus: fix memory leak in update_eth_regs_async() When asynchronously writing to the device registers and if usb_submit_urb() fail, the code fail to release allocated t...
CVE-2026-23020
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:39:04
- Zuletzt bearbeitet 25.03.2026 15:56:02
In the Linux kernel, the following vulnerability has been resolved: net: 3com: 3c59x: fix possible null dereference in vortex_probe1() pdev can be null and free_ring: can be called in 1297 with a null pdev.
CVE-2026-23019
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:39:03
- Zuletzt bearbeitet 25.03.2026 15:55:44
In the Linux kernel, the following vulnerability has been resolved: net: marvell: prestera: fix NULL dereference on devlink_alloc() failure devlink_alloc() may return NULL on allocation failure, but prestera_devlink_alloc() unconditionally calls de...
CVE-2026-23017
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:39:01
- Zuletzt bearbeitet 25.03.2026 18:03:35
In the Linux kernel, the following vulnerability has been resolved: idpf: fix error handling in the init_task on load If the init_task fails during a driver load, we end up without vports and netdevs, effectively failing the entire process. In that...
CVE-2025-71184
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:38:57
- Zuletzt bearbeitet 25.03.2026 18:55:11
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix NULL dereference on root when tracing inode eviction When evicting an inode the first thing we do is to setup tracing for it, which implies fetching the root's id. But i...
CVE-2025-71183
- EPSS 0.01%
- Veröffentlicht 31.01.2026 11:38:56
- Zuletzt bearbeitet 25.03.2026 19:16:17
In the Linux kernel, the following vulnerability has been resolved: btrfs: always detect conflicting inodes when logging inode refs After rename exchanging (either with the rename exchange operation or regular renames in multiple non-atomic steps) ...
CVE-2025-71182
- EPSS 0.01%
- Veröffentlicht 31.01.2026 11:38:55
- Zuletzt bearbeitet 25.03.2026 19:41:58
In the Linux kernel, the following vulnerability has been resolved: can: j1939: make j1939_session_activate() fail if device is no longer registered syzbot is still reporting unregister_netdevice: waiting for vcan0 to become free. Usage count = ...
CVE-2025-71180
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:38:52
- Zuletzt bearbeitet 25.03.2026 19:45:29
In the Linux kernel, the following vulnerability has been resolved: counter: interrupt-cnt: Drop IRQF_NO_THREAD flag An IRQ handler can either be IRQF_NO_THREAD or acquire spinlock_t, as CONFIG_PROVE_RAW_LOCK_NESTING warns: ========================...
CVE-2025-2668
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:28:18
- Zuletzt bearbeitet 05.02.2026 20:03:12
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 is vulnerable to a denial of service as the server may crash when an authenticated user creates a specially crafted query.
CVE-2025-36001
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:28:15
- Zuletzt bearbeitet 05.02.2026 20:03:19
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an authenticated user to cause a denial of service using a specially crafted SQL statement including XML that performs uncontrolled recu...