CVE-2026-90069
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:05:50
- Zuletzt bearbeitet 18.09.2026 18:17:40
In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - allocate async request context when cloning ACOMP_REQUEST_ON_STACK() reserves only enough storage for the synchronous fallback. When an async implementation is sele...
CVE-2026-90067
- EPSS 0.67%
- Veröffentlicht 17.09.2026 16:05:49
- Zuletzt bearbeitet 18.09.2026 18:17:40
In the Linux kernel, the following vulnerability has been resolved: libceph: validate banner payload length When parsing the Ceph messenger v2 protocol banner, the `payload_len` field is decoded from the banner prefix. If a client sends a banner wi...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:05:48
- Zuletzt bearbeitet 17.09.2026 17:16:55
In the Linux kernel, the following vulnerability has been resolved: net/smc: release the internal TCP sock on IPPROTO_SMC socket creation failure IPPROTO_SMC sockets create an internal TCP sock ("clcsock") from the proto->init hook. When socket cre...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:05:48
- Zuletzt bearbeitet 17.09.2026 17:16:55
In the Linux kernel, the following vulnerability has been resolved: samples/ftrace: Fix kthread_stop() on ERR_PTR in ftrace-direct-multi-modify ftrace_direct_multi_init() assigns kthread_run()'s return value to simple_tsk without an IS_ERR() check....
- EPSS 0.19%
- Veröffentlicht 17.09.2026 16:05:47
- Zuletzt bearbeitet 17.09.2026 17:16:55
In the Linux kernel, the following vulnerability has been resolved: drm/xe: Reject page faults from non-fault-mode scratch VMs Having scratch enabled does not make a VM capable of handling recoverable page faults. Allowing scratch VMs through the A...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:46
- Zuletzt bearbeitet 17.09.2026 17:16:55
In the Linux kernel, the following vulnerability has been resolved: virtio-net: Ensure that TCP packets don't overflow gso_segs The user can specify any gso_size in a packet crafted with an AF_PACKET PACKET_VNET_HDR socket, even smaller than TCP_MI...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:45
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: skip double clone set expressions on element insert Both the dynset and newsetelem path clone the existing set expressions when setting set element expression...
CVE-2026-90062
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:05:45
- Zuletzt bearbeitet 18.09.2026 18:17:40
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move hardware offload step after building the chain blob Allocate the chain blob before the ruleset offload to reduce chances of entering an inconsistent stat...
- EPSS 0.2%
- Veröffentlicht 17.09.2026 16:05:44
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: ALSA: control: Don't add invalid kcontrols to LED layer The kcontrol LED state layer tries to track the all associated kcontrol elements with naive assumptions that they are readab...
- EPSS 0.21%
- Veröffentlicht 17.09.2026 16:05:43
- Zuletzt bearbeitet 17.09.2026 17:16:54
In the Linux kernel, the following vulnerability has been resolved: net/sched: bound qdisc_pkt_len to prevent qdisc soft lockup qdisc_get_stab() accepts a user-supplied size table, and __qdisc_calculate_pkt_len() amplifies qdisc_pkt_len() through t...