CVE-2026-90048
- EPSS 0.51%
- Veröffentlicht 16.09.2026 10:33:44
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates a fixed buffer of al_aligned(record_size) (== record_size) bytes and then walks ever...
CVE-2026-90046
- EPSS 0.14%
- Veröffentlicht 16.09.2026 10:33:43
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: don't spin_trylock() in NMI on UP Patch series "mm/page_alloc: fixes for free_pages_nolock() on RT/UP". Pre-existing bugs found by Sashiko during review of this oth...
CVE-2026-90047
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:43
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't hand out the flat CCS storage as usable VRAM get_flat_ccs_offset() reads the base of the flat CCS storage from the hardware, scales it by the number of enabled L3 nod...
CVE-2026-90045
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:42
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data stores a pointer to the submitting task's mm_struct, but does not currently hold a reference to it while async requests are pendi...
CVE-2026-90044
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:41
- Zuletzt bearbeitet 28.09.2026 23:10:00
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix Use-After-Free in AIO error path In ffs_epfile_write_iter() and ffs_epfile_read_iter(), when ffs_epfile_io() fails with an error other than -EIOCBQUEUED, the...
CVE-2026-90042
- EPSS 0.49%
- Veröffentlicht 16.09.2026 10:33:40
- Zuletzt bearbeitet 21.09.2026 14:17:28
In the Linux kernel, the following vulnerability has been resolved: ceph: properly decrypt filenames in vmalloc() buffers The fscrypt subsystem uses the scatterlist crypto API, inheriting its requirement that any buffers are in the linear mapping r...
CVE-2026-90043
- EPSS 0.14%
- Veröffentlicht 16.09.2026 10:33:40
- Zuletzt bearbeitet 16.09.2026 15:18:26
In the Linux kernel, the following vulnerability has been resolved: zram: fix slot lock bit position on big-endian 64-bit The slot lock is a bit operation on the whole __lock word, which flags and ac_time alias as two u32s. On little-endian the lo...
CVE-2026-90041
- EPSS 0.3%
- Veröffentlicht 16.09.2026 10:33:39
- Zuletzt bearbeitet 21.09.2026 14:17:28
In the Linux kernel, the following vulnerability has been resolved: HID: sony: clean up device list on probe failure sony_input_configured() adds some controllers to sony_device_list before HID core registers their input devices. input_register_dev...
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:33:38
- Zuletzt bearbeitet 21.09.2026 14:17:28
In the Linux kernel, the following vulnerability has been resolved: NFSD: Guard admin state-revocation walks with NFSD_NET_UP Writing to /proc/fs/nfsd/unlock_filesystem, or sending the NFSD_CMD_UNLOCK_FILESYSTEM or NFSD_CMD_UNLOCK_EXPORT netlink co...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:33:38
- Zuletzt bearbeitet 16.09.2026 11:17:17
In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Forcefully invalidate SNP VMSA if its backing gmem page is zapped Wire up a gmem_invalidate_range() call for SNP VMs, and use it to force vCPUs to reload/recheck their gu...