CVE-2026-90038
- EPSS 0.42%
- Veröffentlicht 16.09.2026 10:33:37
- Zuletzt bearbeitet 16.09.2026 15:18:26
In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during export state revocation nfsd4_revoke_export_states() has the same use-after-free as nfsd4_revoke_states(): it drops nn->client_lock acros...
CVE-2026-90037
- EPSS 0.46%
- Veröffentlicht 16.09.2026 10:33:36
- Zuletzt bearbeitet 21.09.2026 14:17:27
In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during close_lru reaping An nfs4_openowner left on nn->close_lru after its final CLOSE keeps its last closed stateid in oo_last_closed_stid, hol...
- EPSS 0.19%
- Veröffentlicht 16.09.2026 10:33:35
- Zuletzt bearbeitet 16.09.2026 11:17:16
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix division by zero in get_estimated_bw() get_estimated_bw() divides by link->dpia_bw_alloc_config.bw_granularity, which is zeroed by reset_bw_alloc_struct() and ...
CVE-2026-90036
- EPSS 0.46%
- Veröffentlicht 16.09.2026 10:33:35
- Zuletzt bearbeitet 21.09.2026 14:17:27
In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during blocked-lock reaping A bare lock owner -- its only remaining reference a blocked lock on nn->blocked_locks_lru -- holds a raw pointer to ...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:33:34
- Zuletzt bearbeitet 17.09.2026 10:17:06
In the Linux kernel, the following vulnerability has been resolved: usb: image: mdc800: change kmalloc() to kzalloc() Change the kmalloc() calls in usb_mdc800_init() for irq_urb_buffer and download_urb_buffer to kzalloc(), avoiding potential stack ...
CVE-2026-90032
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:33
- Zuletzt bearbeitet 16.09.2026 15:18:26
In the Linux kernel, the following vulnerability has been resolved: media: usbtv: keep device alive while ALSA card exists The ALSA PCM callbacks store the driver state in pcm->private_data. An open PCM file can outlive USB disconnect because usbtv...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:33:33
- Zuletzt bearbeitet 16.09.2026 11:17:16
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix OOB write in snd_usbmidi_us122l_output() The snd_usbmidi_us122l_output() picks a count of 2 on anything slower than high speed and never relates it to ep->max_...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:33:32
- Zuletzt bearbeitet 17.09.2026 10:17:06
In the Linux kernel, the following vulnerability has been resolved: usb-storage: ene_ub6250: fix race between scan work and probe ene_ub6250_probe() calls usb_stor_probe2(), which starts the usb-storage infrastructure and schedules the delayed scan...
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:33:31
- Zuletzt bearbeitet 03.10.2026 11:17:45
In the Linux kernel, the following vulnerability has been resolved: usb: storage: realtek_cr: fix use-after-free on disconnect realtek_cr_destructor() calls timer_delete() before the chip containing the timer is freed. The timer callback may still ...
CVE-2026-90030
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:33:31
- Zuletzt bearbeitet 03.10.2026 11:17:46
In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: clear forceRM when issuing EndTransfer The forceRM bit of the DEPCMD register controls the behavior of the EndTransfer command used to stop an active transfer. Older DWC...