CVE-2026-89478
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:43:34
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: drop a chunk if its transport was removed sctp_rcv() resolves the transport once per packet and leaves it in chunk->transport. The lookup reference, or the one sctp_add_backl...
CVE-2026-89476
- EPSS 0.6%
- Veröffentlicht 11.09.2026 19:43:33
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->outcnt underflow on duplicate RECONF responses A cached RECONF chunk may contain more than one request parameter. A duplicate response can therefore find and pro...
CVE-2026-89477
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:43:33
- Zuletzt bearbeitet 14.09.2026 13:19:04
In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref on untransmitted RECONF completion sctp_process_strreset_outreq(), sctp_process_strreset_addstrm_out() and sctp_process_strreset_resp() complete a pending stre...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:32
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq24257: fix use-after-free on remove The STAT-pin interrupt is devm-managed, so it stays armed until the devm cleanup that runs after remove() returns. remove() can...
- EPSS 0.2%
- Veröffentlicht 11.09.2026 19:43:31
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq25890: Fix power_supply reference leak bq25890_fw_probe() acquires a reference to a secondary charger using power_supply_get_by_name(), but the reference is not re...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:43:31
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: bq256xx: drain usb_work before freeing the charger The USB-PHY notifier queues usb_work, whose handler calls power_supply_changed(bq->charger). The reset devm action...
CVE-2026-89472
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:30
- Zuletzt bearbeitet 13.09.2026 07:17:10
In the Linux kernel, the following vulnerability has been resolved: power: supply: charger-manager: register regulators before exposing sysfs charger_manager_remove() and the err_reg_extcon probe error path free each charger regulator with regulato...
CVE-2026-89470
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:43:29
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: cros_usbpd: Limit port counts to EC_USB_PD_MAX_PORTS Currently the cros_usbpd-charger driver probe iterates based on raw charger port count returned by the embedded ...
CVE-2026-89471
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:43:29
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: cros_usbpd-charger: bound the EC-reported port count cros_usbpd_charger_probe() reads two port counts from the EC and uses one of them, num_charger_ports, as the loo...
CVE-2026-89469
- EPSS 0.14%
- Veröffentlicht 11.09.2026 19:43:28
- Zuletzt bearbeitet 14.09.2026 13:19:03
In the Linux kernel, the following vulnerability has been resolved: power: supply: lp8727: fix use-after-free in lp8727_release_irq() lp8727_isr_func(), the threaded IRQ handler, is the only caller that arms pchg->work via schedule_delayed_work(). ...