CVE-2026-81011
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:43:01
- Zuletzt bearbeitet 14.09.2026 13:18:55
In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: pass validated element count to package parsers The per-type package parsers are handed the wrong element count. hp_init_bios_package_attribute() validat...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:43:00
- Zuletzt bearbeitet 11.09.2026 20:19:09
In the Linux kernel, the following vulnerability has been resolved: io_uring/query: cap user size passed to copy_struct_to_user io_handle_query_entry() clamps hdr.size for the inbound copy_from_user() but keeps the original user value as usize. cop...
CVE-2026-81010
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:43:00
- Zuletzt bearbeitet 14.09.2026 13:18:55
In the Linux kernel, the following vulnerability has been resolved: io_uring/waitid: honor task_work cancellation io_waitid_cb() may run through the fallback task_work path when task_work_add() can no longer queue work to the originating task. The ...
CVE-2026-81008
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:42:59
- Zuletzt bearbeitet 14.09.2026 13:18:55
In the Linux kernel, the following vulnerability has been resolved: interconnect: Fix use after free in icc_get() and of_icc_get_by_index() In of_icc_get_by_index() and icc_get(), if the dynamic allocation for path->name fails via kasprintf(), the ...
CVE-2026-81006
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:58
- Zuletzt bearbeitet 13.09.2026 07:17:07
In the Linux kernel, the following vulnerability has been resolved: ipmi: Remove all sysfs files on registration failure ipmi_add_smi() creates the nr_users and nr_msgs files before trying to create the maintenance_mode file. If that last creation ...
CVE-2026-81007
- EPSS 0.13%
- Veröffentlicht 11.09.2026 19:42:58
- Zuletzt bearbeitet 14.09.2026 13:18:55
In the Linux kernel, the following vulnerability has been resolved: ipmi: ipmb: validate write message length ipmb_write() read message fields before validating the length byte. A zero or short write can read uninitialized stack bytes. A length s...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:42:57
- Zuletzt bearbeitet 14.09.2026 13:18:54
In the Linux kernel, the following vulnerability has been resolved: ipmi: si: Fix NULL pointer dereference after failed registration try_smi_init() allocates new_smi->si_sm and later calls ipmi_register_smi_mod(), which maps to ipmi_add_smi(). Dur...
CVE-2026-81003
- EPSS 0.29%
- Veröffentlicht 11.09.2026 19:42:56
- Zuletzt bearbeitet 14.09.2026 13:18:54
In the Linux kernel, the following vulnerability has been resolved: net/iucv: filter frames in afiucv_hs_rcv() by ingress device afiucv_hs_rcv() selects a socket from iucv_sk_list by matching four 8-byte name fields in the transport header alone. N...
CVE-2026-81004
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:42:56
- Zuletzt bearbeitet 13.09.2026 07:17:07
In the Linux kernel, the following vulnerability has been resolved: ipmi:msghandler: Cancel work cleanly on an error If an error occurs during startup of an IPMI interface, it may have scheduled work to run. The work needs to be canceled before th...
CVE-2026-81002
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:42:55
- Zuletzt bearbeitet 14.09.2026 13:18:54
In the Linux kernel, the following vulnerability has been resolved: xdp: fix zero-copy frame layout xdp_convert_zc_to_xdp_frame() clones an XSK packet into an order-0 page and advertises PAGE_SIZE as its frame size. It allows the copied frame to o...