- EPSS 0.15%
- Veröffentlicht 04.09.2026 16:48:23
- Zuletzt bearbeitet 04.09.2026 17:16:58
In the Linux kernel, the following vulnerability has been resolved: ntfs3: Allocate iomap inline_data using alloc_page This fixes a BUG reported in iomap_write_end_inline: iomap_inline_data_valid checks that the inline_data fits within a page. If t...
- EPSS 0.16%
- Veröffentlicht 04.09.2026 16:48:15
- Zuletzt bearbeitet 04.09.2026 17:16:58
In the Linux kernel, the following vulnerability has been resolved: alpha/PCI: Add security_locked_down() check to pci_mmap_resource() Currently, Alpha's pci_mmap_resource() does not check security_locked_down(LOCKDOWN_PCI_ACCESS) before allowing u...
- EPSS 0.15%
- Veröffentlicht 04.09.2026 16:48:11
- Zuletzt bearbeitet 04.09.2026 17:16:58
In the Linux kernel, the following vulnerability has been resolved: tipc: avoid busy looping in tipc_exit_net() Blamed commit introduced a busy-wait loop in tipc_exit_net() to wait for pending UDP bearer cleanup works to complete: while (at...
- EPSS 0.16%
- Veröffentlicht 04.09.2026 16:48:08
- Zuletzt bearbeitet 04.09.2026 17:16:58
In the Linux kernel, the following vulnerability has been resolved: bpf: Add missing access_ok call to copy_user_syms As reported by sashiko we use __get_user without prior access_ok call on the user space pointer. Adding the missing call for the w...
- EPSS 0.16%
- Veröffentlicht 04.09.2026 15:55:18
- Zuletzt bearbeitet 04.09.2026 16:18:15
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp rxe_qp_from_attr() handles IB_QP_MAX_DEST_RD_ATOMIC outside the IB_QP_STATE path, so it holds no state_lock and ru...
- EPSS 0.18%
- Veröffentlicht 04.09.2026 15:55:17
- Zuletzt bearbeitet 04.09.2026 16:18:15
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix OOB in free_rd_atomic_resources() free_rd_atomic_resources() iterates using qp->attr.max_dest_rd_atomic. Updating max_dest_rd_atomic before freeing the old array can ...
- EPSS 0.16%
- Veröffentlicht 04.09.2026 15:55:16
- Zuletzt bearbeitet 04.09.2026 16:18:15
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix usage of page_frag_cache nvme uses page_frag_cache to preallocate PDU for each preallocated request of block device. Block devices are created in parallel threads, co...
- EPSS 0.16%
- Veröffentlicht 04.09.2026 15:55:15
- Zuletzt bearbeitet 03.10.2026 11:17:40
In the Linux kernel, the following vulnerability has been resolved: usb: xhci: bail out of setup if the controller is inaccessible xhci_gen_setup() locates the operational registers using the capability length read from the very first register: x...
- EPSS 0.15%
- Veröffentlicht 04.09.2026 15:55:14
- Zuletzt bearbeitet 21.09.2026 14:17:21
In the Linux kernel, the following vulnerability has been resolved: fuse: fix race between interrupt and resend After commit f8fce75fedf7 ("fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req") the WARN_ON(!list_empty(&req->intr_entry...
- EPSS 0.15%
- Veröffentlicht 04.09.2026 15:55:13
- Zuletzt bearbeitet 11.09.2026 10:16:52
In the Linux kernel, the following vulnerability has been resolved: fuse: fix missing barrier when checking io-uring readiness fuse_block_alloc() reads fch->initialized and then fch->io_uring. fch->io_uring is set before fch->initialized, ordered b...