CVE-2026-74748
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:36:57
- Zuletzt bearbeitet 27.08.2026 06:17:25
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix refcount race between list:set GC and swap __ip_set_put_byindex() resolved the index to a set pointer under RCU, then took ip_set_ref_lock in __ip_set_put() t...
CVE-2026-74747
- EPSS 0.13%
- Veröffentlicht 26.08.2026 14:36:56
- Zuletzt bearbeitet 27.08.2026 06:17:25
In the Linux kernel, the following vulnerability has been resolved: ipvs: revalidate ihl to prevent out-of-bounds access While the outer IP header is already pulled into the skb head, we must be careful and revalidate the embedded headers after rea...
CVE-2026-74746
- EPSS 0.54%
- Veröffentlicht 26.08.2026 14:36:55
- Zuletzt bearbeitet 27.08.2026 06:17:25
In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: publish GC-visible tuple last nf_flow_table_iterate() only treats original-direction tuple nodes as owning entries. Publishing the original node first lets GC...
CVE-2026-74743
- EPSS 0.52%
- Veröffentlicht 26.08.2026 14:36:54
- Zuletzt bearbeitet 03.10.2026 11:17:39
In the Linux kernel, the following vulnerability has been resolved: macvlan: inherit needed_headroom and needed_tailroom from lowerdev macvlan devices inherit hard_header_len from lowerdev during macvlan_init(), but leave needed_headroom and needed...
CVE-2026-74744
- EPSS 0.52%
- Veröffentlicht 26.08.2026 14:36:54
- Zuletzt bearbeitet 27.08.2026 06:17:24
In the Linux kernel, the following vulnerability has been resolved: ipvlan: inherit needed_headroom and needed_tailroom from phy_dev ipvlan devices inherit hard_header_len from phy_dev during ipvlan_init(), but leave needed_headroom and needed_tail...
- EPSS 0.18%
- Veröffentlicht 26.08.2026 14:36:52
- Zuletzt bearbeitet 26.08.2026 15:16:52
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: fix TOCTOU NULL deref on a->goto_chain tcf_action_exec() handles TC_ACT_GOTO_CHAIN by first checking rcu_access_pointer(a->goto_chain) and then calling tcf_acti...
CVE-2026-74739
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:36:51
- Zuletzt bearbeitet 27.08.2026 06:17:23
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: skip hash tables in u32_bind_class() u32_walk() enumerates both struct tc_u_hnode and struct tc_u_knode through the walker callback. u32_bind_class() unconditio...
CVE-2026-74737
- EPSS 0.56%
- Veröffentlicht 26.08.2026 14:36:50
- Zuletzt bearbeitet 27.08.2026 06:17:22
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw-nuss: Fix port_id extraction from SRC TAG On the packet reception path, the ID of the MAC Port on which the packet was received, is embedded in the RX ...
- EPSS 0.16%
- Veröffentlicht 26.08.2026 14:36:49
- Zuletzt bearbeitet 21.09.2026 14:17:20
In the Linux kernel, the following vulnerability has been resolved: l2tp: fix tunnel and session refcount leak on seq_file release In pppol2tp_proc_open() and l2tp_dfs_seq_open(), iteration state (pd->tunnel and pd->session) is kept in seq_file pri...
CVE-2026-74736
- EPSS 0.14%
- Veröffentlicht 26.08.2026 14:36:49
- Zuletzt bearbeitet 27.08.2026 06:17:22
In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_bpf: reject dev-bound programs bound to a different device cls_bpf_prog_from_efd() obtained a SCHED_CLS program via bpf_prog_get_type_dev() but never verified that a...