CVE-2026-74531
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:27:45
- Zuletzt bearbeitet 23.08.2026 13:16:45
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: hold conn reference in abort_conn_sync() There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that.
CVE-2026-74527
- EPSS 0.16%
- Veröffentlicht 15.08.2026 12:27:43
- Zuletzt bearbeitet 17.08.2026 06:19:49
In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Block VFs from clobbering special CGX PKIND state PF and VF NIX LFs that share a CGX LMAC reuse the same hardware PKIND programming. When HiGig2 or EDSA parsing is en...
- EPSS 0.18%
- Veröffentlicht 15.08.2026 12:27:42
- Zuletzt bearbeitet 19.08.2026 17:21:09
In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: free TX rings on RX allocation failure When RX descriptor ring allocation fails, init_dma_desc_rings() only frees the partially allocated RX rings and returns. The TX r...
CVE-2026-74523
- EPSS 0.5%
- Veröffentlicht 15.08.2026 12:27:40
- Zuletzt bearbeitet 19.08.2026 17:21:09
In the Linux kernel, the following vulnerability has been resolved: qede: sync udp_tunnel ports outside qede_lock in the recovery path A TX timeout on a qede NIC that has VXLAN/GENEVE tunnel ports configured wedges the rtnetlink control plane of th...
CVE-2026-74521
- EPSS 0.16%
- Veröffentlicht 15.08.2026 12:27:39
- Zuletzt bearbeitet 03.10.2026 11:17:39
In the Linux kernel, the following vulnerability has been resolved: ksmbd: use memcmp() to compare ClientGUIDs ClientGUID is a fixed-size binary value and can contain embedded NUL bytes. strncmp() stops comparing at the first NUL byte, so different...
CVE-2026-74522
- EPSS 0.44%
- Veröffentlicht 15.08.2026 12:27:39
- Zuletzt bearbeitet 19.08.2026 17:21:08
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __close_file_table_ids() A ksmbd_file can remain alive after logical close while another session holds a temporary reference obtained through ksmbd_loo...
CVE-2026-74519
- EPSS 0.15%
- Veröffentlicht 15.08.2026 12:27:38
- Zuletzt bearbeitet 19.08.2026 17:21:08
In the Linux kernel, the following vulnerability has been resolved: pinctrl: devicetree: don't free uninitialized dev_name on error path dt_remember_or_free_map() duplicates dev_name for each map entry. If kstrdup_const() fails, dt_free_map() frees...
CVE-2026-74518
- EPSS 0.13%
- Veröffentlicht 15.08.2026 12:27:37
- Zuletzt bearbeitet 19.08.2026 17:21:08
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix list corruption in allocate_file_region_entries() allocate_file_region_entries() tops up resv->region_cache with freshly allocated file_region descriptors. The all...
CVE-2026-74516
- EPSS 0.14%
- Veröffentlicht 15.08.2026 12:27:36
- Zuletzt bearbeitet 19.08.2026 17:21:08
In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active Always update x2APIC MSR intercepts for L1 when AVIC is deactivated, even if L2 is active and KVM is ...
CVE-2026-74515
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:27:35
- Zuletzt bearbeitet 19.08.2026 17:21:08
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Reject adapter interrupt forwarding if already enabled The MPCIFC instruction doesn't allow registering adapter interrupts without first unregistering. So reject an...