CVE-2026-74456
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:58
- Zuletzt bearbeitet 19.08.2026 17:21:02
In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error In peak_usb_start(), each RX URB transfer buffer is allocated with kmalloc() and the URB is ...
CVE-2026-74454
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:57
- Zuletzt bearbeitet 19.08.2026 17:21:02
In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size vc4_overflow_mem_work() points BPOA at a 512KB slot inside the 16MB binner BO, but writes the size of the ...
CVE-2026-74453
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:56
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Zero the tile state data array before each BIN job The binner BO is a single 16MB buffer split into 512KB slots that are handed out to jobs at submission time and recycled...
CVE-2026-74450
- EPSS 0.16%
- Veröffentlicht 15.08.2026 12:26:55
- Zuletzt bearbeitet 23.08.2026 13:16:43
In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix pptable use-after-free amdgpu_dpm_get_pp_table() returns a pointer to a driver-owned power table after dropping adev->pm.mutex. The sysfs path then copies from that...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:53
- Zuletzt bearbeitet 18.08.2026 07:16:54
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix QID bit leak in pqm_create_queue() When MES is enabled and amdgpu_amdkfd_alloc_kernel_mem() fails during the first queue creation for a process, pqm_create_queue() ...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:52
- Zuletzt bearbeitet 17.08.2026 06:19:40
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: reject DX_BIND_QUERY without a DX context vmw_cmd_dx_bind_query() unconditionally dereferences sw_context->dx_ctx_node->ctx. Userspace can trigger a NULL pointer deref...
CVE-2026-74446
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:52
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: hold event_mutex while checkpointing CRIU events kfd_criu_checkpoint_events() counts the entries in p->event_idr via kfd_get_num_events(), allocates an array sized to t...
CVE-2026-74444
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:51
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: validate DRAW_PRIMITIVES header size before division vmw_cmd_draw() computes maxnum = (header->size - sizeof(cmd->body)) / sizeof(*decl); where header->size is u32 a...
CVE-2026-74443
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:50
- Zuletzt bearbeitet 19.08.2026 17:21:01
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: bound DMA command body size against suffix pointer vmw_cmd_dma() locates the DMA suffix at (unsigned long) &cmd->body + header->size - sizeof(*suffix) without checki...
- EPSS 0.17%
- Veröffentlicht 15.08.2026 12:26:49
- Zuletzt bearbeitet 23.08.2026 13:16:43
In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: Fix race condition and ordering in port unregistration A synchronization issue exists during port unregistration where pending partner work items can race against...