CVE-2026-72302
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:21
- Zuletzt bearbeitet 17.08.2026 06:18:33
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-control: Use overflow checks in control_update size calc In sof_ipc3_control_update(), the expected_size calculation uses firmware-provided cdata->num_elems in arit...
CVE-2026-72301
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:20
- Zuletzt bearbeitet 17.08.2026 06:18:33
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-control: Fix TOCTOU in bytes_put and bytes_get In sof_ipc3_bytes_put(), the size used for the memcpy is derived from the old data->size already in the buffer, not t...
CVE-2026-72299
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:19
- Zuletzt bearbeitet 23.08.2026 13:16:43
In the Linux kernel, the following vulnerability has been resolved: tipc: restrict socket queue dumps in enqueue tracepoints tipc_sk_enqueue() runs with sk->sk_lock.slock held while the socket is owned by user context. The spinlock protects the bac...
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:19
- Zuletzt bearbeitet 17.08.2026 06:18:32
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: topology: validate vendor array size before parsing sof_parse_token_sets() reads array->size while iterating over topology private data. The loop condition only checks t...
CVE-2026-72298
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:18
- Zuletzt bearbeitet 17.08.2026 06:18:32
In the Linux kernel, the following vulnerability has been resolved: net: qrtr: fix 32-bit integer overflow in qrtr_endpoint_post() qrtr_endpoint_post() validates an incoming packet with if (!size || len != ALIGN(size, 4) + hdrlen) goto err; wh...
CVE-2026-72296
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:17
- Zuletzt bearbeitet 17.08.2026 06:18:32
In the Linux kernel, the following vulnerability has been resolved: net: ife: require ETH_HLEN to be pullable in ife_decode() ife decode may return after making only the outer IFE header and metadata pullable. The caller then passes the decapsulate...
CVE-2026-72297
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:17
- Zuletzt bearbeitet 17.08.2026 06:18:32
In the Linux kernel, the following vulnerability has been resolved: net: atm: reject out-of-range traffic classes in QoS validation Reject ATM traffic classes above ATM_ANYCLASS in check_tp(). SO_ATMQOS stores the supplied QoS after check_qos() suc...
- EPSS 0.22%
- Veröffentlicht 15.08.2026 05:55:11
- Zuletzt bearbeitet 17.08.2026 06:18:31
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Fix GISC refcount leak on AIF enable failure kvm_s390_gisc_register() registers the guest ISC before pinning the guest interrupt forwarding pages and allocating the...
CVE-2026-72288
- EPSS 0.2%
- Veröffentlicht 15.08.2026 05:55:10
- Zuletzt bearbeitet 17.08.2026 06:18:31
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling Hyunwoo Kim reports some really bad races should the following situation occur: - LPI-I is pendin...
CVE-2026-72289
- EPSS 0.21%
- Veröffentlicht 15.08.2026 05:55:10
- Zuletzt bearbeitet 17.08.2026 06:18:31
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Check the interrupt is still ours before migrating it vgic_prune_ap_list() drops both ap_list_lock and irq_lock while migrating an interrupt to another vCPU. Afte...