- EPSS 0.16%
- Veröffentlicht 05.08.2026 08:08:09
- Zuletzt bearbeitet 19.08.2026 17:20:17
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix NVM tag length underflow in TLV parser In the TLV_TYPE_NVM branch of qca_tlv_check_data() the tag loop bound is "while (idx < length - sizeof(struct tlv_type_nv...
- EPSS 0.2%
- Veröffentlicht 05.08.2026 08:08:09
- Zuletzt bearbeitet 19.08.2026 17:20:17
In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: free fib_alias with kfree_rcu() on insert error path fib_table_insert() publishes new_fa into the leaf's fa_list with fib_insert_alias() before calling the fib entry not...
- EPSS 0.16%
- Veröffentlicht 05.08.2026 08:08:08
- Zuletzt bearbeitet 19.08.2026 17:20:16
In the Linux kernel, the following vulnerability has been resolved: wifi: p54: validate RX frame length in p54_rx_eeprom_readback() p54_rx_eeprom_readback() copies the requested EEPROM slice out of a device-supplied readback frame without checking ...
CVE-2026-64570
- EPSS 0.15%
- Veröffentlicht 05.08.2026 08:08:07
- Zuletzt bearbeitet 17.08.2026 05:18:02
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix fils_discovery double free on alloc failure ieee80211_set_fils_discovery() calls kfree_rcu() on the old template before allocating the replacement. If the kzall...
- EPSS 0.16%
- Veröffentlicht 05.08.2026 08:08:07
- Zuletzt bearbeitet 19.08.2026 17:20:16
In the Linux kernel, the following vulnerability has been resolved: mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n On CONFIG_INET=n builds, mpls_valid_fib_dump_req() walks the parsed attribute table itself instead of calling ip_...
CVE-2026-64568
- EPSS 0.12%
- Veröffentlicht 05.08.2026 08:08:06
- Zuletzt bearbeitet 17.08.2026 05:18:02
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix unsol_bcast_probe_resp double free on alloc failure ieee80211_set_unsol_bcast_probe_resp() calls kfree_rcu() on the old template before allocating the replaceme...
CVE-2026-64567
- EPSS 0.12%
- Veröffentlicht 05.08.2026 08:08:06
- Zuletzt bearbeitet 19.08.2026 17:20:16
In the Linux kernel, the following vulnerability has been resolved: btrfs: reject free space cache with more entries than pages When loading a v1 free space cache, __load_free_space_cache() takes num_entries and num_bitmaps straight from the on-dis...
CVE-2026-64566
- EPSS 0.35%
- Veröffentlicht 05.08.2026 08:06:18
- Zuletzt bearbeitet 17.08.2026 05:18:02
In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in iptfs_skb_add_frags() When iptfs_skb_add_frags() copies frag references from the source frag walk into a new SKB, it increments the page...
- EPSS 0.18%
- Veröffentlicht 04.08.2026 06:23:24
- Zuletzt bearbeitet 19.08.2026 17:20:16
In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() The `ims_pcu_process_data()` processes incoming URB data byte by byte. However, it fails to check if the `read_p...
- EPSS 0.5%
- Veröffentlicht 04.08.2026 06:23:23
- Zuletzt bearbeitet 19.08.2026 17:20:16
In the Linux kernel, the following vulnerability has been resolved: sctp: don't free the ASCONF's own transport in DEL-IP processing sctp_process_asconf() caches the transport the ASCONF chunk is processed against in asconf->transport (== chunk->tr...