CVE-2026-23243
- EPSS 0.02%
- Veröffentlicht 18.03.2026 10:05:05
- Zuletzt bearbeitet 02.04.2026 15:16:26
In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data_len in ib_umad_write ib_umad_write computes data_len from user-controlled count and the MAD header sizes. With a mismatched user MAD header size and...
- EPSS 0.04%
- Veröffentlicht 18.03.2026 10:05:04
- Zuletzt bearbeitet 18.03.2026 14:52:44
In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop triggered by zero-sized ATTR_LIST We found an infinite loop bug in the ntfs3 file system that can lead to a Denial-of-Service (DoS) condition. A malfo...
- EPSS 0.04%
- Veröffentlicht 18.03.2026 10:05:02
- Zuletzt bearbeitet 18.03.2026 14:52:44
In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: check return value of indx_find to avoid infinite loop We found an infinite loop bug in the ntfs3 file system that can lead to a Denial-of-Service (DoS) condition. A ma...
- EPSS 0.04%
- Veröffentlicht 18.03.2026 10:05:01
- Zuletzt bearbeitet 18.03.2026 14:52:44
In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata We found an infinite loop bug in the ntfs3 file system that can lead to a Denial-of-Service (DoS) cond...
CVE-2026-3856
- EPSS 0.01%
- Veröffentlicht 17.03.2026 22:20:14
- Zuletzt bearbeitet 19.03.2026 14:20:39
IBM Db2 Recovery Expert for Linux, UNIX and Windows 5.5 IF 2 could allow an attacker to modify or corrupt data due to an insecure mechanism used for verifying the integrity of the data during transmission.
- EPSS 0.03%
- Veröffentlicht 17.03.2026 09:11:04
- Zuletzt bearbeitet 18.03.2026 10:16:25
In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and listxattr() are missing from the audit read class. Calling getxattrat() or listxattrat() on a file to r...
- EPSS 0.04%
- Veröffentlicht 17.03.2026 09:11:03
- Zuletzt bearbeitet 18.03.2026 17:16:04
In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to change attributes class fchmodat2(), introduced in version 6.6 is currently not in the change attribute class of audit. Calling fchmodat2() to change a fi...
CVE-2026-23240
- EPSS 0.07%
- Veröffentlicht 10.03.2026 17:28:27
- Zuletzt bearbeitet 02.04.2026 15:16:25
In the Linux kernel, the following vulnerability has been resolved: tls: Fix race condition in tls_sw_cancel_work_tx() This issue was discovered during a code audit. After cancel_delayed_work_sync() is called from tls_sk_proto_close(), tx_work_han...
CVE-2026-23239
- EPSS 0.02%
- Veröffentlicht 10.03.2026 17:28:26
- Zuletzt bearbeitet 02.04.2026 15:16:25
In the Linux kernel, the following vulnerability has been resolved: espintcp: Fix race condition in espintcp_close() This issue was discovered during a code audit. After cancel_work_sync() is called from espintcp_close(), espintcp_tx_work() can st...
CVE-2026-25702
- EPSS 0.06%
- Veröffentlicht 05.03.2026 07:16:13
- Zuletzt bearbeitet 09.03.2026 18:31:36
A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5 breaks nftables, causing firewall rules applied via nftables to not be effective.This issue affects SUSE Linux Enterprise Server: from 9e6d9d4601768c75f...