CVE-2025-36428
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:27:26
- Zuletzt bearbeitet 05.02.2026 19:39:41
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an authenticated user to cause a denial of service due to improper neutralization of special elements in data query logic when the RPSCA...
CVE-2025-36442
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:18:24
- Zuletzt bearbeitet 05.02.2026 19:39:37
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query with XML columns.
CVE-2026-23014
- EPSS 0.02%
- Veröffentlicht 28.01.2026 14:24:44
- Zuletzt bearbeitet 27.04.2026 14:16:29
In the Linux kernel, the following vulnerability has been resolved: perf: Ensure swevent hrtimer is properly destroyed With the change to hrtimer_try_to_cancel() in perf_swevent_cancel_hrtimer() it appears possible for the hrtimer to still be activ...
CVE-2026-23013
- EPSS 0.02%
- Veröffentlicht 25.01.2026 14:36:26
- Zuletzt bearbeitet 03.04.2026 14:16:22
In the Linux kernel, the following vulnerability has been resolved: net: octeon_ep_vf: fix free_irq dev_id mismatch in IRQ rollback octep_vf_request_irqs() requests MSI-X queue IRQs with dev_id set to ioq_vector. If request_irq() fails part-way, th...
CVE-2026-23012
- EPSS 0.02%
- Veröffentlicht 25.01.2026 14:36:25
- Zuletzt bearbeitet 25.03.2026 19:49:02
In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: remove call_control in inactive contexts If damon_call() is executed against a DAMON context that is not running, the function returns error while keeping the damon_...
CVE-2026-23011
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:24
- Zuletzt bearbeitet 25.03.2026 19:51:11
In the Linux kernel, the following vulnerability has been resolved: ipv4: ip_gre: make ipgre_header() robust Analog to commit db5b4e39c4e6 ("ip6_gre: make ip6gre_header() robust") Over the years, syzbot found many ways to crash the kernel in ipgre...
CVE-2026-23010
- EPSS 0.01%
- Veröffentlicht 25.01.2026 14:36:23
- Zuletzt bearbeitet 27.04.2026 14:16:29
In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix use-after-free in inet6_addr_del(). syzbot reported use-after-free of inet6_ifaddr in inet6_addr_del(). [0] The cited commit accidentally moved ipv6_del_addr() for mngtm...
CVE-2026-23009
- EPSS 0.02%
- Veröffentlicht 25.01.2026 14:36:22
- Zuletzt bearbeitet 25.03.2026 19:53:47
In the Linux kernel, the following vulnerability has been resolved: xhci: sideband: don't dereference freed ring when removing sideband endpoint xhci_sideband_remove_endpoint() incorrecly assumes that the endpoint is running and has a valid transfe...
CVE-2026-23008
- EPSS 0.02%
- Veröffentlicht 25.01.2026 14:36:21
- Zuletzt bearbeitet 25.03.2026 19:54:20
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix KMS with 3D on HW version 10 HW version 10 does not have GB Surfaces so there is no backing buffer for surface backed FBs. This would result in a nullptr dereferenc...
CVE-2026-23007
- EPSS 0.02%
- Veröffentlicht 25.01.2026 14:36:20
- Zuletzt bearbeitet 25.03.2026 19:21:49
In the Linux kernel, the following vulnerability has been resolved: block: zero non-PI portion of auto integrity buffer The auto-generated integrity buffer for writes needs to be fully initialized before being passed to the underlying block device,...