CVE-2026-23354
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:38
- Zuletzt bearbeitet 24.04.2026 19:15:42
In the Linux kernel, the following vulnerability has been resolved: x86/fred: Correct speculative safety in fred_extint() array_index_nospec() is no use if the result gets spilled to the stack, as it makes the believed safe-under-speculation value ...
CVE-2026-23352
- EPSS 0.01%
- Veröffentlicht 25.03.2026 10:27:37
- Zuletzt bearbeitet 24.04.2026 17:59:40
In the Linux kernel, the following vulnerability has been resolved: x86/efi: defer freeing of boot services memory efi_free_boot_services() frees memory occupied by EFI_BOOT_SERVICES_CODE and EFI_BOOT_SERVICES_DATA using memblock_free_late(). Ther...
CVE-2026-23351
- EPSS 0.01%
- Veröffentlicht 25.03.2026 10:27:36
- Zuletzt bearbeitet 24.04.2026 18:02:24
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: split gc into unlink and reclaim phase Yiming Qian reports Use-after-free in the pipapo set type: Under a large number of expired elements, commit-time...
CVE-2026-23348
- EPSS 0.01%
- Veröffentlicht 25.03.2026 10:27:34
- Zuletzt bearbeitet 24.04.2026 18:08:42
In the Linux kernel, the following vulnerability has been resolved: cxl: Fix race of nvdimm_bus object when creating nvdimm objects Found issue during running of cxl-translate.sh unit test. Adding a 3s sleep right before the test seems to make the ...
CVE-2026-23346
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:33
- Zuletzt bearbeitet 24.04.2026 18:15:05
In the Linux kernel, the following vulnerability has been resolved: arm64: io: Extract user memory type in ioremap_prot() The only caller of ioremap_prot() outside of the generic ioremap() implementation is generic_access_phys(), which passes a 'pg...
CVE-2026-23347
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:33
- Zuletzt bearbeitet 24.04.2026 18:10:38
In the Linux kernel, the following vulnerability has been resolved: can: usb: f81604: correctly anchor the urb in the read bulk callback When submitting an urb, that is using the anchor pattern, it needs to be anchored before submitting it otherwis...
CVE-2026-23345
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:32
- Zuletzt bearbeitet 24.04.2026 18:17:11
In the Linux kernel, the following vulnerability has been resolved: arm64: gcs: Do not set PTE_SHARED on GCS mappings if FEAT_LPA2 is enabled When FEAT_LPA2 is enabled, bits 8-9 of the PTE replace the shareability attribute with bits 50-51 of the o...
CVE-2026-23343
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:31
- Zuletzt bearbeitet 23.04.2026 21:14:13
In the Linux kernel, the following vulnerability has been resolved: xdp: produce a warning when calculated tailroom is negative Many ethernet drivers report xdp Rx queue frag size as being the same as DMA write size. However, the only user of this ...
CVE-2026-23344
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:31
- Zuletzt bearbeitet 24.04.2026 18:17:48
In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix use-after-free on error path In the error path of sev_tsm_init_locked(), the code dereferences 't' after it has been freed with kfree(). The pr_err() statement at...
CVE-2026-23339
- EPSS 0.02%
- Veröffentlicht 25.03.2026 10:27:28
- Zuletzt bearbeitet 23.04.2026 21:17:17
In the Linux kernel, the following vulnerability has been resolved: nfc: nci: free skb on nci_transceive early error paths nci_transceive() takes ownership of the skb passed by the caller, but the -EPROTO, -EINVAL, and -EBUSY error paths return wit...