public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-53021][MODERATE 7.0] scsi: target: core: Fix integer overflow in UNMAP bounds check [ Upstream
 2026-06-26 18:11 UTC 

[CVE-2026-53089][MODERATE 7.0] bpf: Fix use-after-free in offloaded map/prog info fill [ Upstream
 2026-06-26 18:06 UTC 

[CVE-2026-52953][MODERATE 7.0] iommu/vt-d: Fix oops due to out of scope access
 2026-06-26 17:53 UTC 

[CVE-2026-52950][IMPORTANT] drm/xe/dma-buf: fix UAF with retry loop
 2026-06-26 17:45 UTC 

[CVE-2026-53090][IMPORTANT] bpf: Fix ld_{abs,ind} failure path analysis in subprogs [ Upstream
 2026-06-26 17:31 UTC 

[CVE-2026-53028][LOW] usb: typec: Fix error pointer dereference [ Upstream
 2026-06-26 16:29 UTC 

[CVE-2026-53063][LOW] dm cache: fix write hang in passthrough mode [ Upstream
 2026-06-26 16:24 UTC 

[CVE-2026-53052][MODERATE REGULAR] ASoC: qcom: qdsp6: topology: check widget type before accessing data [ Upstream
 2026-06-26 16:19 UTC 

[CVE-2026-53104][LOW] wifi: mt76: Fix memory leak destroying device [ Upstream
 2026-06-26 15:55 UTC 

[CVE-2026-53038][MODERATE REGULAR] ima_fs: Correctly create securityfs files for unsupported hash algos [ Upstream
 2026-06-26 15:42 UTC 

[CVE-2026-53108][MODERATE REGULAR] powerpc/64s: Fix unmap race with PMD migration entries [ Upstream
 2026-06-26 15:15 UTC 

[CVE-2026-52962][LOW] ceph: fix a buffer leak in __ceph_setxattr()
 2026-06-26 15:02 UTC 

[CVE-2026-52948][LOW] i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl
 2026-06-26 14:57 UTC 

[CVE-2026-52995][MODERATE REGULAR] net/rds: zero per-item info buffer before handing it to visitors [ Upstream
 2026-06-26 14:53 UTC 

[CVE-2026-52946][MODERATE REGULAR] fs/fcntl: fix SOFTIRQ-unsafe lock order in fasync signaling
 2026-06-26 14:46 UTC 

[CVE-2026-53067][MODERATE 7.0] PCI: endpoint: pci-ep-msi: Fix error unwind and prevent double alloc [ Upstream
 2026-06-26 14:41 UTC 

[CVE-2026-53032][MODERATE REGULAR] bpf: Fix NULL deref in map_kptr_match_type for scalar regs [ Upstream
 2026-06-26 14:34 UTC 

[CVE-2026-52952][IMPORTANT] iommu: Fix WARN_ON in __iommu_group_set_domain_nofail() due to reset
 2026-06-26 14:24 UTC 

[CVE-2026-53113][LOW] wifi: ath11k: fix memory leaks in beacon template setup [ Upstream
 2026-06-26 13:03 UTC 

[CVE-2026-53114][MODERATE REGULAR] perf/amd/ibs: Avoid calling perf_allow_kernel() from the IBS NMI handler [ Upstream
 2026-06-26 12:57 UTC 

[CVE-2026-52991][IMPORTANT] sched/psi: fix race between file release and pressure write [ Upstream
 2026-06-26 12:48 UTC 

[CVE-2026-53085][IMPORTANT] bpf: fix mm lifecycle in open-coded task_vma iterator [ Upstream
 2026-06-26 12:39 UTC 

[CVE-2026-53051][LOW] PCI: tegra194: Fix CBB timeout caused by DBI access before core power-on [ Upstream
 2026-06-26 12:33 UTC 

[CVE-2026-53077][MODERATE 7.0] net/rds: Restrict use of RDS/IB to the initial network namespace [ Upstream
 2026-06-26 12:27 UTC 

[CVE-2026-52981][MODERATE 7.0] neigh: let neigh_xmit take skb ownership [ Upstream
 2026-06-26 12:04 UTC 

[CVE-2026-53042][LOW] fwctl: Fix class init ordering to avoid NULL pointer dereference on device removal [ Upstream
 2026-06-26 11:39 UTC 

[CVE-2026-52990][MODERATE REGULAR] fsnotify: fix inode reference leak in fsnotify_recalc_mask() [ Upstream
 2026-06-26 11:27 UTC 

[CVE-2026-53060][LOW] dm cache metadata: fix memory leak on metadata abort retry [ Upstream
 2026-06-26 11:15 UTC 

[CVE-2026-53163][MODERATE REGULAR] locking/rtmutex: Skip remove_waiter() when waiter is not enqueued
 2026-06-26 11:03 UTC 

[CVE-2026-53242][MODERATE 7.0] ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams [ Upstream
 2026-06-26 10:32 UTC 

[CVE-2026-53149][MODERATE REGULAR] thunderbolt: Bound root directory content to block size
 2026-06-26  9:22 UTC 

[CVE-2026-53180][MODERATE REGULAR] timers/migration: Fix livelock in tmigr_handle_remote_up()
 2026-06-26  8:59 UTC 

[CVE-2026-53145][IMPORTANT] drm/gem: Try to fix change_handle ioctl, attempt 4
 2026-06-26  8:48 UTC 

[CVE-2026-53235][MODERATE 7.0] net: add pskb_may_pull() to skb_gro_receive_list() [ Upstream
 2026-06-26  8:37 UTC 

[CVE-2026-53211][MODERATE REGULAR] netfilter: nft_meta_bridge: fix stale stack leak via IIFHWADDR register
 2026-06-26  8:22 UTC 

[CVE-2026-53147][MODERATE 7.0] thunderbolt: Validate XDomain request packet size before type cast
 2026-06-26  8:10 UTC 

[CVE-2026-53142][LOW] drm/xe/display: fix oops in suspend/shutdown without display
 2026-06-26  7:52 UTC 

[CVE-2026-53140][LOW] drm/v3d: Fix vaddr leak when indirect CSD has zeroed workgroups
 2026-06-26  7:51 UTC 

[CVE-2026-53153][IMPORTANT] mm/list_lru: drain before clearing xarray entry on reparent
 2026-06-26  7:43 UTC 

[CVE-2026-53277][IMPORTANT] KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation
 2026-06-26  7:42 UTC 

[CVE-2026-53162][MODERATE 7.0] memcg: use round-robin victim selection in refill_stock
 2026-06-26  7:30 UTC 

[CVE-2026-53210][LOW] tee: shm: fix shm leak in register_shm_helper()
 2026-06-26  7:18 UTC 

[CVE-2026-53157][MODERATE 7.0] net: phonet: free phonet_device after RCU grace period
 2026-06-26  1:18 UTC 

[CVE-2026-53233][MODERATE 7.0] netdev: fix double-free in netdev_nl_bind_rx_doit() [ Upstream
 2026-06-26  1:04 UTC 

[CVE-2026-53200][MODERATE 7.0] KVM: arm64: nv: Fix handling of XN[0] when !FEAT_XNX
 2026-06-26  0:48 UTC 

[CVE-2026-53203][IMPORTANT] accel/ivpu: Add buffer overflow check in MS get_info_ioctl
 2026-06-26  0:38 UTC 

[CVE-2026-53205][MODERATE REGULAR] accel/ivpu: Add bounds checks for firmware log indices
 2026-06-26  0:33 UTC 

[CVE-2026-53244][MODERATE 7.0] VFS: fix possible failure to unlock in nfsd4_create_file() [ Upstream
 2026-06-26  0:19 UTC 

[CVE-2026-53150][MODERATE 7.0] thunderbolt: Reject zero-length property entries in validator
 2026-06-26  0:04 UTC 

[CVE-2026-53148][IMPORTANT] thunderbolt: Clamp XDomain response data copy to allocation size
 2026-06-25 23:24 UTC 

[CVE-2026-53133][MODERATE 7.0] RDMA/umem: Fix truncation for block sizes >= 4G [ Upstream
 2026-06-25 23:17 UTC 

[CVE-2026-53230][MODERATE 7.0] net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list [ Upstream
 2026-06-25 21:53 UTC 

[CVE-2026-53143][IMPORTANT] drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11
 2026-06-25 21:42 UTC 

[CVE-2026-53184][MODERATE 7.0] udp: clear skb->dev before running a sockmap verdict
 2026-06-25 21:30 UTC 

[CVE-2026-53229][MODERATE 7.0] net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure [ Upstream
 2026-06-25 21:25 UTC 

[CVE-2026-52993][IMPORTANT] tipc: fix double-free in tipc_buf_append() [ Upstream
 2026-06-25 21:10 UTC 

[CVE-2026-52971][MODERATE 7.0] net: ena: PHC: Fix potential use-after-free in get_timestamp
 2026-06-25 21:04 UTC 

[CVE-2026-52969][IMPORTANT] KVM: Reject wrapped offset in kvm_reset_dirty_gfn()
 2026-06-25 20:59 UTC 

[CVE-2026-52947][MODERATE 7.0] net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove [ Upstream
 2026-06-25 20:51 UTC 

[CVE-2026-52973][IMPORTANT] futex: Drop CLONE_THREAD requirement for private default hash alloc [ Upstream
 2026-06-25 20:35 UTC 

[CVE-2026-53117][MODERATE 7.0] s390/cio: use generic driver_override infrastructure [ Upstream
 2026-06-25 20:31 UTC 

[CVE-2026-53072][MODERATE 7.0] Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER [ Upstream
 2026-06-25 20:24 UTC 

[CVE-2026-52986][MODERATE 7.0] netfilter: nf_conntrack_sip: don't use simple_strtoul [ Upstream
 2026-06-25 20:14 UTC 

[CVE-2026-53006][IMPORTANT] ipv6: fix possible UAF in icmpv6_rcv() [ Upstream
 2026-06-25 19:36 UTC 

[CVE-2026-53070][MODERATE REGULAR] sctp: disable BH before calling udp_tunnel_xmit_skb() [ Upstream
 2026-06-25 19:17 UTC 

[CVE-2026-53034][MODERATE 7.0] bpf, sockmap: Fix af_unix null-ptr-deref in proto update [ Upstream
 2026-06-25 19:12 UTC 

[CVE-2026-53002][IMPORTANT] netfilter: conntrack: remove sprintf usage [ Upstream
 2026-06-25 18:48 UTC 

[CVE-2026-53012][MODERATE REGULAR] nexthop: fix IPv6 route referencing IPv4 nexthop [ Upstream
 2026-06-25 18:26 UTC 

[CVE-2026-53044][MODERATE REGULAR] soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric lookup tables [ Upstream
 2026-06-25 18:20 UTC 

[CVE-2026-53080][LOW] net/sched: cls_fw: fix NULL dereference of "old" filters before change() [ Upstream
 2026-06-25 18:07 UTC 

[CVE-2026-53105][MODERATE REGULAR] wifi: mt76: mt7925: prevent NULL vif dereference in mt7925_mac_write_txwi [ Upstream
 2026-06-25 17:59 UTC 

[CVE-2026-53078][MODERATE 7.0] bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops [ Upstream
 2026-06-25 17:46 UTC 

[CVE-2026-53003][MODERATE REGULAR] pppoe: drop PFC frames [ Upstream
 2026-06-25 17:36 UTC 

[CVE-2026-53259][MODERATE 7.0] ipv6: anycast: insert aca into global hash under idev->lock [ Upstream
 2026-06-25 16:32 UTC 

[CVE-2026-53001][LOW] netfilter: xtables: restrict several matches to inet family [ Upstream
 2026-06-25 15:18 UTC 

[CVE-2026-53255][MODERATE REGULAR] Bluetooth: MGMT: validate advertising TLV before type checks [ Upstream
 2026-06-25 15:14 UTC 

[CVE-2026-52976][IMPORTANT] drm/xe: Fix error cleanup in xe_exec_queue_create_ioctl() [ Upstream
 2026-06-25 15:10 UTC 

[CVE-2026-53267][IMPORTANT] netfilter: nft_ct: bail out on template ct in get eval [ Upstream
 2026-06-25 15:06 UTC 

[CVE-2026-52994][MODERATE REGULAR] vsock/virtio: fix MSG_ZEROCOPY pinned-pages accounting [ Upstream
 2026-06-25 15:05 UTC 

[CVE-2026-53264][MODERATE 7.0] net/sched: act_api: use RCU with deferred freeing for action lifecycle [ Upstream
 2026-06-25 15:01 UTC 

[CVE-2026-53033][IMPORTANT] bpf, sockmap: Take state lock for af_unix iter [ Upstream
 2026-06-25 14:58 UTC 

[CVE-2026-53265][MODERATE 7.0] dm cache policy smq: check allocation under invalidate lock [ Upstream
 2026-06-25 14:57 UTC 

[CVE-2026-53269][MODERATE REGULAR] netfilter: synproxy: add mutex to guard hook reference counting [ Upstream
 2026-06-25 14:52 UTC 

[CVE-2026-53047][MODERATE 7.0] efi/capsule-loader: fix incorrect sizeof in phys array reallocation [ Upstream
 2026-06-25 14:48 UTC 

[CVE-2026-53239][MODERATE 7.0] xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() [ Upstream
 2026-06-25 14:47 UTC 

[CVE-2026-53263][MODERATE REGULAR] 6lowpan: fix off-by-one in multicast context address compression [ Upstream
 2026-06-25 14:43 UTC 

[CVE-2026-53254][MODERATE 7.0] Bluetooth: RFCOMM: validate skb length in MCC handlers [ Upstream
 2026-06-25 14:38 UTC 

[CVE-2026-53225][MODERATE REGULAR] sctp: fix uninit-value in __sctp_rcv_asconf_lookup() [ Upstream
 2026-06-25 14:34 UTC 

[CVE-2026-53272][MODERATE 7.0] erofs: fix use-after-free on sbi->sync_decompress [ Upstream
 2026-06-25 14:29 UTC 

[CVE-2026-53049][MODERATE 7.0] gfs2: add some missing log locking [ Upstream
 2026-06-25 14:24 UTC 

[CVE-2026-53268][MODERATE 7.0] netfilter: conntrack_irc: fix possible out-of-bounds read [ Upstream
 2026-06-25 14:23 UTC 

[CVE-2026-53252][LOW] Bluetooth: fix memory leak in error path of hci_alloc_dev() [ Upstream
 2026-06-25 14:18 UTC 

[CVE-2026-53031][MODERATE 7.0] bpf: Validate node_id in arena_alloc_pages() [ Upstream
 2026-06-25 14:15 UTC 

[CVE-2026-53246][IMPORTANT] sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing [ Upstream
 2026-06-25 14:13 UTC 

[CVE-2026-52966][MODERATE REGULAR] drm: Replace old pointer to new idr
 2026-06-25 14:09 UTC 

[CVE-2026-53253][MODERATE 7.0] Bluetooth: bnep: reject short frames before parsing [ Upstream
 2026-06-25 14:08 UTC 

[CVE-2026-53251][LOW] Bluetooth: ISO: Fix not releasing hdev reference on iso_conn_big_sync [ Upstream
 2026-06-25 14:04 UTC 

[CVE-2026-53000][IMPORTANT] netfilter: nat: use kfree_rcu to release ops [ Upstream
 2026-06-25 14:00 UTC 

[CVE-2026-53261][LOW] devlink: Release nested relation on devlink free [ Upstream
 2026-06-25 13:58 UTC 

[CVE-2026-53258][LOW] wifi: fix leak if split 6 GHz scanning fails [ Upstream
 2026-06-25 13:55 UTC 

[CVE-2026-53266][IMPORTANT] netfilter: bridge: make ebt_snat ARP rewrite writable [ Upstream
 2026-06-25 13:51 UTC 

[CVE-2026-53245][MODERATE REGULAR] net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr [ Upstream
 2026-06-25 13:46 UTC 

[CVE-2026-53274][LOW] net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS
 2026-06-25 13:42 UTC 

[CVE-2026-53007][LOW] ice: fix potential NULL pointer deref in error path of ice_set_ringparam() [ Upstream
 2026-06-25 13:39 UTC 

[CVE-2026-53241][MODERATE REGULAR] ALSA: seq: dummy: fix UMP event stack overread [ Upstream
 2026-06-25 13:34 UTC 

[CVE-2026-53228][MODERATE 7.0] ipv6: sit: reload inner IPv6 header after GSO offloads [ Upstream
 2026-06-25 13:31 UTC 

[CVE-2026-53227][MODERATE REGULAR] net: openvswitch: fix possible kfree_skb of ERR_PTR [ Upstream
 2026-06-25 13:26 UTC 

[CVE-2026-53232][MODERATE 7.0] net: phy: clean the sfp upstream if phy probing fails Sashiko reported that we don't call sfp_bus_del_upstream() in the probe failure path, so let's add it, otherwise the sfp-bus is left with a dangling 'upstream' field, that may be used later on during SFP events. This issue existed before the generic phylib sfp support, back when drivers were calling phy_sfp_probe themselves. Reviewed-by: Nicolai Buchwitz <[email protected]> Fixes: 298e54f ("net: phy: add core phylib sfp support") Signed-off-by: Maxime Chevallier <[email protected]> Link: https://patch.msgid.link/[email protected] Signed-off-by: Jakub Kicinski <[email protected]>
 2026-06-25 13:21 UTC 

[CVE-2026-53249][MODERATE 7.0] ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options [ Upstream
 2026-06-25 13:18 UTC 

[CVE-2026-53102][LOW] wifi: mt76: Fix memory leak after mt76_connac_mcu_alloc_sta_req() [ Upstream
 2026-06-25 13:18 UTC 

[CVE-2026-53270][MODERATE 7.0] ipvs: clear the svc scheduler ptr early on edit [ Upstream
 2026-06-25 13:13 UTC 

[CVE-2026-53250][MODERATE 7.0] xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() [ Upstream
 2026-06-25 13:09 UTC 

[CVE-2026-53257][MODERATE REGULAR] wifi: cfg80211: enforce HE/EHT cap/oper consistency [ Upstream
 2026-06-25 13:05 UTC 

[CVE-2026-52965][LOW] drm/ttm: Fix ttm_bo_swapout() infinite LRU walk on swapout failure
 2026-06-25 13:03 UTC 

[CVE-2026-53256][MODERATE 7.0] Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() [ Upstream
 2026-06-25 13:02 UTC 

[CVE-2026-53116][MODERATE 7.0] s390/ap: use generic driver_override infrastructure [ Upstream
 2026-06-25 12:57 UTC 

[CVE-2026-53275][MODERATE 7.0] ipv6: mcast: Fix use-after-free when processing MLD queries
 2026-06-25 12:57 UTC 

[CVE-2026-53260][MODERATE 7.0] tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). [ Upstream
 2026-06-25 12:51 UTC 

[CVE-2026-53050][MODERATE 7.0] quota: Fix race of dquot_scan_active() with quota deactivation [ Upstream
 2026-06-25 12:50 UTC 

[CVE-2026-52964][MODERATE REGULAR] ALSA: usb-audio: Bound MIDI 2.0 endpoint descriptor scans
 2026-06-25 12:41 UTC 

[CVE-2026-53218][MODERATE 7.0] netfilter: nft_exthdr: fix register tracking for F_PRESENT flag [ Upstream
 2026-06-25 11:58 UTC 

[CVE-2026-53188][MODERATE 7.0] RDMA/core: Validate the passed in fops for ib_get_ucaps()
 2026-06-25 11:50 UTC 

[CVE-2026-53193][MODERATE 7.0] ALSA: timer: Forcibly close timer instances at closing
 2026-06-25 11:45 UTC 

[CVE-2026-53194][IMPORTANT] USB: serial: kl5kusb105: fix bulk-out buffer overflow
 2026-06-25 11:41 UTC 

[CVE-2026-53192][MODERATE 7.0] ALSA: timer: Fix UAF at snd_timer_user_params()
 2026-06-25 11:35 UTC 

[CVE-2026-53238][MODERATE REGULAR] netlabel: validate unlabeled address and mask attribute lengths [ Upstream
 2026-06-25 11:29 UTC 

[CVE-2026-53224][MODERATE 7.0] sctp: validate embedded INIT chunk and address list lengths in cookie [ Upstream
 2026-06-25 11:23 UTC 

[CVE-2026-53189][MODERATE 7.0] mm/huge_memory: update file PMD counter before folio_put() [ Upstream
 2026-06-25 11:19 UTC 

[CVE-2026-53223][MODERATE 7.0] net: guard timestamp cmsgs to real error queue skbs [ Upstream
 2026-06-25 11:13 UTC 

[CVE-2026-53236][MODERATE 7.0] tcp: restrict SO_ATTACH_FILTER to priv users [ Upstream
 2026-06-25 11:08 UTC 

[CVE-2026-53212][MODERATE 7.0] netfilter: nft_tunnel: fix use-after-free on object destroy
 2026-06-25 11:04 UTC 

[CVE-2026-53196][IMPORTANT] USB: serial: io_ti: fix heap overflow in get_manuf_info()
 2026-06-25 10:58 UTC 

[CVE-2026-53187][MODERATE REGULAR] RDMA/core: Validate cpu_id against nr_cpu_ids in DMAH alloc
 2026-06-25 10:53 UTC 

[CVE-2026-53185][IMPORTANT] zram: fix use-after-free in zram_bvec_write_partial()
 2026-06-25 10:49 UTC 

[CVE-2026-53219][MODERATE REGULAR] netfilter: x_tables: avoid leaking percpu counter pointers [ Upstream
 2026-06-25 10:41 UTC 

[CVE-2026-53191][MODERATE REGULAR] io_uring/net: inherit IORING_CQE_F_BUF_MORE across bundle recv retries
 2026-06-25 10:37 UTC 

[CVE-2026-53221][MODERATE 7.0] ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() [ Upstream
 2026-06-25 10:32 UTC 

[CVE-2026-53209][MODERATE 7.0] Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend
 2026-06-25 10:26 UTC 

[CVE-2026-53195][MODERATE 7.0] USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr()
 2026-06-25 10:20 UTC 

[CVE-2026-53208][MODERATE 7.0] Bluetooth: L2CAP: reject BR/EDR signaling packets over MTUsig
 2026-06-25 10:12 UTC 

[CVE-2026-53220][MODERATE 7.0] netfilter: revalidate bridge ports [ Upstream
 2026-06-25 10:09 UTC 

[CVE-2026-53199][MODERATE REGULAR] hv_netvsc: use kmap_local_page in netvsc_copy_to_send_buf [ Upstream
 2026-06-25 10:02 UTC 

[CVE-2026-53207][LOW] mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison [ Upstream
 2026-06-25  9:58 UTC 

[CVE-2026-53151][MODERATE REGULAR] rxrpc: Fix the ACK parser to extract the SACK table for parsing
 2026-06-25  9:38 UTC 

[CVE-2026-53168][MODERATE 7.0] fuse: reject fuse_notify() pagecache ops on directories
 2026-06-25  9:34 UTC 

[CVE-2026-53182][MODERATE 7.0] wifi: nl80211: reject oversized EMA RNR lists
 2026-06-25  9:30 UTC 

[CVE-2026-53115][MODERATE 7.0] bus: fsl-mc: use generic driver_override infrastructure [ Upstream
 2026-06-25  9:28 UTC 

[CVE-2026-53167][MODERATE 7.0] fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios
 2026-06-25  9:26 UTC 

[CVE-2026-53183][MODERATE REGULAR] mptcp: allow subflow rcv wnd to shrink
 2026-06-25  9:22 UTC 

[CVE-2026-52989][IMPORTANT] nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers [ Upstream
 2026-06-25  9:21 UTC 

[CVE-2026-53154][LOW] mm/hugetlb: restore reservation on error in hugetlb folio copy paths
 2026-06-25  9:17 UTC 

[CVE-2026-53131][MODERATE 7.0] netfilter: require Ethernet MAC header before using eth_hdr() [ Upstream
 2026-06-25  9:13 UTC 

[CVE-2026-53156][MODERATE 7.0] nvmem: core: fix use-after-free bugs in error paths
 2026-06-25  9:06 UTC 

[CVE-2026-53073][MODERATE 7.0] Bluetooth: hci_ldisc: Clear HCI_UART_PROTO_INIT on error [ Upstream
 2026-06-25  9:04 UTC 

[CVE-2026-53134][MODERATE 7.0] netfilter: nft_fib: fix stale stack leak via the OIFNAME register [ Upstream
 2026-06-25  9:02 UTC 

[CVE-2026-53132][MODERATE 7.0] vsock/virtio: fix potential unbounded skb queue
 2026-06-25  8:57 UTC 

[CVE-2026-52988][MODERATE 7.0] netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase [ Upstream
 2026-06-25  8:57 UTC 

[CVE-2026-53164][MODERATE REGULAR] iommu/dma: Do not try to iommu_map a 0 length region in swiotlb
 2026-06-25  8:53 UTC 

[CVE-2026-53058][LOW] drm/bridge: cadence: cdns-mhdp8546-core: Set the mhdp connector earlier in atomic_enable() [ Upstream
 2026-06-25  8:52 UTC 

[CVE-2026-53026][MODERATE 7.0] NFSD: fix nfs4_file access extra count in nfsd4_add_rdaccess_to_wrdeleg [ Upstream
 2026-06-25  8:32 UTC 

[CVE-2026-52958][MODERATE 7.0] libceph: Fix potential out-of-bounds access in osdmap_decode()
 2026-06-25  7:53 UTC 

[CVE-2026-53022][MODERATE 7.0] platform/x86: dell-wmi-sysman: bound enumeration string aggregation [ Upstream
 2026-06-24 20:13 UTC 

[CVE-2026-53061][MODERATE 7.0] dm cache: fix dirty mapping checking in passthrough mode switching [ Upstream
 2026-06-24 20:09 UTC 

[CVE-2026-53074][MODERATE 7.0] bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb [ Upstream
 2026-06-24 20:04 UTC 

[CVE-2026-53122][MODERATE REGULAR] btrfs: fix deadlock between reflink and transaction commit when using flushoncommit [ Upstream
 2026-06-24 20:00 UTC 

[CVE-2026-53120][MODERATE 7.0] PCI: use generic driver_override infrastructure [ Upstream
 2026-06-24 19:56 UTC 

[CVE-2026-53106][LOW] bpf: Do not allow deleting local storage in NMI [ Upstream
 2026-06-24 19:53 UTC 

[CVE-2026-53124][LOW] ublk: reset per-IO canceled flag on each fetch [ Upstream
 2026-06-24 19:50 UTC 

[CVE-2026-52945][MODERATE 7.0] Revert "wireguard: device: enable threaded NAPI" This reverts commit 933466f which is
 2026-06-24 19:50 UTC 

[CVE-2026-52970][MODERATE 7.0] netfilter: nft_ct: fix missing expect put in obj eval
 2026-06-24 19:47 UTC 

[CVE-2026-53095][IMPORTANT] bpf: Fix abuse of kprobe_write_ctx via freplace [ Upstream
 2026-06-24 19:44 UTC 

[CVE-2026-52955][IMPORTANT] libceph: Fix potential out-of-bounds access in crush_decode()
 2026-06-24 19:39 UTC 

[CVE-2026-53076][MODERATE REGULAR] bpf: Fix OOB in pcpu_init_value [ Upstream
 2026-06-24 19:36 UTC 

[CVE-2026-52968][IMPORTANT] KVM: s390: pci: fix GAIT table indexing due to double-scaling pointer arithmetic
 2026-06-24 19:32 UTC 

[CVE-2026-52967][MODERATE 7.0] smb/client: fix possible infinite loop and oob read in symlink_data()
 2026-06-24 19:27 UTC 

[CVE-2026-53071][IMPORTANT] Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp [ Upstream
 2026-06-24 19:24 UTC 

[CVE-2026-53100][LOW] wifi: mt76: fix deadlock in remain-on-channel [ Upstream
 2026-06-24 19:23 UTC 

[CVE-2026-52963][MODERATE REGULAR] ALSA: usb-audio: Bound MIDI endpoint descriptor scans
 2026-06-24 19:17 UTC 

[CVE-2026-53091][IMPORTANT] net: pull headers in qdisc_pkt_len_segs_init() [ Upstream
 2026-06-24 19:14 UTC 

[CVE-2026-52954][MODERATE REGULAR] libceph: handle rbtree insertion error in decode_choose_args()
 2026-06-24 19:13 UTC 

[CVE-2026-53126][LOW] blk-cgroup: fix disk reference leak in blkcg_maybe_throttle_current() [ Upstream
 2026-06-24 19:10 UTC 

[CVE-2026-52998][MODERATE 7.0] netfilter: nfnetlink_osf: fix potential NULL dereference in ttl check [ Upstream
 2026-06-24 19:10 UTC 

[CVE-2026-53086][MODERATE REGULAR] net: bcmgenet: fix racing timeout handler [ Upstream
 2026-06-24 18:57 UTC 

[CVE-2026-53127][LOW] block: fix zones_cond memory leak on zone revalidation error paths [ Upstream
 2026-06-24 18:54 UTC 

[CVE-2026-53011][MODERATE 7.0] net/sched: taprio: fix use-after-free in advance_sched() on schedule switch [ Upstream
 2026-06-24 18:53 UTC 

[CVE-2026-53004][MODERATE REGULAR] sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks [ Upstream
 2026-06-24 18:49 UTC 

[CVE-2026-52956][MODERATE 7.0] libceph: Fix potential out-of-bounds access in __ceph_x_decrypt()
 2026-06-24 18:42 UTC 

[CVE-2026-53084][MODERATE REGULAR] bpf: return VMA snapshot from task_vma iterator [ Upstream
 2026-06-24 18:40 UTC 

[CVE-2026-52974][LOW] net: tls: fix strparser anchor skb leak on offload RX setup failure [ Upstream
 2026-06-24 18:34 UTC 

[CVE-2026-53123][LOW] md: wake raid456 reshape waiters before suspend [ Upstream
 2026-06-24 18:30 UTC 

[CVE-2026-53083][LOW] bpf: Fix RCU stall in bpf_fd_array_map_clear() [ Upstream
 2026-06-24 18:25 UTC 

[CVE-2026-53005][MODERATE 7.0] af_unix: Drop all SCM attributes for SOCKMAP. [ Upstream
 2026-06-24 18:21 UTC 

[CVE-2026-53096][MODERATE 7.0] bpf: Use RCU-safe iteration in dev_map_redirect_multi() SKB path [ Upstream
 2026-06-24 18:18 UTC 

[CVE-2026-52961][MODERATE REGULAR] ceph: fix BUG_ON in __ceph_build_xattrs_blob() due to stale blob size
 2026-06-24 18:13 UTC 

[CVE-2026-53118][MODERATE REGULAR] vdpa: use generic driver_override infrastructure [ Upstream
 2026-06-24 18:09 UTC 

[CVE-2026-53053][MODERATE 7.0] iommu/amd: Fix clone_alias() to use the original device's devid [ Upstream
 2026-06-24 18:06 UTC 

[CVE-2026-53125][LOW] md: fix array_state=clear sysfs deadlock [ Upstream
 2026-06-24 18:05 UTC 

[CVE-2026-52984][LOW] net/sched: netem: fix queue limit check to include reordered packets [ Upstream
 2026-06-24 18:02 UTC 

[CVE-2026-53129][MODERATE REGULAR] fs/mbcache: cancel shrink work before destroying the cache [ Upstream
 2026-06-24 17:57 UTC 

[CVE-2026-53014][MODERATE 7.0] net/sched: act_mirred: fix wrong device for mac_header_xmit check in tcf_blockcast_redir [ Upstream
 2026-06-24 17:54 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox