[CVE-2026-52984][LOW] net/sched: netem: fix queue limit check to include reordered packets [ Upstream
2026-06-24 18:02 UTC
[CVE-2026-53129][MODERATE REGULAR] fs/mbcache: cancel shrink work before destroying the cache [ Upstream
2026-06-24 17:57 UTC
[CVE-2026-53014][MODERATE 7.0] net/sched: act_mirred: fix wrong device for mac_header_xmit check in tcf_blockcast_redir [ Upstream
2026-06-24 17:54 UTC
[CVE-2026-52985][LOW] netdevsim: zero initialize struct iphdr in dummy sk_buff [ Upstream
2026-06-24 17:50 UTC
[CVE-2026-53110][MODERATE 7.0] s390/bpf: Zero-extend bpf prog return values and kfunc arguments [ Upstream
2026-06-24 17:46 UTC
[CVE-2026-53059][IMPORTANT] dm log: fix out-of-bounds write due to region_count overflow [ Upstream
2026-06-24 17:42 UTC
[CVE-2026-53109][MODERATE REGULAR] powerpc/pgtable-frag: Fix bad page state in pte_frag_destroy [ Upstream
2026-06-24 17:38 UTC
[CVE-2026-52999][MODERATE 7.0] netfilter: nfnetlink_osf: fix out-of-bounds read on option matching [ Upstream
2026-06-24 17:35 UTC
[CVE-2026-53081][IMPORTANT] bpf: Enforce regsafe base id consistency for BPF_ADD_CONST scalars [ Upstream
2026-06-24 17:30 UTC
[CVE-2026-53075][MODERATE 7.0] ppp: require CAP_NET_ADMIN in target netns for unattached ioctls [ Upstream
2026-06-24 17:24 UTC
[CVE-2026-53062][MODERATE 7.0] dm cache policy smq: fix missing locks in invalidating cache blocks [ Upstream
2026-06-24 17:20 UTC
[CVE-2026-53048][LOW] gfs2: prevent NULL pointer dereference during unmount [ Upstream
2026-06-24 17:14 UTC
[CVE-2026-53069][MODERATE REGULAR] net, bpf: fix null-ptr-deref in xdp_master_redirect() for down master [ Upstream
2026-06-24 17:10 UTC
[CVE-2026-52975][MODERATE REGULAR] bonding: 3ad: implement proper RCU rules for port->aggregator [ Upstream
2026-06-24 17:06 UTC
[CVE-2026-52982][MODERATE REGULAR] net: usb: rtl8150: fix use-after-free in rtl8150_start_xmit() [ Upstream
2026-06-24 17:02 UTC
[CVE-2026-53009][IMPORTANT] ice: fix double-free of tx_buf skb [ Upstream
2026-06-24 16:57 UTC
[CVE-2026-53092][IMPORTANT] bpf: Fix linked reg delta tracking when src_reg == dst_reg [ Upstream
2026-06-24 16:54 UTC
[CVE-2026-53013][LOW] macvlan: fix macvlan_get_size() not reserving space for IFLA_MACVLAN_BC_CUTOFF [ Upstream
2026-06-24 16:51 UTC
[CVE-2026-52943][IMPORTANT] net: skbuff: fix missing zerocopy reference in pskb_carve helpers [ Upstream
2026-06-24 9:52 UTC
[CVE-2026-52940][MODERATE 7.0] tun: zero the whole vnet header in tun_put_user() [ Upstream
2026-06-24 9:36 UTC
[CVE-2026-52941][LOW] net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint [ Upstream
2026-06-24 9:29 UTC
[CVE-2026-52939][MODERATE REGULAR] net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion [ Upstream
2026-06-24 9:13 UTC
[CVE-2026-52923][IMPORTANT] ipc: limit next_id allocation to the valid ID range
2026-06-24 9:09 UTC
[CVE-2026-52924][IMPORTANT] sctp: purge outqueue on stale COOKIE-ECHO handling [ Upstream
2026-06-24 9:05 UTC
[CVE-2026-52915][MODERATE 7.0] netfilter: ip6t_hbh: reject oversized option lists
2026-06-24 9:00 UTC
[CVE-2026-52937][MODERATE REGULAR] tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR [ Upstream
2026-06-24 8:56 UTC
[CVE-2026-52912][MODERATE 7.0] netfilter: nf_queue: hold bridge skb->dev while queued [ Upstream
2026-06-24 8:52 UTC
[CVE-2026-52930][MODERATE 7.0] ipc/shm: serialize orphan cleanup with shm_nattch updates
2026-06-24 8:46 UTC
[CVE-2026-52921][LOW] netfilter: ipset: stop hash:* range iteration at end
2026-06-24 8:42 UTC
[CVE-2026-52936][LOW] crypto: jitterentropy - replace long-held spinlock with mutex [ Upstream
2026-06-24 8:38 UTC
[CVE-2026-52935][MODERATE 7.0] xfrm: espintcp: do not reuse an in-progress partial send
2026-06-24 8:34 UTC
[CVE-2026-52918][MODERATE 7.0] Bluetooth: serialize accept_q access [ Upstream
2026-06-24 8:30 UTC
[CVE-2026-52928][LOW] af_unix: Reject SIOCATMARK on non-stream sockets
2026-06-24 8:23 UTC
[CVE-2026-52917][MODERATE 7.0] sctp: diag: reject stale associations in dump_one path
2026-06-24 8:19 UTC
[CVE-2026-52933][MODERATE 7.0] io_uring/poll: fix signed comparison in io_poll_get_ownership()
2026-06-24 8:14 UTC
[CVE-2026-52929][MODERATE 7.0] sctp: stream: fully roll back denied add-stream state
2026-06-24 8:11 UTC
[CVE-2026-52925][MODERATE REGULAR] vrf: Fix a potential NPD when removing a port from a VRF [ Upstream
2026-06-24 8:06 UTC
[CVE-2026-52942][MODERATE 7.0] netfilter: nf_log: validate MAC header was set before dumping it [ Upstream
2026-06-24 8:01 UTC
[CVE-2026-52920][MODERATE 7.0] netfilter: xt_policy: fix strict mode inbound policy matching [ Upstream
2026-06-24 7:56 UTC
[CVE-2026-52927][MODERATE 7.0] netfilter: ebtables: fix OOB read in compat_mtw_from_user [ Upstream
2026-06-24 7:52 UTC
[CVE-2026-52910][IMPORTANT] bpf: Free reuseport cBPF prog after RCU grace period. [ Upstream
2026-06-22 13:21 UTC
[CVE-2026-52908][IMPORTANT] RDMA: During rereg_mr ensure that REREG_ACCESS is compatible [ Upstream
2026-06-19 14:58 UTC
[CVE-2026-52909][MODERATE 7.0] ip6_vti: set netns_immutable on the fallback device. [ Upstream
2026-06-19 14:53 UTC
[CVE-2026-46331][IMPORTANT] net/sched: fix pedit partial COW leading to page cache corruption tcf_pedit_act() computes the COW range for skb_ensure_writable() once before the key loop using tcfp_off_max_hint, but the hint does not account for the runtime header offset added by typed keys. This can leave part of the write region un-COW'd. Fix by moving skb_ensure_writable() inside the per-key loop where the actual write offset is known, and add overflow checking on the offset arithmetic. For negative offsets (e.g. Ethernet header edits at ingress), use skb_cow() to COW the headroom instead. Guard offset_valid() against INT_MIN, where negation is undefined. Fixes: 8b79647 ("net/sched: act_pedit: really ensure the skb is writable") Reported-by: Yiming Qian <[email protected]> Reported-by: Keenan Dong <[email protected]> Reported-by: Han Guidong <[email protected]> Reported-by: Zhang Cen <[email protected]> Reviewed-by: Han Guidong <[email protected]> Tested-by: Han Guidong <[email protected]> Reviewed-by: Davide Caratti <[email protected]> Tested-by: Davide Caratti <[email protected]> Reviewed-by: Toke Høiland-Jørgensen <[email protected]> Tested-by: Toke Høiland-Jørgensen <[email protected]> Reviewed-by: Victor Nogueira <[email protected]> Tested-by: Victor Nogueira <[email protected]> Acked-by: Jamal Hadi Salim <[email protected]> Signed-off-by: Rajat Gupta <[email protected]> Link: https://patch.msgid.link/[email protected] Signed-off-by: Jakub Kicinski <[email protected]>
2026-06-16 6:51 UTC
[CVE-2026-43284][IMPORTANT] xfrm: esp: avoid in-place decrypt on shared skb frags
2026-06-09 22:28 UTC
[CVE-2026-43186][IMPORTANT] ipv6: ioam: fix heap buffer overflow in __ioam6_fill_trace_data() [ Upstream
2026-06-09 22:23 UTC
[CVE-2026-43078][MODERATE 7.0] crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl
2026-06-09 22:17 UTC
[CVE-2026-43110][MODERATE 7.0] wifi: brcmfmac: validate bsscfg indices in IF events [ Upstream
2026-06-09 22:12 UTC
[CVE-2026-43158][MODERATE 7.0] xfs: fix freemap adjustments when adding xattrs to leaf blocks [ Upstream
2026-06-09 22:04 UTC
[CVE-2026-31532][MODERATE 7.0] can: raw: fix ro->uniq use-after-free in raw_rcv()
2026-06-09 22:00 UTC
[CVE-2026-31586][IMPORTANT] mm: blk-cgroup: fix use-after-free in cgwb_release_workfn()
2026-06-09 21:55 UTC
[CVE-2026-43063][MODERATE 7.0] xfs: don't irele after failing to iget in xfs_attri_recover_work
2026-06-09 21:51 UTC
[CVE-2026-43066][LOW] ext4: fix iloc.bh leak in ext4_fc_replay_inode() error paths [ Upstream
2026-06-09 21:46 UTC
[CVE-2026-43068][MODERATE REGULAR] ext4: avoid allocate block from corrupted group in ext4_mb_find_by_goal()
2026-06-09 21:42 UTC
[CVE-2026-46318][LOW] Revert "mm/hugetlbfs: update hugetlbfs to use mmap_prepare"
2026-06-09 16:53 UTC
[CVE-2026-46329][MODERATE 7.0] erofs: handle end of filesystem properly for file-backed mounts [ Upstream
2026-06-09 16:27 UTC
[CVE-2026-46325][MODERATE 7.0] RDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZE [ Upstream
2026-06-09 13:40 UTC
[CVE-2026-46327][LOW] dm: fix unlocked test for dm_suspended_md [ Upstream
2026-06-09 13:36 UTC
[CVE-2026-46320][MODERATE REGULAR] tap: free page on error paths in tap_get_user_xdp() [ Upstream
2026-06-09 13:32 UTC
[CVE-2026-46330][IMPORTANT] Revert "net/smc: Introduce TCP ULP support" [ Upstream
2026-06-09 13:28 UTC
[CVE-2026-46322][MODERATE REGULAR] tun: free page on build_skb failure in tun_xdp_one() [ Upstream
2026-06-09 13:24 UTC
[CVE-2026-46321][MODERATE REGULAR] tun: free page on short-frame rejection in tun_xdp_one() [ Upstream
2026-06-09 13:18 UTC
[CVE-2026-46323][IMPORTANT] net: gro: don't merge zcopy skbs [ Upstream
2026-06-09 13:13 UTC
[CVE-2026-46324][MODERATE 7.0] netfilter: nf_tables: use list_del_rcu for netlink hooks [ Upstream
2026-06-09 13:08 UTC
[CVE-2026-46317][MODERATE 7.0] KVM: arm64: Reassign nested_mmus array behind mmu_lock
2026-06-09 13:02 UTC
[CVE-2026-46316][MODERATE 7.0] KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry
2026-06-09 12:53 UTC
[CVE-2026-46315][MODERATE REGULAR] io_uring/waitid: clear waitid info before copying it to userspace
2026-06-09 7:51 UTC
[CVE-2026-46281][MODERATE 7.0] vmalloc: fix buffer overflow in vrealloc_node_align()
2026-06-08 19:57 UTC
[CVE-2026-46283][MODERATE REGULAR] tpm: Use kfree_sensitive() to free auth session in tpm_dev_release()
2026-06-08 19:50 UTC
[CVE-2026-46284][LOW] mm/hugetlb: fix early boot crash on parameters without '=' separator
2026-06-08 19:46 UTC
[CVE-2026-46289][MODERATE 7.0] lib/scatterlist: fix length calculations in extract_kvec_to_sg
2026-06-08 19:33 UTC
[CVE-2026-46291][MODERATE REGULAR] crypto: caam - guard HMAC key hex dumps in hash_digest_key [ Upstream
2026-06-08 19:27 UTC
[CVE-2026-46292][LOW] pmdomain: core: Fix detach procedure for virtual devices in genpd [ Upstream
2026-06-08 19:23 UTC
[CVE-2026-46294][MODERATE 7.0] dm: fix a buffer overflow in ioctl processing
2026-06-08 19:16 UTC
[CVE-2026-46295][MODERATE REGULAR] KVM: x86: Do IRR scan in __kvm_apic_update_irr even if PIR is empty
2026-06-08 19:12 UTC
[CVE-2026-46298][LOW] pseries/papr-hvpipe: Fix race with interrupt handler
2026-06-08 19:04 UTC
[CVE-2026-46299][LOW] hfsplus: fix held lock freed on hfsplus_fill_super() [ Upstream
2026-06-08 19:01 UTC
[CVE-2026-46302][LOW] selinux: allow multiple opens of /sys/fs/selinux/policy
2026-06-08 18:55 UTC
[CVE-2026-46303][MODERATE REGULAR] isofs: validate Rock Ridge CE continuation extent against volume size
2026-06-08 18:52 UTC
[CVE-2026-46304][MODERATE REGULAR] nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free
2026-06-08 18:45 UTC
[CVE-2026-46306][MODERATE 7.0] flow_dissector: do not dissect PPPoE PFC frames [ Upstream
2026-06-08 18:38 UTC
[CVE-2026-46307][MODERATE REGULAR] wifi: ath5k: do not access array OOB
2026-06-08 18:34 UTC
[CVE-2026-46309][IMPORTANT] drm/xe/uapi: Reject coh_none PAT index for CPU cached memory in madvise
2026-06-08 18:24 UTC
[CVE-2026-46312][MODERATE REGULAR] media: videobuf2: Set vma_flags in vb2_dma_sg_mmap
2026-06-08 18:17 UTC
[CVE-2026-46313][LOW] media: intel/ipu6: fix error pointer dereference
2026-06-08 18:13 UTC
[CVE-2026-46280][MODERATE 7.0] lib: test_hmm: evict device pages on file close to avoid use-after-free [ Upstream
2026-06-08 15:56 UTC
[CVE-2026-46275][MODERATE 7.0] Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths
2026-06-08 14:59 UTC
[CVE-2026-46274][IMPORTANT] io-wq: check that the predecessor is hashed in io_wq_remove_pending()
2026-06-08 14:52 UTC
[CVE-2026-46260][MODERATE REGULAR] ipv6: Fix out-of-bound access in fib6_add_rt2node(). [ Upstream
2026-06-03 20:22 UTC
[CVE-2026-46273][MODERATE REGULAR] ibmveth: Disable GSO for packets with small MSS
2026-06-03 20:17 UTC
[CVE-2026-46271][LOW] wifi: ath12k: do WoW offloads only on primary link [ Upstream
2026-06-03 20:03 UTC
[CVE-2026-43279][MODERATE 7.0] ALSA: usb-audio: Add sanity check for OOB writes at silencing [ Upstream
2026-06-03 20:00 UTC
[CVE-2026-46268][LOW] PCI/P2PDMA: Fix p2pmem_alloc_mmap() warning condition [ Upstream
2026-06-03 19:59 UTC
[CVE-2026-46262][LOW] ASoC: fsl_xcvr: Revert fix missing lock in fsl_xcvr_mode_put() [ Upstream
2026-06-03 19:54 UTC
[CVE-2026-46244][IMPORTANT] netfilter: nft_inner: Fix IPv6 inner_thoff desync
2026-06-03 19:47 UTC
[CVE-2026-46266][MODERATE 7.0] inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP [ Upstream
2026-06-03 19:38 UTC
[CVE-2026-46252][MODERATE REGULAR] regulator: core: fix locking in regulator_resolve_supply() error path [ Upstream
2026-06-03 19:34 UTC
[CVE-2026-46256][LOW] NFS/localio: prevent direct reclaim recursion into NFS via nfs_writepages [ Upstream
2026-06-03 19:30 UTC
[CVE-2026-46247][LOW] clk: qcom: gfx3d: add parent to parent request map [ Upstream
2026-06-03 19:26 UTC
[CVE-2026-46251][MODERATE 7.0] btrfs: fix block_group_tree dirty_list corruption [ Upstream
2026-06-03 19:20 UTC
[CVE-2025-71313][LOW] PCI: endpoint: Add missing NULL check for alloc_workqueue() [ Upstream
2026-06-03 19:08 UTC
[CVE-2026-46253][MODERATE 7.0] pstore/ram: fix buffer overflow in persistent_ram_save_old() [ Upstream
2026-06-03 19:05 UTC
[CVE-2026-46249][LOW] octeontx2-af: Fix PF driver crash with kexec kernel booting [ Upstream
2026-06-03 19:00 UTC
[CVE-2026-46259][IMPORTANT] procfs: fix missing RCU protection when reading real_parent in do_task_stat() [ Upstream
2026-06-03 18:54 UTC
[CVE-2026-46248][LOW] wifi: ath12k: clear stale link mapping of ahvif->links_map [ Upstream
2026-06-03 18:50 UTC
[CVE-2026-43503][IMPORTANT] net: skbuff: preserve shared-frag marker during coalescing
2026-06-03 18:47 UTC
[CVE-2026-46255][LOW] dmaengine: fsl-edma: don't explicitly disable clocks in .remove() [ Upstream
2026-06-03 18:39 UTC
[CVE-2022-50346][MODERATE REGULAR] ext4: init quota for 'old.inode' in 'ext4_rename'
2026-06-03 14:51 UTC
[CVE-2026-46243][IMPORTANT] smb: client: reject userspace cifs.spnego descriptions
2026-06-01 16:52 UTC
[CVE-2026-46242][IMPORTANT] eventpoll: fix ep_remove struct eventpoll / struct file UAF [ Upstream
2026-05-30 12:51 UTC
[CVE-2026-77773][IMPORTANT] <title>smb: client: reject userspace cifs.spnego descriptions</title>
2026-05-29 12:56 UTC
[CVE-2026-46106][MODERATE 7.0] eventfs: Hold eventfs_mutex and SRCU when remount walks events
2026-05-28 23:31 UTC
[CVE-2026-46105][IMPORTANT] scsi: mpt3sas: Limit NVMe request size to 2 MiB
2026-05-28 23:18 UTC
[CVE-2026-46114][MODERATE 7.0] RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads
2026-05-28 18:39 UTC
[CVE-2026-46115][MODERATE 7.0] block: add pgmap check to biovec_phys_mergeable
2026-05-28 18:35 UTC
[CVE-2026-46116][IMPORTANT] xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete [ Upstream
2026-05-28 18:28 UTC
[CVE-2026-46119][MODERATE 7.0] libceph: Fix slab-out-of-bounds access in auth message processing
2026-05-28 18:19 UTC
[CVE-2026-46121][MODERATE 7.0] mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock
2026-05-28 18:12 UTC
[CVE-2026-46123][MODERATE 7.0] Bluetooth: virtio_bt: clamp rx length before skb_put
2026-05-28 18:05 UTC
[CVE-2026-46125][IMPORTANT] wifi: mac80211: remove station if connection prep fails
2026-05-28 17:55 UTC
[CVE-2026-46126][LOW] RDMA/mana: Fix mana_destroy_wq_obj() cleanup in mana_ib_create_qp_rss()
2026-05-28 17:51 UTC
[CVE-2026-46127][MODERATE REGULAR] RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp()
2026-05-28 17:48 UTC
[CVE-2026-46130][MODERATE REGULAR] dm-verity-fec: fix reading parity bytes split across blocks (take 3)
2026-05-28 17:39 UTC
[CVE-2026-46131][LOW] KVM: x86: check for nEPT/nNPT in slow flush hypercalls
2026-05-28 17:35 UTC
[CVE-2026-46132][MODERATE 7.0] net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfinfo
2026-05-28 17:29 UTC
[CVE-2026-46133][MODERATE 7.0] RDMA/rxe: Reject unknown opcodes before ICRC processing
2026-05-28 17:25 UTC
[CVE-2026-46135][IMPORTANT] nvmet-tcp: fix race between ICReq handling and queue teardown
2026-05-28 17:16 UTC
[CVE-2026-46136][LOW] wifi: mt76: mt7921: fix a potential clc buffer length underflow
2026-05-28 17:13 UTC
[CVE-2026-46137][MODERATE REGULAR] mptcp: pm: ADD_ADDR rtx: fix potential data-race [ Upstream
2026-05-28 17:08 UTC
[CVE-2026-46138][MODERATE REGULAR] Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt
2026-05-28 17:05 UTC
[CVE-2026-46139][MODERATE 7.0] smb: client: use kzalloc to zero-initialize security descriptor buffer
2026-05-28 16:59 UTC
[CVE-2026-46140][LOW] Bluetooth: btmtk: validate WMT event SKB length before struct access
2026-05-28 16:54 UTC
[CVE-2026-46145][IMPORTANT] RDMA/mana: Validate rx_hash_key_len [ Upstream
2026-05-28 16:41 UTC
[CVE-2026-46149][MODERATE 7.0] scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show()
2026-05-28 16:25 UTC
[CVE-2026-46150][IMPORTANT] fanotify: fix false positive on permission events
2026-05-28 16:19 UTC
[CVE-2026-46151][MODERATE REGULAR] usb: usblp: fix heap leak in IEEE 1284 device ID via short response
2026-05-28 16:15 UTC
[CVE-2026-46152][IMPORTANT] wifi: mac80211: drop stray 'static' from fast-RX rx_result
2026-05-28 16:11 UTC
[CVE-2026-46153][LOW] 8021q: delete cleared egress QoS mappings [ Upstream
2026-05-28 16:08 UTC
[CVE-2026-46155][IMPORTANT] smb/client: fix out-of-bounds read in smb2_compound_op()
2026-05-28 16:01 UTC
[CVE-2026-46157][MODERATE REGULAR] ALSA: pcm: oss: Fix data race at accessing runtime.oss.trigger
2026-05-28 15:56 UTC
[CVE-2026-46158][MODERATE 7.0] mptcp: pm: ADD_ADDR rtx: always decrease sk refcount
2026-05-28 15:51 UTC
[CVE-2026-46159][MODERATE REGULAR] btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-leak [ Upstream
2026-05-28 15:49 UTC
[CVE-2026-46160][MODERATE 7.0] btrfs: fix missing last_unlink_trans update when removing a directory [ Upstream
2026-05-28 15:45 UTC
[CVE-2026-46162][MODERATE 7.0] ice: fix double free in ice_sf_eth_activate() error path
2026-05-28 15:39 UTC
[CVE-2026-46165][LOW] openvswitch: vport: fix self-deadlock on release of tunnel ports
2026-05-28 15:26 UTC
[CVE-2026-46166][IMPORTANT] wifi: mac80211: use safe list iteration in radar detect work
2026-05-28 15:22 UTC
[CVE-2026-46167][LOW] usb: usblp: fix uninitialized heap leak via LPGETSTATUS ioctl
2026-05-28 15:19 UTC
[CVE-2026-46168][MODERATE REGULAR] mptcp: fix scheduling with atomic in timestamp sockopt
2026-05-28 15:16 UTC
[CVE-2026-46169][MODERATE 7.0] hfsplus: fix uninit-value by validating catalog record size [ Upstream
2026-05-28 15:13 UTC
[CVE-2026-46170][MODERATE 7.0] mptcp: pm: ADD_ADDR rtx: free sk if last
2026-05-28 15:09 UTC
[CVE-2026-46172][MODERATE 7.0] ipv6: xfrm6: release dst on error in xfrm6_rcv_encap()
2026-05-28 15:03 UTC
[CVE-2026-46173][IMPORTANT] exit: prevent preemption of oopsing TASK_DEAD task
2026-05-28 14:58 UTC
[CVE-2026-46176][IMPORTANT] RDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init()
2026-05-28 14:49 UTC
[CVE-2026-46181][IMPORTANT] RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()
2026-05-28 14:36 UTC
[CVE-2026-46182][MODERATE REGULAR] pseries/papr-hvpipe: Prevent kernel stack memory leak to userspace
2026-05-28 14:33 UTC
[CVE-2026-46184][LOW] sound: ua101: fix division by zero at probe
2026-05-28 14:28 UTC
[CVE-2026-46186][MODERATE 7.0] Bluetooth: virtio_bt: validate rx pkt_type header length
2026-05-28 14:23 UTC
[CVE-2026-46189][IMPORTANT] RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path
2026-05-28 14:11 UTC
[CVE-2026-46190][MODERATE REGULAR] mtd: spi-nor: debugfs: fix out-of-bounds read in spi_nor_params_show()
2026-05-28 14:08 UTC
[CVE-2026-46193][MODERATE 7.0] xfrm: ah: account for ESN high bits in async callbacks [ Upstream
2026-05-28 14:00 UTC
[CVE-2026-46195][IMPORTANT] smb: client: validate dacloffset before building DACL pointers
2026-05-28 13:53 UTC
[CVE-2026-46203][LOW] spi: cadence-quadspi: fix unclocked access on unbind
2026-05-28 13:37 UTC
[CVE-2026-46207][MODERATE REGULAR] vsock/virtio: fix empty payload in tap skb for non-linear buffers
2026-05-28 13:28 UTC
[CVE-2026-46209][IMPORTANT] drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs()
2026-05-28 13:20 UTC
[CVE-2026-46214][MODERATE 7.0] vsock/virtio: fix accept queue count leak on transport mismatch
2026-05-28 13:08 UTC
[CVE-2026-46216][LOW] drm/xe/hdcp: Add NULL check for media_gt in intel_hdcp_gsc_check_status()
2026-05-28 12:59 UTC
[CVE-2026-46224][LOW] drm/xe: Fix bo leak in xe_dma_buf_init_obj() on allocation failure
2026-05-28 12:41 UTC
[CVE-2026-46234][MODERATE REGULAR] vsock: fix buffer size clamping order
2026-05-28 11:09 UTC
[CVE-2026-46201][LOW] drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import()
2026-05-28 11:03 UTC
[CVE-2026-46235][LOW] media: saa7164: add ioremap return checks and cleanups
2026-05-28 10:56 UTC
[CVE-2026-46107][MODERATE 7.0] dm-thin: fix metadata refcount underflow
2026-05-28 10:39 UTC
[CVE-2026-46120][IMPORTANT] ip6_gre: Use cached t->net in ip6erspan_changelink()
2026-05-28 10:35 UTC
[CVE-2026-46188][MODERATE REGULAR] octeon_ep_vf: add NULL check for napi_build_skb() [ Upstream
2026-05-28 10:32 UTC
[CVE-2026-46191][MODERATE REGULAR] fbcon: Avoid OOB font access if console rotation fails [ Upstream
2026-05-28 10:28 UTC
[CVE-2026-46185][MODERATE 7.0] smb/client: fix out-of-bounds read in symlink_data()
2026-05-28 10:22 UTC
[CVE-2026-46174][MODERATE 7.0] x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache
2026-05-28 10:18 UTC
[CVE-2026-46180][MODERATE 7.0] wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task
2026-05-28 10:15 UTC
[CVE-2026-46161][LOW] md/raid10: fix divide-by-zero in setup_geo() with zero far_copies
2026-05-28 10:03 UTC
[CVE-2026-46144][LOW] RDMA/mana: Fix error unwind in mana_ib_create_qp_rss() [ Upstream
2026-05-28 9:59 UTC
[CVE-2026-46196][LOW] tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() [ Upstream
2026-05-28 9:55 UTC
[CVE-2026-46178][LOW] RDMA/mlx4: Fix resource leak on error in mlx4_ib_create_srq()
2026-05-28 9:52 UTC
[CVE-2026-45847][LOW] net: remove WARN_ON_ONCE when accessing forward path array [ Upstream
2026-05-28 5:04 UTC
[CVE-2026-45851][LOW] efi: Fix reservation of unaccepted memory table [ Upstream
2026-05-28 4:54 UTC
[CVE-2026-45852][IMPORTANT] RDMA/rxe: Fix double free in rxe_srq_from_init [ Upstream
2026-05-28 4:48 UTC
[CVE-2026-45856][MODERATE 7.0] RDMA/uverbs: Validate wqe_size before using it in ib_uverbs_post_send [ Upstream
2026-05-28 4:37 UTC
[CVE-2026-45858][IMPORTANT] ext4: don't zero the entire extent if EXT4_EXT_DATA_PARTIAL_VALID1 [ Upstream
2026-05-28 4:30 UTC
[CVE-2026-45859][MODERATE 7.0] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [ Upstream
2026-05-28 4:26 UTC
[CVE-2026-45860][MODERATE 7.0] netfilter: nf_conncount: increase the connection clean up limit to 64 [ Upstream
2026-05-28 4:23 UTC
[CVE-2026-45861][MODERATE 7.0] gfs2: Fix slab-use-after-free in qd_put [ Upstream
2026-05-28 4:17 UTC
[CVE-2026-45863][LOW] i3c: dw: Fix memory leak in dw_i3c_master_i2c_xfers() [ Upstream
2026-05-28 4:05 UTC
[CVE-2026-45870][LOW] SUNRPC: auth_gss: fix memory leaks in XDR decoding error paths
2026-05-28 3:50 UTC
[CVE-2026-45871][LOW] tpm: st33zp24: Fix missing cleanup on get_burstcount() error [ Upstream
2026-05-28 3:46 UTC
[CVE-2026-45872][LOW] scsi: smartpqi: Fix memory leak in pqi_report_phys_luns() [ Upstream
2026-05-28 3:41 UTC
[CVE-2026-45876][LOW] arm64/gcs: Fix error handling in arch_set_shadow_stack_status() [ Upstream
2026-05-28 3:32 UTC
[CVE-2026-45877][LOW] HID: intel-ish-hid: fix NULL-ptr-deref in ishtp_bus_remove_all_clients [ Upstream
2026-05-28 3:29 UTC
[CVE-2026-45880][LOW] PCI/P2PDMA: Release per-CPU pgmap ref when vm_insert_page() fails [ Upstream
2026-05-28 3:22 UTC
[CVE-2026-45886][MODERATE 7.0] bpf: Fix bpf_xdp_store_bytes proto for read-only arg [ Upstream
2026-05-28 3:07 UTC
[CVE-2026-45887][LOW] af_unix: Fix memleak of newsk in unix_stream_connect(). [ Upstream
2026-05-28 3:03 UTC
[CVE-2026-45888][LOW] md/raid1: fix memory leak in raid1_run() [ Upstream
2026-05-28 3:00 UTC
[CVE-2026-45892][MODERATE 7.0] ext4: drop extent cache after doing PARTIAL_VALID1 zeroout [ Upstream
2026-05-28 2:51 UTC
page: next (older) | prev (newer) | latest
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox