public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-53323][MODERATE REGULAR] net: dsa: remove redundant netdev_lock_ops() from conduit ethtool ops [ Upstream
 2026-06-26 20:51 UTC 

[CVE-2026-53291][LOW] ALSA: hda/conexant: Fix missing error check for jack detection [ Upstream
 2026-06-26 20:51 UTC 

[CVE-2026-53294][MODERATE 7.0] mailbox: mailbox-test: don't free the reused channel [ Upstream
 2026-06-26 20:47 UTC 

[CVE-2026-53324][LOW] net: mana: Use pci_name() for debugfs directory naming [ Upstream
 2026-06-26 20:43 UTC 

[CVE-2026-53296][MODERATE 7.0] mailbox: mailbox-test: free channels on probe error [ Upstream
 2026-06-26 20:40 UTC 

[CVE-2026-53318][MODERATE REGULAR] wifi: mt76: mt7925: prevent NULL pointer dereference in mt7925_tx_check_aggr() [ Upstream
 2026-06-26 20:36 UTC 

[CVE-2026-53297][LOW] net: mana: Guard mana_remove against double invocation [ Upstream
 2026-06-26 20:33 UTC 

[CVE-2026-53289][LOW] ice: fix NULL pointer dereference in ice_reset_all_vfs() [ Upstream
 2026-06-26 20:30 UTC 

[CVE-2026-53287][MODERATE REGULAR] audit: fix incorrect inheritable capability in CAPSET records
 2026-06-26 20:26 UTC 

[CVE-2026-53295][LOW] mailbox: add sanity check for channel array [ Upstream
 2026-06-26 20:24 UTC 

[CVE-2026-53282][LOW] x86/kexec: Push kjump return address even for non-kjump kexec
 2026-06-26 20:20 UTC 

[CVE-2026-53292][MODERATE REGULAR] net: phonet: do not BUG_ON() in pn_socket_autobind() on failed bind [ Upstream
 2026-06-26 20:20 UTC 

[CVE-2026-53317][MODERATE REGULAR] wifi: mt76: mt7921: Place upper limit on station AID [ Upstream
 2026-06-26 20:20 UTC 

[CVE-2026-53316][LOW] drm/amd/ras: Fix NULL deref in ras_core_ras_interrupt_detected() [ Upstream
 2026-06-26 20:16 UTC 

[CVE-2026-53284][LOW] btrfs: only release the dirty pages io tree after successful writes
 2026-06-26 20:16 UTC 

[CVE-2026-53281][IMPORTANT] iommu/vt-d: Avoid NULL pointer dereference or refcount corruption
 2026-06-26 20:14 UTC 

[CVE-2026-53305][LOW] usb: typec: ps883x: Fix Oops at unbind [ Upstream
 2026-06-26 20:08 UTC 

[CVE-2026-53285][LOW] drm/amd/display: Wrap DCN32 phantom-plane allocation in DC_RUN_WITH_PREEMPTION_ENABLED
 2026-06-26 20:08 UTC 

[CVE-2026-53278][LOW] arm_mpam: Check whether the config array is allocated before destroying it
 2026-06-26 20:08 UTC 

[CVE-2026-52987][IMPORTANT] drm/amdgpu: avoid double drm_exec_fini() in userq validate [ Upstream
 2026-06-26 20:08 UTC 

[CVE-2026-53311][LOW] fuse: fix uninit-value in fuse_dentry_revalidate()
 2026-06-26 20:05 UTC 

[CVE-2026-53322][IMPORTANT] vfio/pci: Clean up DMABUFs before disabling function [ Upstream
 2026-06-26 20:04 UTC 

[CVE-2026-53314][LOW] padata: Put CPU offline callback in ONLINE section to allow failure [ Upstream
 2026-06-26 20:02 UTC 

[CVE-2026-53293][MODERATE REGULAR] drm/amdgpu: fix AMDGPU_INFO_READ_MMR_REG [ Upstream
 2026-06-26 19:59 UTC 

[CVE-2026-53283][MODERATE 7.0] iommu/amd: Bounds-check devid in __rlookup_amd_iommu()
 2026-06-26 19:59 UTC 

[CVE-2026-53306][MODERATE REGULAR] tty: hvc_iucv: fix off-by-one in number of supported devices [ Upstream
 2026-06-26 19:55 UTC 

[CVE-2026-53304][LOW] scsi: sg: Resolve soft lockup issue when opening /dev/sgX [ Upstream
 2026-06-26 19:51 UTC 

[CVE-2026-52972][IMPORTANT] crypto: af_alg - Cap AEAD AD length to 0x80000000
 2026-06-26 19:51 UTC 

[CVE-2026-53315][LOW] drm/amd/ras: Fix NULL deref in ras_core_get_utc_second_timestamp() [ Upstream
 2026-06-26 19:43 UTC 

[CVE-2026-52949][LOW] drm/ttm: Fix ttm_bo_shrink() infinite LRU walk on backup failure
 2026-06-26 19:29 UTC 

[CVE-2026-53035][MODERATE REGULAR] bpf, sockmap: Fix af_unix iter deadlock [ Upstream
 2026-06-26 19:25 UTC 

[CVE-2026-53103][MODERATE REGULAR] wifi: mt76: mt7925: fix potential deadlock in mt7925_roc_abort_sync [ Upstream
 2026-06-26 19:21 UTC 

[CVE-2026-52951][IMPORTANT] drm/xe/dma-buf: handle empty bo and UAF races
 2026-06-26 19:13 UTC 

[CVE-2026-52977][MODERATE REGULAR] futex: Prevent lockup in requeue-PI during signal/ timeout wakeup [ Upstream
 2026-06-26 19:09 UTC 

[CVE-2026-53036][MODERATE 7.0] bpf, arm64: Fix off-by-one in check_imm signed range check [ Upstream
 2026-06-26 19:03 UTC 

[CVE-2026-53054][MODERATE 7.0] drm/msm: Fix VM_BIND UNMAP locking [ Upstream
 2026-06-26 18:56 UTC 

[CVE-2026-53008][MODERATE REGULAR] wifi: brcmfmac: Fix error pointer dereference [ Upstream
 2026-06-26 18:47 UTC 

[CVE-2026-53093][LOW] wifi: brcmfmac: Fix error pointer dereference [ Upstream
 2026-06-26 18:43 UTC 

[CVE-2026-46090][MODERATE 7.0] ALSA: aloop: Fix peer runtime UAF during format-change stop [ Upstream
 2026-06-26 18:43 UTC 

[CVE-2026-52980][MODERATE 7.0] sched/fair: Clear rel_deadline when initializing forked entities [ Upstream
 2026-06-26 18:42 UTC 

[CVE-2026-52957][MODERATE 7.0] libceph: Fix potential null-ptr-deref in decode_choose_args()
 2026-06-26 18:37 UTC 

[CVE-2026-53101][MODERATE REGULAR] wifi: mt76: mt7921: fix potential deadlock in mt7921_roc_abort_sync [ Upstream
 2026-06-26 18:33 UTC 

[CVE-2026-53064][LOW] dm cache: fix null-deref with concurrent writes in passthrough mode [ Upstream
 2026-06-26 18:29 UTC 

[CVE-2026-53037][LOW] HID: usbhid: fix deadlock in hid_post_reset() [ Upstream
 2026-06-26 18:24 UTC 

[CVE-2026-53111][LOW] bpf: test_run: Fix the null pointer dereference issue in bpf_lwt_xmit_push_encap [ Upstream
 2026-06-26 18:19 UTC 

[CVE-2026-53021][MODERATE 7.0] scsi: target: core: Fix integer overflow in UNMAP bounds check [ Upstream
 2026-06-26 18:11 UTC 

[CVE-2026-53089][MODERATE 7.0] bpf: Fix use-after-free in offloaded map/prog info fill [ Upstream
 2026-06-26 18:06 UTC 

[CVE-2026-52953][MODERATE 7.0] iommu/vt-d: Fix oops due to out of scope access
 2026-06-26 17:53 UTC 

[CVE-2026-52950][IMPORTANT] drm/xe/dma-buf: fix UAF with retry loop
 2026-06-26 17:45 UTC 

[CVE-2026-53090][IMPORTANT] bpf: Fix ld_{abs,ind} failure path analysis in subprogs [ Upstream
 2026-06-26 17:31 UTC 

[CVE-2026-53028][LOW] usb: typec: Fix error pointer dereference [ Upstream
 2026-06-26 16:29 UTC 

[CVE-2026-53063][LOW] dm cache: fix write hang in passthrough mode [ Upstream
 2026-06-26 16:24 UTC 

[CVE-2026-53052][MODERATE REGULAR] ASoC: qcom: qdsp6: topology: check widget type before accessing data [ Upstream
 2026-06-26 16:19 UTC 

[CVE-2026-53104][LOW] wifi: mt76: Fix memory leak destroying device [ Upstream
 2026-06-26 15:55 UTC 

[CVE-2026-53038][MODERATE REGULAR] ima_fs: Correctly create securityfs files for unsupported hash algos [ Upstream
 2026-06-26 15:42 UTC 

[CVE-2026-53108][MODERATE REGULAR] powerpc/64s: Fix unmap race with PMD migration entries [ Upstream
 2026-06-26 15:15 UTC 

[CVE-2026-52962][LOW] ceph: fix a buffer leak in __ceph_setxattr()
 2026-06-26 15:02 UTC 

[CVE-2026-52948][LOW] i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl
 2026-06-26 14:57 UTC 

[CVE-2026-52995][MODERATE REGULAR] net/rds: zero per-item info buffer before handing it to visitors [ Upstream
 2026-06-26 14:53 UTC 

[CVE-2026-52946][MODERATE REGULAR] fs/fcntl: fix SOFTIRQ-unsafe lock order in fasync signaling
 2026-06-26 14:46 UTC 

[CVE-2026-53067][MODERATE 7.0] PCI: endpoint: pci-ep-msi: Fix error unwind and prevent double alloc [ Upstream
 2026-06-26 14:41 UTC 

[CVE-2026-53032][MODERATE REGULAR] bpf: Fix NULL deref in map_kptr_match_type for scalar regs [ Upstream
 2026-06-26 14:34 UTC 

[CVE-2026-52952][IMPORTANT] iommu: Fix WARN_ON in __iommu_group_set_domain_nofail() due to reset
 2026-06-26 14:24 UTC 

[CVE-2026-53113][LOW] wifi: ath11k: fix memory leaks in beacon template setup [ Upstream
 2026-06-26 13:03 UTC 

[CVE-2026-53114][MODERATE REGULAR] perf/amd/ibs: Avoid calling perf_allow_kernel() from the IBS NMI handler [ Upstream
 2026-06-26 12:57 UTC 

[CVE-2026-52991][IMPORTANT] sched/psi: fix race between file release and pressure write [ Upstream
 2026-06-26 12:48 UTC 

[CVE-2026-53085][IMPORTANT] bpf: fix mm lifecycle in open-coded task_vma iterator [ Upstream
 2026-06-26 12:39 UTC 

[CVE-2026-53051][LOW] PCI: tegra194: Fix CBB timeout caused by DBI access before core power-on [ Upstream
 2026-06-26 12:33 UTC 

[CVE-2026-53077][MODERATE 7.0] net/rds: Restrict use of RDS/IB to the initial network namespace [ Upstream
 2026-06-26 12:27 UTC 

[CVE-2026-52981][MODERATE 7.0] neigh: let neigh_xmit take skb ownership [ Upstream
 2026-06-26 12:04 UTC 

[CVE-2026-53042][LOW] fwctl: Fix class init ordering to avoid NULL pointer dereference on device removal [ Upstream
 2026-06-26 11:39 UTC 

[CVE-2026-52990][MODERATE REGULAR] fsnotify: fix inode reference leak in fsnotify_recalc_mask() [ Upstream
 2026-06-26 11:27 UTC 

[CVE-2026-53060][LOW] dm cache metadata: fix memory leak on metadata abort retry [ Upstream
 2026-06-26 11:15 UTC 

[CVE-2026-53163][MODERATE REGULAR] locking/rtmutex: Skip remove_waiter() when waiter is not enqueued
 2026-06-26 11:03 UTC 

[CVE-2026-53242][MODERATE 7.0] ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams [ Upstream
 2026-06-26 10:32 UTC 

[CVE-2026-53149][MODERATE REGULAR] thunderbolt: Bound root directory content to block size
 2026-06-26  9:22 UTC 

[CVE-2026-53180][MODERATE REGULAR] timers/migration: Fix livelock in tmigr_handle_remote_up()
 2026-06-26  8:59 UTC 

[CVE-2026-53145][IMPORTANT] drm/gem: Try to fix change_handle ioctl, attempt 4
 2026-06-26  8:48 UTC 

[CVE-2026-53235][MODERATE 7.0] net: add pskb_may_pull() to skb_gro_receive_list() [ Upstream
 2026-06-26  8:37 UTC 

[CVE-2026-53211][MODERATE REGULAR] netfilter: nft_meta_bridge: fix stale stack leak via IIFHWADDR register
 2026-06-26  8:22 UTC 

[CVE-2026-53147][MODERATE 7.0] thunderbolt: Validate XDomain request packet size before type cast
 2026-06-26  8:10 UTC 

[CVE-2026-53142][LOW] drm/xe/display: fix oops in suspend/shutdown without display
 2026-06-26  7:52 UTC 

[CVE-2026-53140][LOW] drm/v3d: Fix vaddr leak when indirect CSD has zeroed workgroups
 2026-06-26  7:51 UTC 

[CVE-2026-53153][IMPORTANT] mm/list_lru: drain before clearing xarray entry on reparent
 2026-06-26  7:43 UTC 

[CVE-2026-53277][IMPORTANT] KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation
 2026-06-26  7:42 UTC 

[CVE-2026-53162][MODERATE 7.0] memcg: use round-robin victim selection in refill_stock
 2026-06-26  7:30 UTC 

[CVE-2026-53210][LOW] tee: shm: fix shm leak in register_shm_helper()
 2026-06-26  7:18 UTC 

[CVE-2026-53157][MODERATE 7.0] net: phonet: free phonet_device after RCU grace period
 2026-06-26  1:18 UTC 

[CVE-2026-53233][MODERATE 7.0] netdev: fix double-free in netdev_nl_bind_rx_doit() [ Upstream
 2026-06-26  1:04 UTC 

[CVE-2026-53200][MODERATE 7.0] KVM: arm64: nv: Fix handling of XN[0] when !FEAT_XNX
 2026-06-26  0:48 UTC 

[CVE-2026-53203][IMPORTANT] accel/ivpu: Add buffer overflow check in MS get_info_ioctl
 2026-06-26  0:38 UTC 

[CVE-2026-53205][MODERATE REGULAR] accel/ivpu: Add bounds checks for firmware log indices
 2026-06-26  0:33 UTC 

[CVE-2026-53244][MODERATE 7.0] VFS: fix possible failure to unlock in nfsd4_create_file() [ Upstream
 2026-06-26  0:19 UTC 

[CVE-2026-53150][MODERATE 7.0] thunderbolt: Reject zero-length property entries in validator
 2026-06-26  0:04 UTC 

[CVE-2026-53148][IMPORTANT] thunderbolt: Clamp XDomain response data copy to allocation size
 2026-06-25 23:24 UTC 

[CVE-2026-53133][MODERATE 7.0] RDMA/umem: Fix truncation for block sizes >= 4G [ Upstream
 2026-06-25 23:17 UTC 

[CVE-2026-53230][MODERATE 7.0] net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list [ Upstream
 2026-06-25 21:53 UTC 

[CVE-2026-53143][IMPORTANT] drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11
 2026-06-25 21:42 UTC 

[CVE-2026-53184][MODERATE 7.0] udp: clear skb->dev before running a sockmap verdict
 2026-06-25 21:30 UTC 

[CVE-2026-53229][MODERATE 7.0] net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure [ Upstream
 2026-06-25 21:25 UTC 

[CVE-2026-52993][IMPORTANT] tipc: fix double-free in tipc_buf_append() [ Upstream
 2026-06-25 21:10 UTC 

[CVE-2026-52971][MODERATE 7.0] net: ena: PHC: Fix potential use-after-free in get_timestamp
 2026-06-25 21:04 UTC 

[CVE-2026-52969][IMPORTANT] KVM: Reject wrapped offset in kvm_reset_dirty_gfn()
 2026-06-25 20:59 UTC 

[CVE-2026-52947][MODERATE 7.0] net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove [ Upstream
 2026-06-25 20:51 UTC 

[CVE-2026-52973][IMPORTANT] futex: Drop CLONE_THREAD requirement for private default hash alloc [ Upstream
 2026-06-25 20:35 UTC 

[CVE-2026-53117][MODERATE 7.0] s390/cio: use generic driver_override infrastructure [ Upstream
 2026-06-25 20:31 UTC 

[CVE-2026-53072][MODERATE 7.0] Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER [ Upstream
 2026-06-25 20:24 UTC 

[CVE-2026-52986][MODERATE 7.0] netfilter: nf_conntrack_sip: don't use simple_strtoul [ Upstream
 2026-06-25 20:14 UTC 

[CVE-2026-53006][IMPORTANT] ipv6: fix possible UAF in icmpv6_rcv() [ Upstream
 2026-06-25 19:36 UTC 

[CVE-2026-53070][MODERATE REGULAR] sctp: disable BH before calling udp_tunnel_xmit_skb() [ Upstream
 2026-06-25 19:17 UTC 

[CVE-2026-53034][MODERATE 7.0] bpf, sockmap: Fix af_unix null-ptr-deref in proto update [ Upstream
 2026-06-25 19:12 UTC 

[CVE-2026-53002][IMPORTANT] netfilter: conntrack: remove sprintf usage [ Upstream
 2026-06-25 18:48 UTC 

[CVE-2026-53012][MODERATE REGULAR] nexthop: fix IPv6 route referencing IPv4 nexthop [ Upstream
 2026-06-25 18:26 UTC 

[CVE-2026-53044][MODERATE REGULAR] soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric lookup tables [ Upstream
 2026-06-25 18:20 UTC 

[CVE-2026-53080][LOW] net/sched: cls_fw: fix NULL dereference of "old" filters before change() [ Upstream
 2026-06-25 18:07 UTC 

[CVE-2026-53105][MODERATE REGULAR] wifi: mt76: mt7925: prevent NULL vif dereference in mt7925_mac_write_txwi [ Upstream
 2026-06-25 17:59 UTC 

[CVE-2026-53078][MODERATE 7.0] bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops [ Upstream
 2026-06-25 17:46 UTC 

[CVE-2026-53003][MODERATE REGULAR] pppoe: drop PFC frames [ Upstream
 2026-06-25 17:36 UTC 

[CVE-2026-53259][MODERATE 7.0] ipv6: anycast: insert aca into global hash under idev->lock [ Upstream
 2026-06-25 16:32 UTC 

[CVE-2026-53001][LOW] netfilter: xtables: restrict several matches to inet family [ Upstream
 2026-06-25 15:18 UTC 

[CVE-2026-53255][MODERATE REGULAR] Bluetooth: MGMT: validate advertising TLV before type checks [ Upstream
 2026-06-25 15:14 UTC 

[CVE-2026-52976][IMPORTANT] drm/xe: Fix error cleanup in xe_exec_queue_create_ioctl() [ Upstream
 2026-06-25 15:10 UTC 

[CVE-2026-53267][IMPORTANT] netfilter: nft_ct: bail out on template ct in get eval [ Upstream
 2026-06-25 15:06 UTC 

[CVE-2026-52994][MODERATE REGULAR] vsock/virtio: fix MSG_ZEROCOPY pinned-pages accounting [ Upstream
 2026-06-25 15:05 UTC 

[CVE-2026-53264][MODERATE 7.0] net/sched: act_api: use RCU with deferred freeing for action lifecycle [ Upstream
 2026-06-25 15:01 UTC 

[CVE-2026-53033][IMPORTANT] bpf, sockmap: Take state lock for af_unix iter [ Upstream
 2026-06-25 14:58 UTC 

[CVE-2026-53265][MODERATE 7.0] dm cache policy smq: check allocation under invalidate lock [ Upstream
 2026-06-25 14:57 UTC 

[CVE-2026-53269][MODERATE REGULAR] netfilter: synproxy: add mutex to guard hook reference counting [ Upstream
 2026-06-25 14:52 UTC 

[CVE-2026-53047][MODERATE 7.0] efi/capsule-loader: fix incorrect sizeof in phys array reallocation [ Upstream
 2026-06-25 14:48 UTC 

[CVE-2026-53239][MODERATE 7.0] xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() [ Upstream
 2026-06-25 14:47 UTC 

[CVE-2026-53263][MODERATE REGULAR] 6lowpan: fix off-by-one in multicast context address compression [ Upstream
 2026-06-25 14:43 UTC 

[CVE-2026-53254][MODERATE 7.0] Bluetooth: RFCOMM: validate skb length in MCC handlers [ Upstream
 2026-06-25 14:38 UTC 

[CVE-2026-53225][MODERATE REGULAR] sctp: fix uninit-value in __sctp_rcv_asconf_lookup() [ Upstream
 2026-06-25 14:34 UTC 

[CVE-2026-53272][MODERATE 7.0] erofs: fix use-after-free on sbi->sync_decompress [ Upstream
 2026-06-25 14:29 UTC 

[CVE-2026-53049][MODERATE 7.0] gfs2: add some missing log locking [ Upstream
 2026-06-25 14:24 UTC 

[CVE-2026-53268][MODERATE 7.0] netfilter: conntrack_irc: fix possible out-of-bounds read [ Upstream
 2026-06-25 14:23 UTC 

[CVE-2026-53252][LOW] Bluetooth: fix memory leak in error path of hci_alloc_dev() [ Upstream
 2026-06-25 14:18 UTC 

[CVE-2026-53031][MODERATE 7.0] bpf: Validate node_id in arena_alloc_pages() [ Upstream
 2026-06-25 14:15 UTC 

[CVE-2026-53246][IMPORTANT] sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing [ Upstream
 2026-06-25 14:13 UTC 

[CVE-2026-52966][MODERATE REGULAR] drm: Replace old pointer to new idr
 2026-06-25 14:09 UTC 

[CVE-2026-53253][MODERATE 7.0] Bluetooth: bnep: reject short frames before parsing [ Upstream
 2026-06-25 14:08 UTC 

[CVE-2026-53251][LOW] Bluetooth: ISO: Fix not releasing hdev reference on iso_conn_big_sync [ Upstream
 2026-06-25 14:04 UTC 

[CVE-2026-53000][IMPORTANT] netfilter: nat: use kfree_rcu to release ops [ Upstream
 2026-06-25 14:00 UTC 

[CVE-2026-53261][LOW] devlink: Release nested relation on devlink free [ Upstream
 2026-06-25 13:58 UTC 

[CVE-2026-53258][LOW] wifi: fix leak if split 6 GHz scanning fails [ Upstream
 2026-06-25 13:55 UTC 

[CVE-2026-53266][IMPORTANT] netfilter: bridge: make ebt_snat ARP rewrite writable [ Upstream
 2026-06-25 13:51 UTC 

[CVE-2026-53245][MODERATE REGULAR] net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr [ Upstream
 2026-06-25 13:46 UTC 

[CVE-2026-53274][LOW] net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS
 2026-06-25 13:42 UTC 

[CVE-2026-53007][LOW] ice: fix potential NULL pointer deref in error path of ice_set_ringparam() [ Upstream
 2026-06-25 13:39 UTC 

[CVE-2026-53241][MODERATE REGULAR] ALSA: seq: dummy: fix UMP event stack overread [ Upstream
 2026-06-25 13:34 UTC 

[CVE-2026-53228][MODERATE 7.0] ipv6: sit: reload inner IPv6 header after GSO offloads [ Upstream
 2026-06-25 13:31 UTC 

[CVE-2026-53227][MODERATE REGULAR] net: openvswitch: fix possible kfree_skb of ERR_PTR [ Upstream
 2026-06-25 13:26 UTC 

[CVE-2026-53232][MODERATE 7.0] net: phy: clean the sfp upstream if phy probing fails Sashiko reported that we don't call sfp_bus_del_upstream() in the probe failure path, so let's add it, otherwise the sfp-bus is left with a dangling 'upstream' field, that may be used later on during SFP events. This issue existed before the generic phylib sfp support, back when drivers were calling phy_sfp_probe themselves. Reviewed-by: Nicolai Buchwitz <[email protected]> Fixes: 298e54f ("net: phy: add core phylib sfp support") Signed-off-by: Maxime Chevallier <[email protected]> Link: https://patch.msgid.link/[email protected] Signed-off-by: Jakub Kicinski <[email protected]>
 2026-06-25 13:21 UTC 

[CVE-2026-53249][MODERATE 7.0] ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options [ Upstream
 2026-06-25 13:18 UTC 

[CVE-2026-53102][LOW] wifi: mt76: Fix memory leak after mt76_connac_mcu_alloc_sta_req() [ Upstream
 2026-06-25 13:18 UTC 

[CVE-2026-53270][MODERATE 7.0] ipvs: clear the svc scheduler ptr early on edit [ Upstream
 2026-06-25 13:13 UTC 

[CVE-2026-53250][MODERATE 7.0] xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() [ Upstream
 2026-06-25 13:09 UTC 

[CVE-2026-53257][MODERATE REGULAR] wifi: cfg80211: enforce HE/EHT cap/oper consistency [ Upstream
 2026-06-25 13:05 UTC 

[CVE-2026-52965][LOW] drm/ttm: Fix ttm_bo_swapout() infinite LRU walk on swapout failure
 2026-06-25 13:03 UTC 

[CVE-2026-53256][MODERATE 7.0] Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() [ Upstream
 2026-06-25 13:02 UTC 

[CVE-2026-53116][MODERATE 7.0] s390/ap: use generic driver_override infrastructure [ Upstream
 2026-06-25 12:57 UTC 

[CVE-2026-53275][MODERATE 7.0] ipv6: mcast: Fix use-after-free when processing MLD queries
 2026-06-25 12:57 UTC 

[CVE-2026-53260][MODERATE 7.0] tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). [ Upstream
 2026-06-25 12:51 UTC 

[CVE-2026-53050][MODERATE 7.0] quota: Fix race of dquot_scan_active() with quota deactivation [ Upstream
 2026-06-25 12:50 UTC 

[CVE-2026-52964][MODERATE REGULAR] ALSA: usb-audio: Bound MIDI 2.0 endpoint descriptor scans
 2026-06-25 12:41 UTC 

[CVE-2026-53218][MODERATE 7.0] netfilter: nft_exthdr: fix register tracking for F_PRESENT flag [ Upstream
 2026-06-25 11:58 UTC 

[CVE-2026-53188][MODERATE 7.0] RDMA/core: Validate the passed in fops for ib_get_ucaps()
 2026-06-25 11:50 UTC 

[CVE-2026-53193][MODERATE 7.0] ALSA: timer: Forcibly close timer instances at closing
 2026-06-25 11:45 UTC 

[CVE-2026-53194][IMPORTANT] USB: serial: kl5kusb105: fix bulk-out buffer overflow
 2026-06-25 11:41 UTC 

[CVE-2026-53192][MODERATE 7.0] ALSA: timer: Fix UAF at snd_timer_user_params()
 2026-06-25 11:35 UTC 

[CVE-2026-53238][MODERATE REGULAR] netlabel: validate unlabeled address and mask attribute lengths [ Upstream
 2026-06-25 11:29 UTC 

[CVE-2026-53224][MODERATE 7.0] sctp: validate embedded INIT chunk and address list lengths in cookie [ Upstream
 2026-06-25 11:23 UTC 

[CVE-2026-53189][MODERATE 7.0] mm/huge_memory: update file PMD counter before folio_put() [ Upstream
 2026-06-25 11:19 UTC 

[CVE-2026-53223][MODERATE 7.0] net: guard timestamp cmsgs to real error queue skbs [ Upstream
 2026-06-25 11:13 UTC 

[CVE-2026-53236][MODERATE 7.0] tcp: restrict SO_ATTACH_FILTER to priv users [ Upstream
 2026-06-25 11:08 UTC 

[CVE-2026-53212][MODERATE 7.0] netfilter: nft_tunnel: fix use-after-free on object destroy
 2026-06-25 11:04 UTC 

[CVE-2026-53196][IMPORTANT] USB: serial: io_ti: fix heap overflow in get_manuf_info()
 2026-06-25 10:58 UTC 

[CVE-2026-53187][MODERATE REGULAR] RDMA/core: Validate cpu_id against nr_cpu_ids in DMAH alloc
 2026-06-25 10:53 UTC 

[CVE-2026-53185][IMPORTANT] zram: fix use-after-free in zram_bvec_write_partial()
 2026-06-25 10:49 UTC 

[CVE-2026-53219][MODERATE REGULAR] netfilter: x_tables: avoid leaking percpu counter pointers [ Upstream
 2026-06-25 10:41 UTC 

[CVE-2026-53191][MODERATE REGULAR] io_uring/net: inherit IORING_CQE_F_BUF_MORE across bundle recv retries
 2026-06-25 10:37 UTC 

[CVE-2026-53221][MODERATE 7.0] ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() [ Upstream
 2026-06-25 10:32 UTC 

[CVE-2026-53209][MODERATE 7.0] Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend
 2026-06-25 10:26 UTC 

[CVE-2026-53195][MODERATE 7.0] USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr()
 2026-06-25 10:20 UTC 

[CVE-2026-53208][MODERATE 7.0] Bluetooth: L2CAP: reject BR/EDR signaling packets over MTUsig
 2026-06-25 10:12 UTC 

[CVE-2026-53220][MODERATE 7.0] netfilter: revalidate bridge ports [ Upstream
 2026-06-25 10:09 UTC 

[CVE-2026-53199][MODERATE REGULAR] hv_netvsc: use kmap_local_page in netvsc_copy_to_send_buf [ Upstream
 2026-06-25 10:02 UTC 

[CVE-2026-53207][LOW] mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison [ Upstream
 2026-06-25  9:58 UTC 

[CVE-2026-53151][MODERATE REGULAR] rxrpc: Fix the ACK parser to extract the SACK table for parsing
 2026-06-25  9:38 UTC 

[CVE-2026-53168][MODERATE 7.0] fuse: reject fuse_notify() pagecache ops on directories
 2026-06-25  9:34 UTC 

[CVE-2026-53182][MODERATE 7.0] wifi: nl80211: reject oversized EMA RNR lists
 2026-06-25  9:30 UTC 

[CVE-2026-53115][MODERATE 7.0] bus: fsl-mc: use generic driver_override infrastructure [ Upstream
 2026-06-25  9:28 UTC 

[CVE-2026-53167][MODERATE 7.0] fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios
 2026-06-25  9:26 UTC 

[CVE-2026-53183][MODERATE REGULAR] mptcp: allow subflow rcv wnd to shrink
 2026-06-25  9:22 UTC 

[CVE-2026-52989][IMPORTANT] nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers [ Upstream
 2026-06-25  9:21 UTC 

[CVE-2026-53154][LOW] mm/hugetlb: restore reservation on error in hugetlb folio copy paths
 2026-06-25  9:17 UTC 

[CVE-2026-53131][MODERATE 7.0] netfilter: require Ethernet MAC header before using eth_hdr() [ Upstream
 2026-06-25  9:13 UTC 

[CVE-2026-53156][MODERATE 7.0] nvmem: core: fix use-after-free bugs in error paths
 2026-06-25  9:06 UTC 

[CVE-2026-53073][MODERATE 7.0] Bluetooth: hci_ldisc: Clear HCI_UART_PROTO_INIT on error [ Upstream
 2026-06-25  9:04 UTC 

[CVE-2026-53134][MODERATE 7.0] netfilter: nft_fib: fix stale stack leak via the OIFNAME register [ Upstream
 2026-06-25  9:02 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox