public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-63982][LOW] net/sched: Fix ethx:ingress -> ethy:egress -> ethx:ingress mirred loop [ Upstream
 2026-07-20  0:48 UTC 

[CVE-2026-64116][MODERATE REGULAR] ipv6: ioam: add NULL check for idev in ipv6_hop_ioam() [ Upstream
 2026-07-20  0:46 UTC 

[CVE-2026-63894][MODERATE 7.0] usb: gadget: f_fs: serialize DMABUF cancel against request completion
 2026-07-20  0:43 UTC 

[CVE-2026-64097][MODERATE REGULAR] drm/amd/display: Validate GPIO pin LUT table size before iterating
 2026-07-20  0:43 UTC 

[CVE-2026-64072][LOW] nvme: fix bio leak on mapping failure [ Upstream
 2026-07-20  0:41 UTC 

[CVE-2026-63978][MODERATE 7.0] net/handshake: Drain pending requests at net namespace exit [ Upstream
 2026-07-20  0:39 UTC 

[CVE-2026-64030][IMPORTANT] wifi: mac80211: bounds-check link_id in ieee80211_ml_epcs [ Upstream
 2026-07-20  0:35 UTC 

[CVE-2026-63903][MODERATE REGULAR] USB: serial: belkin_sa: validate interrupt status length
 2026-07-20  0:32 UTC 

[CVE-2026-63997][LOW] ethtool: module: avoid leaking a netdev ref on module flash errors [ Upstream
 2026-07-20  0:28 UTC 

[CVE-2026-63883][MODERATE 7.0] serial: qcom_geni: fix kfifo underflow when flush precedes DMA completion IRQ [ Upstream
 2026-07-20  0:25 UTC 

[CVE-2026-63971][MODERATE 7.0] sctp: fix race between sctp_wait_for_connect and peeloff [ Upstream
 2026-07-20  0:21 UTC 

[CVE-2026-63921][IMPORTANT] ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate()
 2026-07-20  0:17 UTC 

[CVE-2026-63912][MODERATE 7.0] xfrm: esp: restore combined single-frag length gate
 2026-07-20  0:13 UTC 

[CVE-2026-63881][MODERATE 7.0] drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
 2026-07-20  0:09 UTC 

[CVE-2026-64048][MODERATE 7.0] net/smc: reject CHID-0 ACCEPT that matches an empty ism_dev slot [ Upstream
 2026-07-20  0:09 UTC 

[CVE-2026-64007][IMPORTANT] netfilter: synproxy: refresh tcphdr after skb_ensure_writable [ Upstream
 2026-07-20  0:05 UTC 

[CVE-2026-63938][MODERATE 7.0] KVM: SEV: Check PSC request indices against the actual size of the buffer
 2026-07-20  0:01 UTC 

[CVE-2026-63913][MODERATE 7.0] netfilter: conntrack: tcp: do not force CLOSE on invalid-seq RST without direction check
 2026-07-19 23:49 UTC 

[CVE-2026-63925][MODERATE 7.0] macsec: fix replay protection at XPN lower-PN wrap
 2026-07-19 23:45 UTC 

[CVE-2026-63899][IMPORTANT] USB: serial: mxuport: fix memory corruption with small endpoint
 2026-07-19 23:41 UTC 

[CVE-2026-63880][MODERATE REGULAR] drm/amdgpu: fix lock leak on ENOMEM in AMDGPU_GEM_OP_GET_MAPPING_INFO
 2026-07-19 23:37 UTC 

[CVE-2026-63929][LOW] iio: buffer: Fix DMA fence leak in iio_buffer_enqueue_dmabuf()
 2026-07-19 23:37 UTC 

[CVE-2026-64004][MODERATE REGULAR] net/iucv: fix locking in .getsockopt [ Upstream
 2026-07-19 23:35 UTC 

[CVE-2026-63919][MODERATE 7.0] xfrm: input: hold netns during deferred transport reinjection [ Upstream
 2026-07-19 23:31 UTC 

[CVE-2026-64008][IMPORTANT] accel/rocket: fix UAF via dangling GEM handle in create_bo [ Upstream
 2026-07-19 23:27 UTC 

[CVE-2026-64073][MODERATE 7.0] irq_work: Fix use-after-free in irq_work_single() on PREEMPT_RT [ Upstream
 2026-07-19 23:27 UTC 

[CVE-2026-63920][MODERATE 7.0] ipv6: validate extension header length before copying to cmsg
 2026-07-19 23:23 UTC 

[CVE-2026-64041][MODERATE 7.0] ASoC: codecs: fs210x: fix possible buffer overflow [ Upstream
 2026-07-19 23:19 UTC 

[CVE-2026-64015][MODERATE 7.0] security/keys: fix missed RCU read section on lookup
 2026-07-19 23:19 UTC 

[CVE-2026-63918][MODERATE 7.0] l2tp: use refcount_inc_not_zero in l2tp_session_get_by_ifname
 2026-07-19 23:16 UTC 

[CVE-2026-63988][LOW] bridge: Fix sleep in atomic context in sysfs path [ Upstream
 2026-07-19 23:12 UTC 

[CVE-2026-64006][MODERATE 7.0] netfilter: nf_tables: fix dst corruption in same register operation [ Upstream
 2026-07-19 23:11 UTC 

[CVE-2026-64002][MODERATE 7.0] ipv4: free net->ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() [ Upstream
 2026-07-19 23:07 UTC 

[CVE-2026-63984][MODERATE 7.0] ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() [ Upstream
 2026-07-19 23:03 UTC 

[CVE-2026-63955][LOW] mm/vmalloc: do not trigger BUG() on BH disabled context
 2026-07-19 22:59 UTC 

[CVE-2026-64066][LOW] netfs: Fix netfs_read_to_pagecache() to pause on subreq failure [ Upstream
 2026-07-19 22:57 UTC 

[CVE-2026-63990][LOW] bonding: refuse to enslave CAN devices [ Upstream
 2026-07-19 22:56 UTC 

[CVE-2026-64149][LOW] dma-mapping: move dma_map_resource() sanity check into debug code [ Upstream
 2026-07-19 22:52 UTC 

[CVE-2026-64034][MODERATE 7.0] net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer [ Upstream
 2026-07-19 22:50 UTC 

[CVE-2026-64125][MODERATE 7.0] net: bcmgenet: keep RBUF EEE/PM disabled
 2026-07-19 22:44 UTC 

[CVE-2026-63898][MODERATE 7.0] USB: serial: mct_u232: fix memory corruption with small endpoint
 2026-07-19 22:40 UTC 

[CVE-2026-63958][MODERATE 7.0] usb: typec: ucsi: validate connector number in ucsi_connector_change()
 2026-07-19 22:36 UTC 

[CVE-2026-63885][MODERATE 7.0] drm/gem: fix race between change_handle and handle_delete
 2026-07-19 22:33 UTC 

[CVE-2026-64065][MODERATE REGULAR] netfs: fix VM_BUG_ON_FOLIO() issue in netfs_write_begin() call [ Upstream
 2026-07-19 22:32 UTC 

[CVE-2026-63891][MODERATE 7.0] thunderbolt: property: Cap recursion depth in __tb_property_parse_dir() [ Upstream
 2026-07-19 22:30 UTC 

[CVE-2026-63963][MODERATE REGULAR] usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers
 2026-07-19 22:30 UTC 

[CVE-2026-63995][MODERATE 7.0] ethtool: cmis: validate start_cmd_payload_size from module [ Upstream
 2026-07-19 22:27 UTC 

[CVE-2026-63999][LOW] ethtool: rss: fix indir_table and hkey leak on get_rxfh failure [ Upstream
 2026-07-19 22:23 UTC 

[CVE-2026-64042][IMPORTANT] vfio/pci: Check BAR resources before exporting a DMABUF [ Upstream
 2026-07-19 22:20 UTC 

[CVE-2026-63897][MODERATE REGULAR] USB: serial: mct_u232: fix missing interrupt-in transfer sanity check
 2026-07-19 22:18 UTC 

[CVE-2026-64024][MODERATE 7.0] tcp: fix stale per-CPU tcp_tw_isn leak enabling ISN prediction [ Upstream
 2026-07-19 22:13 UTC 

[CVE-2026-63923][IMPORTANT] octeontx2-af: validate body pcifunc in rvu_mbox_handler_rep_event_notify
 2026-07-19 22:10 UTC 

[CVE-2026-63947][MODERATE 7.0] Bluetooth: HIDP: fix missing length checks in hidp_input_report()
 2026-07-19 22:07 UTC 

[CVE-2026-63957][MODERATE 7.0] USB: serial: safe_serial: fix memory corruption with small endpoint
 2026-07-19 22:03 UTC 

[CVE-2026-64106][MODERATE REGULAR] KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits
 2026-07-19 21:59 UTC 

[CVE-2026-64146][LOW] erofs: fix metabuf leak in inode xattr initialization [ Upstream
 2026-07-19 21:55 UTC 

[CVE-2026-64037][IMPORTANT] wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled [ Upstream
 2026-07-19 21:52 UTC 

[CVE-2026-64054][MODERATE 7.0] net: shaper: reject duplicate leaves in GROUP request [ Upstream
 2026-07-19 21:48 UTC 

[CVE-2026-64060][LOW] netfs: Fix leak of request in netfs_write_begin() error handling [ Upstream
 2026-07-19 21:45 UTC 

[CVE-2026-63914][MODERATE 7.0] xfrm: route MIGRATE notifications to caller's netns
 2026-07-19 21:41 UTC 

[CVE-2026-63922][IMPORTANT] ipv6: exthdrs: refresh nh after handling HAO option
 2026-07-19 21:37 UTC 

[CVE-2026-64051][IMPORTANT] accel/qaic: Add overflow check to remap_pfn_range during mmap [ Upstream
 2026-07-19 21:33 UTC 

[CVE-2026-64067][MODERATE REGULAR] netfs: Fix missing barriers when accessing stream->subrequests locklessly [ Upstream
 2026-07-19 21:31 UTC 

[CVE-2026-64064][MODERATE REGULAR] netfs: Fix netfs_invalidate_folio() to clear dirty bit if all changes gone [ Upstream
 2026-07-19 21:30 UTC 

[CVE-2026-64080][MODERATE 7.0] firmware: arm_ffa: Snapshot notifier callbacks under lock [ Upstream
 2026-07-19 21:28 UTC 

[CVE-2026-63926][MODERATE 7.0] bpf: sockmap: fix tail fragment offset in bpf_msg_push_data
 2026-07-19 21:28 UTC 

[CVE-2026-64105][LOW] KVM: arm64: vgic: Free private_irqs when init fails after allocation
 2026-07-19 21:23 UTC 

[CVE-2026-64118][MODERATE 7.0] qed: fix double free in qed_cxt_tables_alloc() [ Upstream
 2026-07-19 21:20 UTC 

[CVE-2026-63875][IMPORTANT] arm64: tlb: Flush walk cache when unsharing PMD tables [ Upstream
 2026-07-19 21:16 UTC 

[CVE-2026-63892][MODERATE REGULAR] thunderbolt: property: Reject dir_len < 4 to prevent size_t underflow
 2026-07-19 21:14 UTC 

[CVE-2026-64039][LOW] drm/msm/snapshot: fix dumping of the unaligned regions [ Upstream
 2026-07-19 21:12 UTC 

[CVE-2026-64061][IMPORTANT] netfs: Fix early put of sink folio in netfs_read_gaps() [ Upstream
 2026-07-19 21:12 UTC 

[CVE-2026-63935][LOW] iio: adc: nxp-sar-adc: fix division by zero in write_raw
 2026-07-19 21:10 UTC 

[CVE-2026-63983][MODERATE REGULAR] net/sched: fix packet loop on netem when duplicate is on [ Upstream
 2026-07-19 21:09 UTC 

[CVE-2026-64000][MODERATE 7.0] net: hsr: fix potential OOB access in supervision frame handling [ Upstream
 2026-07-19 21:05 UTC 

[CVE-2026-63879][IMPORTANT] drm/amdgpu: fix amdgpu_hmm_range_get_pages
 2026-07-19 21:02 UTC 

[CVE-2026-63944][MODERATE 7.0] Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync [ Upstream
 2026-07-19 21:01 UTC 

[CVE-2026-63889][MODERATE 7.0] scsi: scsi_transport_fc: Widen FPIN pname walker counter to u32
 2026-07-19 20:58 UTC 

[CVE-2026-63987][MODERATE 7.0] ethtool: coalesce: cap profile updates at NET_DIM_PARAMS_NUM_PROFILES [ Upstream
 2026-07-19 20:54 UTC 

[CVE-2026-64028][LOW] tracing: Avoid NULL return from hist_field_name() on truncation [ Upstream
 2026-07-19 20:51 UTC 

[CVE-2026-64035][MODERATE 7.0] igc: set tx buffer type for SMD frames [ Upstream
 2026-07-19 20:48 UTC 

[CVE-2026-63970][IMPORTANT] vsock/virtio: bind uarg before filling zerocopy skb [ Upstream
 2026-07-19 20:45 UTC 

[CVE-2026-63928][MODERATE 7.0] USB: serial: omninet: fix memory corruption with small endpoint
 2026-07-19 20:41 UTC 

[CVE-2026-64121][MODERATE REGULAR] net: ifb: report ethtool stats over num_tx_queues
 2026-07-19 20:37 UTC 

[CVE-2026-64103][MODERATE 7.0] scsi: isci: Fix use-after-free in device removal path
 2026-07-19 20:33 UTC 

[CVE-2026-64150][MODERATE REGULAR] netfilter: nft_inner: release local_lock before re-enabling softirqs [ Upstream
 2026-07-19 20:29 UTC 

[CVE-2026-64003][LOW] scsi: core: Run queues for all non-SDEV_DEL devices from scsi_run_host_queues [ Upstream
 2026-07-19 20:27 UTC 

[CVE-2026-63996][MODERATE 7.0] ethtool: cmis: require exact CDB reply length [ Upstream
 2026-07-19 20:24 UTC 

[CVE-2026-64005][MODERATE 7.0] net/smc: Do not re-initialize smc hashtables [ Upstream
 2026-07-19 20:20 UTC 

[CVE-2026-64063][MODERATE REGULAR] netfs: Fix streaming write being overwritten [ Upstream
 2026-07-19 20:16 UTC 

[CVE-2026-64058][MODERATE 7.0] netfs: Fix netfs_read_folio() to wait on writeback [ Upstream
 2026-07-19 20:14 UTC 

[CVE-2026-63937][MODERATE 7.0] KVM: SEV: Use READ_ONCE() when reading entries/indices from PSC buffer
 2026-07-19 20:12 UTC 

[CVE-2026-64178][MODERATE REGULAR] Bluetooth: bnep: Fix UAF read of dev->name
 2026-07-19 20:08 UTC 

[CVE-2026-64070][LOW] powerpc/hv-gpci: fix preempt count leak in sysfs show paths [ Upstream
 2026-07-19 20:04 UTC 

[CVE-2026-64053][MODERATE 7.0] block: don't overwrite bip_vcnt in bio_integrity_copy_user() [ Upstream
 2026-07-19 20:01 UTC 

[CVE-2026-64152][LOW] iommu: Handle unmap error when iommu_debug is enabled [ Upstream
 2026-07-19 19:57 UTC 

[CVE-2026-64134][LOW] ALSA: pcm: Don't setup bogus iov_iter for silencing
 2026-07-19 19:56 UTC 

[CVE-2026-64184][LOW] mm/damon/sysfs-schemes: call missing mem_cgroup_iter_break()
 2026-07-19 19:53 UTC 

[CVE-2026-64174][MODERATE 7.0] wifi: cfg80211: advance loop vars in cfg80211_merge_profile()
 2026-07-19 19:49 UTC 

[CVE-2026-63981][MODERATE 7.0] net/sched: act_mirred: Fix blockcast recursion bypass leading to stack overflow
 2026-07-19 19:46 UTC 

[CVE-2026-64182][LOW] drivers/base/memory: fix memory block reference leak in poison accounting
 2026-07-19 19:44 UTC 

[CVE-2026-64117][MODERATE 7.0] wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb
 2026-07-19 19:41 UTC 

[CVE-2026-64158][LOW] netfs: Fix write streaming disablement if fd open O_RDWR [ Upstream
 2026-07-19 19:37 UTC 

[CVE-2026-64180][LOW] mm/memory_hotplug: fix memory block reference leak on remove
 2026-07-19 19:35 UTC 

[CVE-2026-63950][IMPORTANT] mm/rmap: initialize nr_pages to 1 at loop start in try_to_unmap_one
 2026-07-19 19:32 UTC 

[CVE-2026-64173][MODERATE 7.0] tracing: Do not call map->ops->elt_free() if elt_alloc() fails
 2026-07-19 19:30 UTC 

[CVE-2026-64109][MODERATE 7.0] af_unix: Fix UAF read of tail->len in unix_stream_data_wait() [ Upstream
 2026-07-19 19:26 UTC 

[CVE-2026-64036][MODERATE REGULAR] cgroup/rstat: validate cpu before css_rstat_cpu() access [ Upstream
 2026-07-19 19:22 UTC 

[CVE-2026-64019][MODERATE REGULAR] nvme-pci: fix dma mapping leak on data setup error [ Upstream
 2026-07-19 19:19 UTC 

[CVE-2026-64153][LOW] drm/msm: Fix iommu_map_sgtable() return value check and avoid WARN [ Upstream
 2026-07-19 19:17 UTC 

[CVE-2026-64017][IMPORTANT] blk-mq: pop cached request if it is usable [ Upstream
 2026-07-19 19:17 UTC 

[CVE-2026-64171][LOW] i2c: tegra: fix pm_runtime leak on mutex_lock failure
 2026-07-19 19:14 UTC 

[CVE-2026-64119][MODERATE 7.0] l2tp: use list_del_rcu in l2tp_session_unhash
 2026-07-19 19:13 UTC 

[CVE-2026-64128][MODERATE REGULAR] Bluetooth: ISO: drop ISO_END frames received without prior ISO_START
 2026-07-19 19:11 UTC 

[CVE-2026-63927][MODERATE REGULAR] usb: dwc2: Fix use after free in debug code
 2026-07-19 19:07 UTC 

[CVE-2026-64151][LOW] iommupt: Check for missing PAGE_SIZE in the pgsize_bitmap [ Upstream
 2026-07-19 19:02 UTC 

[CVE-2026-63991][LOW] Bluetooth: 6lowpan: check skb_clone() return value in send_mcast_pkt() [ Upstream
 2026-07-19 19:02 UTC 

[CVE-2026-64014][MODERATE REGULAR] Input: usbtouchscreen - clamp NEXIO data_len/x_len to URB buffer size
 2026-07-19 19:02 UTC 

[CVE-2026-64175][LOW] wifi: iwlwifi: mld: stop TX during firmware restart
 2026-07-19 19:02 UTC 

[CVE-2026-64155][LOW] wifi: ath11k: fix error path leaks in some WMI WOW calls [ Upstream
 2026-07-19 18:57 UTC 

[CVE-2026-63956][IMPORTANT] USB: serial: cypress_m8: fix memory corruption with small endpoint
 2026-07-19 18:53 UTC 

[CVE-2026-64162][LOW] idpf: fix read_dev_clk_lock spinlock init in idpf_ptp_init() [ Upstream
 2026-07-19 18:49 UTC 

[CVE-2026-63979][MODERATE 7.0] net/handshake: hand off the pinned file reference to accept_doit [ Upstream
 2026-07-19 18:46 UTC 

[CVE-2026-64163][LOW] test_kprobes: clear kprobes between test runs [ Upstream
 2026-07-19 18:43 UTC 

[CVE-2026-64059][MODERATE REGULAR] netfs: Fix folio->private handling in netfs_perform_write() [ Upstream
 2026-07-19 18:43 UTC 

[CVE-2026-64123][MODERATE REGULAR] net: hsr: defer node table free until after RCU readers [ Upstream
 2026-07-19 18:41 UTC 

[CVE-2026-64098][MODERATE 7.0] drm/virtio: use uninterruptible resv lock for plane updates
 2026-07-19 18:37 UTC 

[CVE-2026-64131][LOW] mm/memory: fix spurious warning when unmapping device-private/exclusive pages [ Upstream
 2026-07-19 18:33 UTC 

[CVE-2026-63998][LOW] ethtool: module: call ethnl_ops_complete() on module flash errors [ Upstream
 2026-07-19 18:29 UTC 

[CVE-2026-64172][LOW] KVM: SVM: Disable AVIC IPI virtualization on Hygon Family 18h (erratum #1235)
 2026-07-19 18:27 UTC 

[CVE-2026-64079][MODERATE 7.0] netfilter: x_tables: allocate hook ops while under mutex [ Upstream
 2026-07-19 18:25 UTC 

[CVE-2026-64160][MODERATE 7.0] netfs: Fix potential for tearing in ->remote_i_size and ->zero_point [ Upstream
 2026-07-19 18:22 UTC 

[CVE-2026-64057][MODERATE 7.0] afs: Fix the locking used by afs_get_link() [ Upstream
 2026-07-19 18:19 UTC 

[CVE-2026-64176][LOW] wifi: iwlwifi: mvm: fix driver-set TX rates on old devices
 2026-07-19 18:17 UTC 

[CVE-2026-63980][MODERATE REGULAR] net/handshake: Use spin_lock_bh for hn_lock [ Upstream
 2026-07-19 18:15 UTC 

[CVE-2026-63974][LOW] Bluetooth: hci_sync: Set HCI_CMD_DRAIN_WORKQUEUE during device close [ Upstream
 2026-07-19 18:11 UTC 

[CVE-2026-63992][MODERATE 7.0] tunnels: do not assume transport header in iptunnel_pmtud_check_icmp() [ Upstream
 2026-07-19 18:08 UTC 

[CVE-2026-64132][IMPORTANT] ipv6: ioam: refresh hdr pointer before ioam6_event()
 2026-07-19 18:04 UTC 

[CVE-2026-63940][MODERATE 7.0] KVM: SEV: Ignore Port I/O requests of length '0'
 2026-07-19 18:02 UTC 

[CVE-2026-64130][MODERATE REGULAR] mm/page_alloc: fix initialization of tags of the huge zero folio with init_on_free
 2026-07-19 17:58 UTC 

[CVE-2026-63964][LOW] usb: typec: ucsi: ccg: reject firmware images without a ':' record header
 2026-07-19 17:56 UTC 

[CVE-2026-64185][LOW] sysfs: don't remove existing directory on update failure
 2026-07-19 17:53 UTC 

[CVE-2026-63904][MODERATE REGULAR] usb: usbtmc: check URB actual_length for interrupt-IN notifications
 2026-07-19 17:49 UTC 

[CVE-2026-64186][LOW] iommu/amd: Remove latent out-of-bounds access in IOMMU debugfs [ Upstream
 2026-07-19 17:45 UTC 

[CVE-2026-64011][MODERATE 7.0] nfc: llcp: Fix use-after-free in llcp_sock_release() [ Upstream
 2026-07-19 17:42 UTC 

[CVE-2026-64156][MODERATE REGULAR] netfs, afs: Fix write skipping in dir/link writepages [ Upstream
 2026-07-19 17:42 UTC 

[CVE-2026-64133][MODERATE REGULAR] ALSA: asihpi: Fix potential OOB array access at reading cache
 2026-07-19 17:40 UTC 

[CVE-2026-64159][MODERATE REGULAR] netfs: Fix zeropoint update where i_size > remote_i_size [ Upstream
 2026-07-19 17:36 UTC 

[CVE-2026-63962][IMPORTANT] usb: typec: tcpm: bound altmode_desc[] per iteration in svdm_consume_modes()
 2026-07-19 17:35 UTC 

[CVE-2026-64183][LOW] efi: Allocate runtime workqueue before ACPI init
 2026-07-19 17:33 UTC 

[CVE-2026-63893][MODERATE REGULAR] thunderbolt: property: Reject u32 wrap in tb_property_entry_valid()
 2026-07-19 17:30 UTC 

[CVE-2026-64126][MODERATE 7.0] Bluetooth: MGMT: validate Add Extended Advertising Data length [ Upstream
 2026-07-19 17:30 UTC 

[CVE-2026-63961][MODERATE REGULAR] usb: typec: altmodes/displayport: validate count before reading Status Update VDO
 2026-07-19 17:26 UTC 

[CVE-2026-64177][MODERATE REGULAR] phonet/pep: disable BH around forwarded sk_receive_skb()
 2026-07-19 17:22 UTC 

[CVE-2026-64181][MODERATE REGULAR] mm: fix __vm_normal_page() to handle missing support for pmd_special()/pud_special()
 2026-07-19 17:22 UTC 

[CVE-2026-63939][IMPORTANT] KVM: SEV: Compute the correct max length of the in-GHCB scratch area
 2026-07-19 17:20 UTC 

[CVE-2026-64179][LOW] net: wwan: iosm: fix potential memory leaks in ipc_imem_init()
 2026-07-19 17:17 UTC 

[CVE-2026-63900][MODERATE REGULAR] USB: serial: keyspan: fix missing indat transfer sanity check
 2026-07-19 17:13 UTC 

[CVE-2026-64170][MODERATE REGULAR] spi: qup: fix error pointer deref after DMA setup failure [ Upstream
 2026-07-19 17:08 UTC 

[CVE-2026-63976][MODERATE 7.0] Bluetooth: l2cap: clear chan->ident on ECRED reconfiguration success [ Upstream
 2026-07-19 17:04 UTC 

[CVE-2026-63989][LOW] bridge: Fix sleep in atomic context in netlink path [ Upstream
 2026-07-19 16:58 UTC 

[CVE-2026-64127][MODERATE REGULAR] Bluetooth: L2CAP: ecred_reconfigure: send packed pdu, not stack pointer
 2026-07-19 16:57 UTC 

[CVE-2026-63917][IMPORTANT] ip6: vti: Use ip6_tnl.net in vti6_changelink()
 2026-07-19 16:53 UTC 

[CVE-2026-64157][MODERATE 7.0] netfs: Fix partial invalidation of streaming-write folio [ Upstream
 2026-07-19 16:45 UTC 

[CVE-2026-64026][IMPORTANT] rxrpc: Fix DATA decrypt vs splice() by copying data to buffer in recvmsg [ Upstream
 2026-07-19 16:42 UTC 

[CVE-2026-64144][LOW] Bluetooth: btmtk: fix urb->setup_packet leak in error paths [ Upstream
 2026-07-19 16:38 UTC 

[CVE-2026-63887][IMPORTANT] scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf [ Upstream
 2026-07-19 16:34 UTC 

[CVE-2026-63986][MODERATE REGULAR] ethtool: tsinfo: don't pass ERR_PTR to genlmsg_cancel on prepare failure [ Upstream
 2026-07-19 16:30 UTC 

[CVE-2026-64120][LOW] net: ethtool: fix NULL pointer dereference in phy_reply_size [ Upstream
 2026-07-19 16:27 UTC 

[CVE-2026-63941][MODERATE 7.0] KVM: arm64: Correctly cap ZCR_EL2 provided by a guest hypervisor
 2026-07-19 16:25 UTC 

[CVE-2026-64040][LOW] cachefiles: Fix error return when vfs_mkdir() fails [ Upstream
 2026-07-19 16:22 UTC 

[CVE-2026-64078][LOW] netfilter: x_tables: add and use xtables_unregister_table_exit [ Upstream
 2026-07-19 16:20 UTC 

[CVE-2026-64113][IMPORTANT] ixgbevf: fix use-after-free in VEPA multicast source pruning
 2026-07-19 16:19 UTC 

[CVE-2026-64025][MODERATE 7.0] bpf, skmsg: fix verdict sk_data_ready racing with ktls rx [ Upstream
 2026-07-19 16:15 UTC 

[CVE-2026-64077][MODERATE 7.0] netfilter: ebtables: move to two-stage removal scheme [ Upstream
 2026-07-19 16:10 UTC 

[CVE-2026-63977][MODERATE 7.0] dpll: zl3073x: use __dpll_device_change_ntf() and remove change_work [ Upstream
 2026-07-19 16:09 UTC 

[CVE-2026-63878][MODERATE REGULAR] drm/amdgpu: check num_entries in GEM_OP GET_MAPPING_INFO
 2026-07-19 16:05 UTC 

[CVE-2026-63884][IMPORTANT] drm/i915: Fix potential UAF in TTM object purge
 2026-07-19 16:05 UTC 

[CVE-2026-64020][LOW] nvme-pci: fix dma_vecs leak on p2p memory [ Upstream
 2026-07-19 16:05 UTC 

[CVE-2026-64047][MODERATE 7.0] net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring [ Upstream
 2026-07-19 16:04 UTC 

[CVE-2026-63876][LOW] serial: zs: Convert to use a platform device
 2026-07-19 15:59 UTC 

[CVE-2026-64137][IMPORTANT] smb: client: require net admin for CIFS SWN netlink [ Upstream
 2026-07-19 15:59 UTC 

[CVE-2026-63890][MODERATE REGULAR] scsi: fcoe: Reject FIP descriptors with zero fip_dlen in CVL walker
 2026-07-19 15:59 UTC 

[CVE-2026-64009][IMPORTANT] xfrm: Check for underflow in xfrm_state_mtu [ Upstream
 2026-07-19 15:56 UTC 

[CVE-2026-64046][MODERATE REGULAR] net: tls: prevent chain-after-chain in plain text SG [ Upstream
 2026-07-19 15:51 UTC 

[CVE-2026-64107][LOW] ASoC: codecs: pcm512x: fix null-ptr dereference in pcm512x_overclock_xxx_put()
 2026-07-19 15:43 UTC 

[CVE-2026-64145][LOW] wifi: wilc1000: fix dma_buffer leak on bus acquire failure [ Upstream
 2026-07-19 15:43 UTC 

[CVE-2026-63843][LOW] drm/amdgpu/jpeg: set no_user_fence for JPEG v4.0.5 ring [ Upstream
 2026-07-19 15:42 UTC 

[CVE-2026-63852][MODERATE REGULAR] drm/amdgpu/vcn: set no_user_fence for VCN v4.0.3 enc ring [ Upstream
 2026-07-19 15:42 UTC 

[CVE-2026-63842][MODERATE REGULAR] drm/amdgpu/jpeg: set no_user_fence for JPEG v5.0.0 ring [ Upstream
 2026-07-19 15:42 UTC 

[CVE-2026-63837][MODERATE REGULAR] net: ena: PHC: Check return code before setting timestamp output
 2026-07-19 15:42 UTC 

[CVE-2026-63845][LOW] drm/amdgpu/jpeg: set no_user_fence for JPEG v4.0 ring [ Upstream
 2026-07-19 15:39 UTC 

[CVE-2026-63860][MODERATE REGULAR] RDMA/core: Prefer NLA_NUL_STRING [ Upstream
 2026-07-19 15:39 UTC 

[CVE-2026-63872][LOW] esp: fix page frag reference leak on skb_to_sgvec failure [ Upstream
 2026-07-19 15:35 UTC 

[CVE-2026-63850][MODERATE REGULAR] drm/amdgpu/vcn: set no_user_fence for VCN v5.0.0 enc ring [ Upstream
 2026-07-19 15:32 UTC 

[CVE-2026-63841][MODERATE REGULAR] drm/amdgpu/jpeg: set no_user_fence for JPEG v5.0.1 ring [ Upstream
 2026-07-19 15:32 UTC 

[CVE-2026-63866][IMPORTANT] wifi: mt76: mt7996: Clear wcid pointer in mt7996_mac_sta_deinit_link() [ Upstream
 2026-07-19 15:32 UTC 

[CVE-2026-63854][MODERATE REGULAR] drm/amdgpu/vcn: set no_user_fence for VCN v3.0 enc/dec rings [ Upstream
 2026-07-19 15:32 UTC 

[CVE-2026-63851][LOW] drm/amdgpu/vcn: set no_user_fence for VCN v4.0.5 enc ring [ Upstream
 2026-07-19 15:32 UTC 

[CVE-2026-63855][LOW] drm/amdgpu/vcn: set no_user_fence for VCN v2.5 enc/dec rings [ Upstream
 2026-07-19 15:32 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox