public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-64300][IMPORTANT] perf/aux: Fix page UAF in map_range()
 2026-07-25 14:52 UTC 

[CVE-2026-64374][MODERATE REGULAR] sched/rt: Have RT_PUSH_IPI be default off for non PREEMPT_RT
 2026-07-25 14:50 UTC 

[CVE-2026-64297][LOW] module: decompress: check return value of module_extend_max_pages()
 2026-07-25 14:50 UTC 

[CVE-2026-64406][MODERATE REGULAR] Bluetooth: fix UAF in bt_accept_dequeue()
 2026-07-25 14:45 UTC 

[CVE-2026-64519][LOW] NFSD: Fix infinite loop in layout state revocation [ Upstream
 2026-07-25 14:42 UTC 

[CVE-2026-64513][LOW] KVM: x86: Unconditionally recompute CR8 intercept on PPR update [ Upstream
 2026-07-25 14:39 UTC 

[CVE-2026-64256][LOW] xfs: don't wrap around quota ids in dqiterate
 2026-07-25 14:36 UTC 

[CVE-2026-64436][MODERATE 7.0] net: af_key: initialize alg_key_len for IPComp states
 2026-07-25 14:33 UTC 

[CVE-2026-64306][MODERATE 7.0] crypto: drbg - Fix returning success on failure in CTR_DRBG
 2026-07-25 14:28 UTC 

[CVE-2026-64473][MODERATE 7.0] vfio: Remove device debugfs before releasing devres
 2026-07-25 14:26 UTC 

[CVE-2026-64426][MODERATE REGULAR] io_uring/nop: fix file reference leak with IOSQE_FIXED_FILE
 2026-07-25 14:22 UTC 

[CVE-2026-64281][MODERATE REGULAR] svcrdma: wake sq waiters when the transport closes
 2026-07-25 14:19 UTC 

[CVE-2026-64286][MODERATE 7.0] KVM: arm64: Clear __hyp_running_vcpu when flushing the pKVM hyp vCPU
 2026-07-25 14:18 UTC 

[CVE-2026-64343][MODERATE REGULAR] USB: ldusb: fix use-after-free on disconnect race
 2026-07-25 14:18 UTC 

[CVE-2026-64324][MODERATE 7.0] udf: validate free block extents against the partition length
 2026-07-25 14:13 UTC 

[CVE-2026-64487][MODERATE REGULAR] ALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parser
 2026-07-25 14:11 UTC 

[CVE-2026-64352][LOW] bpf: Allow LPM map access from sleepable BPF programs [ Upstream
 2026-07-25 14:07 UTC 

[CVE-2026-64448][MODERATE 7.0] smb: client: restrict implied bcc[0] exemption to responses without data area [ Upstream
 2026-07-25 14:03 UTC 

[CVE-2026-64430][LOW] NTB: epf: Avoid calling pci_irq_vector() from hardirq context
 2026-07-25 13:59 UTC 

[CVE-2026-64332][LOW] USB: ulpi: fix memory leak on registration failure
 2026-07-25 13:59 UTC 

[CVE-2026-64496][MODERATE REGULAR] iio: event: Fix event FIFO reset race
 2026-07-25 13:55 UTC 

[CVE-2026-64475][MODERATE 7.0] vfio/pci: Release the VGA arbiter client on register_device() failure [ Upstream
 2026-07-25 13:51 UTC 

[CVE-2026-64387][IMPORTANT] smb: client: fix query directory replay double-free
 2026-07-25 13:47 UTC 

[CVE-2026-64372][MODERATE 7.0] cpufreq: pcc: fix use-after-free and double free in _OSC evaluation
 2026-07-25 13:43 UTC 

[CVE-2026-64338][MODERATE 7.0] USB: misc: uss720: unregister parport on probe failure
 2026-07-25 13:39 UTC 

[CVE-2026-64471][MODERATE 7.0] Bluetooth: btusb: fix use-after-free on registration failure
 2026-07-25 13:35 UTC 

[CVE-2026-64267][MODERATE 7.0] fuse: avoid 32-bit prune notification count wrap
 2026-07-25 13:31 UTC 

[CVE-2026-64491][MODERATE 7.0] ALSA: usx2y: us144mkii: fix work UAF on disconnect
 2026-07-25 13:30 UTC 

[CVE-2026-64347][MODERATE REGULAR] usb: gadget: composite: fix dead empty check in the USB_DT_OTG handler
 2026-07-25 13:26 UTC 

[CVE-2026-64434][IMPORTANT] Bluetooth: L2CAP: Fix UAF in channel timeout by holding conn ref [ Upstream
 2026-07-25 13:22 UTC 

[CVE-2026-64368][MODERATE REGULAR] mm/slab: do not limit zeroing to orig_size when only red zoning is enabled [ Upstream
 2026-07-25 13:19 UTC 

[CVE-2026-64485][LOW] ALSA: compress: Fix task creation error unwind
 2026-07-25 13:16 UTC 

[CVE-2026-64401][MODERATE 7.0] smb: client: resolve SWN tcon from live registrations [ Upstream
 2026-07-25 13:13 UTC 

[CVE-2026-64355][MODERATE 7.0] bpf: Reject fragmented frames in devmap [ Upstream
 2026-07-25 13:13 UTC 

[CVE-2026-64403][MODERATE 7.0] Bluetooth: L2CAP: validate option length before reading conf opt value
 2026-07-25 13:07 UTC 

[CVE-2026-64450][MODERATE 7.0] tipc: fix out-of-bounds read in broadcast Gap ACK blocks
 2026-07-25 13:03 UTC 

[CVE-2026-64277][IMPORTANT] Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count
 2026-07-25 12:59 UTC 

[CVE-2026-64482][LOW] ALSA: gus: check snd_ctl_new1() return value
 2026-07-25 12:56 UTC 

[CVE-2026-64407][MODERATE REGULAR] Bluetooth: btnxpuart: Fix out-of-bounds firmware read in nxp_recv_fw_req_v3()
 2026-07-25 12:53 UTC 

[CVE-2026-64295][LOW] mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access
 2026-07-25 12:53 UTC 

[CVE-2026-64333][MODERATE REGULAR] USB: serial: digi_acceleport: fix write buffer corruption [ Upstream
 2026-07-25 12:53 UTC 

[CVE-2026-64478][MODERATE REGULAR] ALSA: usb-audio: avoid kobject path lookup in DualSense match
 2026-07-25 12:49 UTC 

[CVE-2026-64414][MODERATE 7.0] netfilter: handle unreadable frags
 2026-07-25 12:45 UTC 

[CVE-2026-64410][MODERATE 7.0] netfilter: flowtable: IPIP tunnel hardware offload is not yet support
 2026-07-25 12:43 UTC 

[CVE-2026-64327][MODERATE REGULAR] usb: gadget: f_fs: Initialize epfile->in early to fix endpoint direction checks
 2026-07-25 12:41 UTC 

[CVE-2026-64294][LOW] mm: do file ownership checks with the proper mount idmap [ Upstream
 2026-07-25 12:41 UTC 

[CVE-2026-64284][MODERATE REGULAR] KVM: x86: Ensure vendor's exit handler runs before fastpath userspace exits
 2026-07-25 12:37 UTC 

[CVE-2026-64526][MODERATE REGULAR] ethtool: tsconfig: fix missing ethnl_ops_complete() [ Upstream
 2026-07-25 12:34 UTC 

[CVE-2026-64488][LOW] ALSA: aoa: check snd_ctl_new1() return value [ Upstream
 2026-07-25 12:30 UTC 

[CVE-2026-64299][MODERATE REGULAR] tracing: Prevent out-of-bounds read in glob matching
 2026-07-25 12:30 UTC 

[CVE-2026-64472][MODERATE 7.0] vfio/mlx5: Fix racy bitfields and tighten struct layout [ Upstream
 2026-07-25 12:26 UTC 

[CVE-2026-64480][LOW] ALSA: ice1712: check snd_ctl_new1() return value
 2026-07-25 12:26 UTC 

[CVE-2026-64378][IMPORTANT] writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs() [ Upstream
 2026-07-25 12:22 UTC 

[CVE-2026-64511][LOW] ACPI: NFIT: core: Fix possible NULL pointer dereference
 2026-07-25 12:18 UTC 

[CVE-2026-64329][MODERATE 7.0] usb: typec: ucsi: ccg: Fix use-after-free of ucsi on remove [ Upstream
 2026-07-25 12:15 UTC 

[CVE-2026-64517][MODERATE 7.0] drm/xe/gsc: Fix double-free of managed BO in error path [ Upstream
 2026-07-25 12:10 UTC 

[CVE-2026-64520][MODERATE 7.0] firmware: arm_ffa: Bound PARTITION_INFO_GET_REGS copies [ Upstream
 2026-07-25 12:09 UTC 

[CVE-2026-64474][LOW] vfio: prevent infinite loop in vfio_mig_get_next_state() on blocked arc
 2026-07-25 12:09 UTC 

[CVE-2026-64458][MODERATE 7.0] mm/damon/ops-common: handle extreme intervals in damon_hot_score()
 2026-07-25 12:05 UTC 

[CVE-2026-64457][LOW] virtio_pci: fix vq info pointer lookup via wrong index
 2026-07-25 12:01 UTC 

[CVE-2026-64454][LOW] usb: dwc3: run gadget disconnect from sleepable suspend context
 2026-07-25 11:59 UTC 

[CVE-2026-64433][MODERATE REGULAR] Bluetooth: MGMT: Fix UAF of hci_conn_params in add_device_complete
 2026-07-25 11:56 UTC 

[CVE-2026-64362][MODERATE 7.0] HID: lg-g15: cancel pending work on remove to fix a use-after-free
 2026-07-25 11:52 UTC 

[CVE-2026-64524][MODERATE REGULAR] drm/hyperv: validate resolution_count and fix WIN8 fallback [ Upstream
 2026-07-25 11:48 UTC 

[CVE-2026-64408][MODERATE REGULAR] Bluetooth: bnep: pin L2CAP connection during netdev registration
 2026-07-25 11:44 UTC 

[CVE-2026-64464][LOW] xhci: sideband: fix ring sg table pages leak
 2026-07-25 11:40 UTC 

[CVE-2026-64310][MODERATE REGULAR] crypto: ccp - Do not initialize SNP for SEV ioctls
 2026-07-25 11:37 UTC 

[CVE-2026-64377][MODERATE 7.0] cpufreq: qcom-cpufreq-hw: Fix possible double free
 2026-07-25 11:34 UTC 

[CVE-2026-64438][MODERATE 7.0] crypto: qat - fix VF2PF work teardown race in adf_disable_sriov() [ Upstream
 2026-07-25 11:30 UTC 

[CVE-2026-64291][LOW] iommufd: Set veventq_depth upper bound
 2026-07-25 11:26 UTC 

[CVE-2026-64334][LOW] USB: serial: digi_acceleport: fix hard lockup on disconnect
 2026-07-25 11:23 UTC 

[CVE-2026-64489][LOW] ALSA: ymfpci: check snd_ctl_new1() return value
 2026-07-25 11:19 UTC 

[CVE-2026-64455][MODERATE REGULAR] USB: chaoskey: Fix slab-use-after-free in chaoskey_release()
 2026-07-25 11:19 UTC 

[CVE-2026-64409][MODERATE REGULAR] Bluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work()
 2026-07-25 11:15 UTC 

[CVE-2026-64417][LOW] mm: shrinker: fix NULL pointer dereference in debugfs [ Upstream
 2026-07-25 11:15 UTC 

[CVE-2026-64287][IMPORTANT] KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU
 2026-07-25 11:15 UTC 

[CVE-2026-64381][MODERATE 7.0] smb: client: Fix next buffer leak in receive_encrypted_standard() [ Upstream
 2026-07-25 11:11 UTC 

[CVE-2026-64335][LOW] USB: serial: digi_acceleport: fix broken rx after throttle
 2026-07-25 11:07 UTC 

[CVE-2026-64373][MODERATE REGULAR] cpufreq: Fix hotplug-suspend race during reboot
 2026-07-25 11:03 UTC 

[CVE-2026-64301][LOW] regulator: scmi: fix of_node refcount leak in scmi_regulator_probe() [ Upstream
 2026-07-25 10:59 UTC 

[CVE-2026-64326][MODERATE 7.0] block: skip sync_blockdev() on surprise removal in bdev_mark_dead()
 2026-07-25 10:56 UTC 

[CVE-2026-64328][MODERATE REGULAR] usb: gadget: f_fs: Fix DMA fence leak
 2026-07-25 10:50 UTC 

[CVE-2026-64412][MODERATE REGULAR] netfilter: ebtables: module names must be null-terminated
 2026-07-25 10:50 UTC 

[CVE-2026-64439][IMPORTANT] crypto: krb5 - filter out async aead implementations at alloc
 2026-07-25 10:45 UTC 

[CVE-2026-64290][MODERATE REGULAR] iommufd: Break the loop on failure in iommufd_fault_fops_read()
 2026-07-25 10:41 UTC 

[CVE-2026-64527][MODERATE 7.0] drm/hyperv: validate VMBus packet size in receive callback
 2026-07-25 10:39 UTC 

[CVE-2026-64293][MODERATE 7.0] iommufd: Use sizeof(*hdr) instead of sizeof(hdr) in veventq read
 2026-07-25 10:34 UTC 

[CVE-2026-64379][MODERATE 7.0] smb: client: mask server-provided mode to 07777 in modefromsid [ Upstream
 2026-07-25 10:30 UTC 

[CVE-2026-64386][IMPORTANT] smb: client: fix query_info() replay double-free
 2026-07-25 10:26 UTC 

[CVE-2026-64423][MODERATE 7.0] ipv4: igmp: remove multicast group from hash table on device destruction
 2026-07-25 10:23 UTC 

[CVE-2026-64341][MODERATE 7.0] USB: iowarrior: fix use-after-free on disconnect race [ Upstream
 2026-07-25 10:19 UTC 

[CVE-2026-64304][IMPORTANT] crypto: qat - validate RSA CRT component lengths [ Upstream
 2026-07-25 10:16 UTC 

[CVE-2026-64282][LOW] KVM: arm64: Don't leak PFN when kvm_translate_vncr() races MMU notifier
 2026-07-25 10:12 UTC 

[CVE-2026-64298][MODERATE 7.0] NFSv4: include MAY_WRITE in open permission mask for O_TRUNC
 2026-07-25 10:10 UTC 

[CVE-2026-64370][LOW] posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path
 2026-07-25 10:04 UTC 

[CVE-2026-64321][MODERATE 7.0] nvme: target: rdma: fix ndev refcount leak on queue connect
 2026-07-25 10:00 UTC 

[CVE-2026-64508][MODERATE 7.0] bpf: Support for hardening against JIT spraying
 2026-07-25  9:57 UTC 

[CVE-2026-64405][MODERATE 7.0] Revert "Bluetooth: hci_conn: Consolidate code for aborting connections" This reverts commit 6083089 which is
 2026-07-25  9:54 UTC 

[CVE-2026-64353][MODERATE REGULAR] bpf: Keep dynamic inner array lookups nullable [ Upstream
 2026-07-25  9:45 UTC 

[CVE-2026-64214][LOW] powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_work_raise() [ Upstream
 2026-07-24 17:06 UTC 

[CVE-2026-64231][LOW] drm/msm/dsi: don't dump registers past the mapped region [ Upstream
 2026-07-24 17:04 UTC 

[CVE-2026-64213][LOW] hwmon: (lm90) Add lock protection to lm90_alert [ Upstream
 2026-07-24 17:04 UTC 

[CVE-2026-64235][MODERATE REGULAR] x86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines [ Upstream
 2026-07-24 17:01 UTC 

[CVE-2026-64253][MODERATE REGULAR] kernel/fork: clear PF_BLOCK_TS in copy_process()
 2026-07-24 16:57 UTC 

[CVE-2026-64217][IMPORTANT] netfs: Fix overrun check in netfs_extract_user_iter() [ Upstream
 2026-07-24 16:53 UTC 

[CVE-2026-64255][MODERATE 7.0] wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers
 2026-07-24 16:51 UTC 

[CVE-2026-64229][LOW] x86/mm: Disable broadcast TLB flush when PCID is disabled [ Upstream
 2026-07-24 16:49 UTC 

[CVE-2026-64223][MODERATE REGULAR] wifi: mac80211: consume only present negotiated TTLM maps
 2026-07-24 16:47 UTC 

[CVE-2026-64225][MODERATE REGULAR] octeontx2-af: CGX: add bounds check to cgx_speed_mbps index [ Upstream
 2026-07-24 16:43 UTC 

[CVE-2026-64251][MODERATE 7.0] pwrseq: core: fix use-after-free in pwrseq_debugfs_seq_next()
 2026-07-24 16:38 UTC 

[CVE-2026-64212][MODERATE REGULAR] wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it [ Upstream
 2026-07-24 16:37 UTC 

[CVE-2026-64210][MODERATE 7.0] net/mlx5e: xsk: Fix unlocked writing to ICOSQ [ Upstream
 2026-07-24 16:33 UTC 

[CVE-2026-64232][LOW] block: recompute nr_integrity_segments in blk_insert_cloned_request [ Upstream
 2026-07-24 16:33 UTC 

[CVE-2026-64243][MODERATE REGULAR] ASoC: codecs: simple-mux: Fix enum control bounds check [ Upstream
 2026-07-24 16:29 UTC 

[CVE-2026-64228][LOW] net: ethtool: phy: avoid NULL deref when PHY driver is unbound [ Upstream
 2026-07-24 16:29 UTC 

[CVE-2026-64216][MODERATE 7.0] netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages() [ Upstream
 2026-07-24 16:27 UTC 

[CVE-2026-64222][MODERATE 7.0] octeontx2-pf: avoid double free of pool->stack on AQ init failure [ Upstream
 2026-07-24 16:24 UTC 

[CVE-2026-64244][LOW] drivers/base/memory: set mem->altmap after successful device registration [ Upstream
 2026-07-24 16:19 UTC 

[CVE-2026-64237][LOW] Input: elan_i2c - validate firmware size before use
 2026-07-24 16:15 UTC 

[CVE-2026-64224][MODERATE 7.0] octeontx2-pf: fix double free in rvu_rep_rsrc_init()
 2026-07-24 16:10 UTC 

[CVE-2026-64245][MODERATE REGULAR] fbdev: modedb: fix a possible UAF in fb_find_mode()
 2026-07-24 16:06 UTC 

[CVE-2026-64220][MODERATE 7.0] device property: set fwnode->secondary to NULL in fwnode_init()
 2026-07-24 16:03 UTC 

[CVE-2026-64219][IMPORTANT] drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async
 2026-07-24 16:03 UTC 

[CVE-2026-64239][MODERATE 7.0] mm/damon/sysfs-schemes: delete tried region in regions_rmdirs() [ Upstream
 2026-07-24 16:02 UTC 

[CVE-2026-64227][LOW] ACPI: driver: Check ACPI_COMPANION() against NULL during probe [ Upstream
 2026-07-24 15:56 UTC 

[CVE-2026-64208][MODERATE 7.0] crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks [ Upstream
 2026-07-24 15:53 UTC 

[CVE-2026-64254][LOW] NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR
 2026-07-24 15:51 UTC 

[CVE-2026-64247][MODERATE 7.0] KVM: x86: hyper-v: Bound the bank index when querying sparse banks
 2026-07-24 15:51 UTC 

[CVE-2026-64600][IMPORTANT] xfs: resample the data fork mapping after cycling ILOCK
 2026-07-23  6:52 UTC 

[CVE-2026-64190][MODERATE REGULAR] net: team: fix NULL pointer dereference in team_xmit during mode change [ Upstream
 2026-07-20 17:15 UTC 

[CVE-2026-64206][MODERATE REGULAR] Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock
 2026-07-20 17:11 UTC 

[CVE-2026-64191][IMPORTANT] i2c: stub: Reject I2C block transfers with invalid length
 2026-07-20 17:07 UTC 

[CVE-2026-64187][LOW] xfs: fail recovery on a committed log item with no regions
 2026-07-20 17:03 UTC 

[CVE-2026-64192][MODERATE 7.0] bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized
 2026-07-20 17:00 UTC 

[CVE-2026-64205][MODERATE REGULAR] i2c: i801: fix hardware state machine corruption in error path
 2026-07-20 16:55 UTC 

[CVE-2026-64189][MODERATE 7.0] netfilter: ipset: fix race between dump and ip_set_list resize
 2026-07-20 16:51 UTC 

[CVE-2024-57982][MODERATE 7.0] xfrm: state: fix out-of-bounds read during lookup [ Upstream
 2026-07-20 15:00 UTC 

[CVE-2026-64102][IMPORTANT] RDMA/siw: Reject MPA FPDU length underflow before signed receive math
 2026-07-20  3:34 UTC 

[CVE-2026-63968][MODERATE REGULAR] ipv6: fix possible infinite loop in fib6_select_path() [ Upstream
 2026-07-20  3:30 UTC 

[CVE-2026-64068][MODERATE 7.0] netfs: Fix missing locking around retry adding new subreqs [ Upstream
 2026-07-20  3:26 UTC 

[CVE-2026-63994][IMPORTANT] tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6]() [ Upstream
 2026-07-20  3:24 UTC 

[CVE-2026-64136][MODERATE 7.0] smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked()
 2026-07-20  3:20 UTC 

[CVE-2026-63896][MODERATE 7.0] usb: gadget: composite: fix integer underflow in WebUSB GET_URL handling
 2026-07-20  3:16 UTC 

[CVE-2026-63906][MODERATE REGULAR] usb: musb: omap2430: Fix use-after-free in omap2430_probe() [ Upstream
 2026-07-20  3:12 UTC 

[CVE-2026-63877][LOW] serial: dz: Convert to use a platform device
 2026-07-20  3:12 UTC 

[CVE-2026-64001][MODERATE 7.0] ALSA: pcm: oss: Fix setup list UAF on proc write error [ Upstream
 2026-07-20  3:12 UTC 

[CVE-2026-64013][MODERATE 7.0] ACPI: button: Fix ACPI GPE handler leak during removal [ Upstream
 2026-07-20  3:12 UTC 

[CVE-2026-64111][MODERATE 7.0] lsm: hold cred_guard_mutex for lsm_set_self_attr()
 2026-07-20  3:00 UTC 

[CVE-2026-64099][IMPORTANT] drm/v3d: Fix use-after-free of CPU job query arrays on error path [ Upstream
 2026-07-20  2:57 UTC 

[CVE-2026-63973][LOW] net: mana: Add NULL guards in teardown path to prevent panic on attach failure [ Upstream
 2026-07-20  2:57 UTC 

[CVE-2026-63948][MODERATE REGULAR] Bluetooth: L2CAP: fix chan ref leak in l2cap_chan_timeout() on !conn
 2026-07-20  2:53 UTC 

[CVE-2026-63910][MODERATE 7.0] dma-buf: fix UAF in dma_buf_fd() tracepoint
 2026-07-20  2:49 UTC 

[CVE-2026-63946][MODERATE 7.0] Bluetooth: ISO: fix UAF in iso_recv_frame
 2026-07-20  2:48 UTC 

[CVE-2026-64115][IMPORTANT] vsock/vmci: fix UAF when peer resets connection during handshake
 2026-07-20  2:43 UTC 

[CVE-2026-64076][MODERATE REGULAR] netfilter: bridge: eb_tables: close module init race [ Upstream
 2026-07-20  2:39 UTC 

[CVE-2026-63945][MODERATE 7.0] Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock
 2026-07-20  2:36 UTC 

[CVE-2026-64021][LOW] drm/xe/oa: Fix exec_queue leak on width check in stream open [ Upstream
 2026-07-20  2:32 UTC 

[CVE-2026-63886][IMPORTANT] scsi: target: iscsi: Validate CHAP_R length before base64 decode
 2026-07-20  2:30 UTC 

[CVE-2026-63969][MODERATE REGULAR] ipv6: fix possible infinite loop in rt6_fill_node() [ Upstream
 2026-07-20  2:26 UTC 

[CVE-2026-63943][MODERATE REGULAR] Input: xpad - fix out-of-bounds access for Share button
 2026-07-20  2:22 UTC 

[CVE-2026-64038][MODERATE REGULAR] hwmon: (lm90) Stop work before releasing hwmon device [ Upstream
 2026-07-20  2:22 UTC 

[CVE-2026-63975][MODERATE 7.0] Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp [ Upstream
 2026-07-20  2:16 UTC 

[CVE-2026-63942][MODERATE REGULAR] parport: Fix race between port and client registration
 2026-07-20  2:12 UTC 

[CVE-2026-64018][IMPORTANT] net: mana: validate rx_req_idx to prevent out-of-bounds array access [ Upstream
 2026-07-20  2:06 UTC 

[CVE-2026-63952][IMPORTANT] memfd: deny writeable mappings when implying SEAL_WRITE [ Upstream
 2026-07-20  2:01 UTC 

[CVE-2026-63924][IMPORTANT] ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo()
 2026-07-20  1:57 UTC 

[CVE-2026-63985][MODERATE 7.0] ethtool: eeprom: add more safeties to EEPROM Netlink fallback [ Upstream
 2026-07-20  1:53 UTC 

[CVE-2026-64012][MODERATE REGULAR] net/sched: sch_sfb: Replace direct dequeue call with peek and qdisc_dequeue_peeked [ Upstream
 2026-07-20  1:49 UTC 

[CVE-2026-64027][MODERATE 7.0] net: shaper: rework the VALID marking (again) [ Upstream
 2026-07-20  1:44 UTC 

[CVE-2026-64114][MODERATE 7.0] ipv4: raw: reject IP_HDRINCL packets with ihl < 5
 2026-07-20  1:41 UTC 

[CVE-2026-64052][MODERATE REGULAR] block: bio-integrity: Fix null-ptr-deref in bio_integrity_map_user() [ Upstream
 2026-07-20  1:36 UTC 

[CVE-2026-64122][MODERATE 7.0] net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover
 2026-07-20  1:32 UTC 

[CVE-2026-63916][MODERATE 7.0] HID: wacom: Fix OOB write in wacom_hid_set_device_mode()
 2026-07-20  1:32 UTC 

[CVE-2026-64081][MODERATE REGULAR] firmware: arm_ffa: Validate framework notification message layout [ Upstream
 2026-07-20  1:28 UTC 

[CVE-2026-64062][LOW] netfs: Fix potential deadlock in write-through mode [ Upstream
 2026-07-20  1:28 UTC 

[CVE-2026-64032][MODERATE 7.0] bridge: mcast: Fix a possible use-after-free when removing a bridge port [ Upstream
 2026-07-20  1:26 UTC 

[CVE-2026-63901][MODERATE 7.0] USB: serial: digi_acceleport: fix memory corruption with small endpoints
 2026-07-20  1:22 UTC 

[CVE-2026-64069][MODERATE 7.0] netfs: Fix cancellation of a DIO and single read subrequests [ Upstream
 2026-07-20  1:18 UTC 

[CVE-2026-64029][MODERATE 7.0] ALSA: seq: Serialize UMP output teardown with event_input [ Upstream
 2026-07-20  1:17 UTC 

[CVE-2026-63882][MODERATE REGULAR] drm/amdkfd: fix NULL pointer bug in svm_range_set_attr
 2026-07-20  1:13 UTC 

[CVE-2026-64071][MODERATE 7.0] nvme-pci: fix use-after-free in nvme_free_host_mem() [ Upstream
 2026-07-20  1:13 UTC 

[CVE-2026-64110][LOW] igc: fix potential skb leak in igc_fpe_xmit_smd_frame()
 2026-07-20  1:09 UTC 

[CVE-2026-63993][IMPORTANT] vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() [ Upstream
 2026-07-20  1:06 UTC 

[CVE-2026-63902][MODERATE REGULAR] USB: serial: cypress_m8: validate interrupt packet headers
 2026-07-20  1:00 UTC 

[CVE-2026-63888][IMPORTANT] scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() [ Upstream
 2026-07-20  0:55 UTC 

[CVE-2026-64112][MODERATE 7.0] rbd: eliminate a race in lock_dwork draining on unmap
 2026-07-20  0:51 UTC 

[CVE-2026-63982][LOW] net/sched: Fix ethx:ingress -> ethy:egress -> ethx:ingress mirred loop [ Upstream
 2026-07-20  0:48 UTC 

[CVE-2026-64116][MODERATE REGULAR] ipv6: ioam: add NULL check for idev in ipv6_hop_ioam() [ Upstream
 2026-07-20  0:46 UTC 

[CVE-2026-63894][MODERATE 7.0] usb: gadget: f_fs: serialize DMABUF cancel against request completion
 2026-07-20  0:43 UTC 

[CVE-2026-64097][MODERATE REGULAR] drm/amd/display: Validate GPIO pin LUT table size before iterating
 2026-07-20  0:43 UTC 

[CVE-2026-64072][LOW] nvme: fix bio leak on mapping failure [ Upstream
 2026-07-20  0:41 UTC 

[CVE-2026-63978][MODERATE 7.0] net/handshake: Drain pending requests at net namespace exit [ Upstream
 2026-07-20  0:39 UTC 

[CVE-2026-64030][IMPORTANT] wifi: mac80211: bounds-check link_id in ieee80211_ml_epcs [ Upstream
 2026-07-20  0:35 UTC 

[CVE-2026-63903][MODERATE REGULAR] USB: serial: belkin_sa: validate interrupt status length
 2026-07-20  0:32 UTC 

[CVE-2026-63997][LOW] ethtool: module: avoid leaking a netdev ref on module flash errors [ Upstream
 2026-07-20  0:28 UTC 

[CVE-2026-63883][MODERATE 7.0] serial: qcom_geni: fix kfifo underflow when flush precedes DMA completion IRQ [ Upstream
 2026-07-20  0:25 UTC 

[CVE-2026-63971][MODERATE 7.0] sctp: fix race between sctp_wait_for_connect and peeloff [ Upstream
 2026-07-20  0:21 UTC 

[CVE-2026-63921][IMPORTANT] ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate()
 2026-07-20  0:17 UTC 

[CVE-2026-63912][MODERATE 7.0] xfrm: esp: restore combined single-frag length gate
 2026-07-20  0:13 UTC 

[CVE-2026-63881][MODERATE 7.0] drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
 2026-07-20  0:09 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox