public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-72031][LOW] ata: libata-core: Add NOLPM quirk for PNY CS900 1TB SSD
 2026-08-15  6:58 UTC 

[CVE-2026-72019][MODERATE 7.0] macsec: don't read an unset MAC header in macsec_encrypt()
 2026-08-15  6:55 UTC 

[CVE-2026-72467][LOW] xprtrdma: Check frwr_wp_create() during connect [ Upstream
 2026-08-15  6:51 UTC 

[CVE-2026-68454][MODERATE 7.0] KVM: s390: pci: Fix handling of AIF enable without AISB
 2026-08-13 15:04 UTC 

[CVE-2026-68451][MODERATE 7.0] s390/zcrypt: Validate length for CCA ECC private key requests
 2026-08-13 14:59 UTC 

[CVE-2026-68453][MODERATE 7.0] s390/zcrypt: Fix buffer over-read in cca_cipher2protkey
 2026-08-13 14:55 UTC 

[CVE-2026-68452][MODERATE 7.0] s390/zcrypt: Validate length for CCA AES cipher key requests
 2026-08-13 14:52 UTC 

[CVE-2026-68450][LOW] btrfs: free mapping node on duplicate reloc root insert [ Upstream
 2026-08-12  1:58 UTC 

[CVE-2026-68447][MODERATE REGULAR] drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size
 2026-08-12  1:55 UTC 

[CVE-2026-68448][MODERATE 7.0] ovl: check access to copy_file_range source with src mounter creds [ Upstream
 2026-08-12  1:52 UTC 

[CVE-2026-68434][LOW] serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms
 2026-08-12  1:16 UTC 

[CVE-2026-68442][MODERATE 7.0] btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps [ Upstream
 2026-08-12  1:14 UTC 

[CVE-2026-68446][MODERATE REGULAR] drm/vmwgfx: Validate vmw_surface_metadata::array_size
 2026-08-12  1:10 UTC 

[CVE-2026-68430][LOW] drm/amdgpu/gfx8: drop unecessary BUG_ON()
 2026-08-12  1:06 UTC 

[CVE-2026-68437][MODERATE REGULAR] drm/imagination: Fit paired fragment job in the correct CCCB
 2026-08-12  1:06 UTC 

[CVE-2026-68441][MODERATE REGULAR] net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains [ Upstream
 2026-08-12  1:06 UTC 

[CVE-2026-68439][LOW] wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() [ Upstream
 2026-08-12  1:02 UTC 

[CVE-2026-68432][IMPORTANT] vxlan: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-12  0:57 UTC 

[CVE-2026-68436][LOW] drm/amd/display: use kvzalloc to allocate struct dc
 2026-08-12  0:53 UTC 

[CVE-2026-68429][LOW] drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue_probe()
 2026-08-12  0:53 UTC 

[CVE-2026-68433][MODERATE REGULAR] libceph: bound get_version reply decode to front len
 2026-08-12  0:51 UTC 

[CVE-2026-68245][MODERATE 7.0] drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()
 2026-08-11  0:34 UTC 

[CVE-2026-68279][MODERATE REGULAR] drm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers
 2026-08-11  0:33 UTC 

[CVE-2026-68420][MODERATE 7.0] xfrm: reject optional IPTFS templates in outbound policies [ Upstream
 2026-08-11  0:30 UTC 

[CVE-2026-68418][LOW] RDMA/irdma: Prevent user-triggered null deref on QP create [ Upstream
 2026-08-11  0:28 UTC 

[CVE-2026-68323][MODERATE 7.0] tipc: serialize udp bearer replicast list updates [ Upstream
 2026-08-11  0:25 UTC 

[CVE-2026-68268][LOW] drm/xe: Return error on non-migratable faults requiring devmem
 2026-08-11  0:22 UTC 

[CVE-2026-68142][IMPORTANT] geneve: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-11  0:20 UTC 

[CVE-2026-68411][MODERATE REGULAR] wifi: mac80211_hwsim: clamp virtio RX length before skb_put [ Upstream
 2026-08-11  0:16 UTC 

[CVE-2026-68149][MODERATE 7.0] fs: preserve ACL_DONT_CACHE state in forget_cached_acl()
 2026-08-11  0:16 UTC 

[CVE-2026-68397][IMPORTANT] net/iucv: take a reference on the socket found in afiucv_hs_rcv() [ Upstream
 2026-08-11  0:12 UTC 

[CVE-2026-68346][LOW] ALSA: hda: cs35l41: validate and free ACPI mute object [ Upstream
 2026-08-11  0:08 UTC 

[CVE-2026-68093][MODERATE 7.0] KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug
 2026-08-11  0:05 UTC 

[CVE-2026-68267][MODERATE 7.0] drm/xe/rtp: Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists [ Upstream
 2026-08-11  0:00 UTC 

[CVE-2026-68132][LOW] super: fix emergency thaw deadlock on frozen block devices
 2026-08-10 23:58 UTC 

[CVE-2026-68270][MODERATE REGULAR] drm/sysfb: Avoid possible truncation with calculating visible size
 2026-08-10 23:55 UTC 

[CVE-2026-68385][MODERATE REGULAR] s390/checksum: Fix csum_partial() without vector facility [ Upstream
 2026-08-10 23:51 UTC 

[CVE-2026-68273][MODERATE 7.0] drm/amdgpu: Fix context pstate override handling [ Upstream
 2026-08-10 23:47 UTC 

[CVE-2026-68253][MODERATE 7.0] drm/i915/hdcp: check streams[] bounds before overflow [ Upstream
 2026-08-10 23:47 UTC 

[CVE-2026-68407][LOW] wifi: nl80211: free RNR data on MBSSID mismatch [ Upstream
 2026-08-10 23:44 UTC 

[CVE-2026-68147][IMPORTANT] fscrypt: Avoid dynamic allocation in fscrypt_get_devices()
 2026-08-10 23:40 UTC 

[CVE-2026-68392][MODERATE 7.0] Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync [ Upstream
 2026-08-10 23:40 UTC 

[CVE-2026-68175][LOW] tracing: Fix resource leak on mmiotrace trace_pipe close
 2026-08-10 23:36 UTC 

[CVE-2026-68388][MODERATE 7.0] smb/client: handle overlapping allocated ranges in fallocate [ Upstream
 2026-08-10 23:32 UTC 

[CVE-2026-68347][MODERATE REGULAR] iommu/amd: Fix IRQ unsafe locking in gdom allocation [ Upstream
 2026-08-10 23:28 UTC 

[CVE-2026-68306][MODERATE REGULAR] wifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht() [ Upstream
 2026-08-10 23:26 UTC 

[CVE-2026-68212][MODERATE REGULAR] media: saa7134: Fix a possible memory leak in saa7134_video_init1
 2026-08-10 23:26 UTC 

[CVE-2026-68257][MODERATE 7.0] drm/amdkfd: fix 32-bit overflow in CWSR total size calculation
 2026-08-10 23:23 UTC 

[CVE-2026-68168][MODERATE 7.0] afs: Fix afs_edit_dir_remove() to get, not find, block 0
 2026-08-10 23:23 UTC 

[CVE-2026-68115][LOW] drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON()
 2026-08-10 23:21 UTC 

[CVE-2026-68329][IMPORTANT] iommu/amd: Wait for completion instead of returning early in iommu_completion_wait() [ Upstream
 2026-08-10 23:21 UTC 

[CVE-2026-68162][MODERATE 7.0] Revert "sctp: sysctl: auth_enable: avoid using current->nsproxy" This reverts
 2026-08-10 23:17 UTC 

[CVE-2026-68294][IMPORTANT] net: qrtr: restrict socket creation to the initial network namespace [ Upstream
 2026-08-10 23:12 UTC 

[CVE-2026-68292][LOW] ice: prevent tstamp ring allocation for non-PF VSI types [ Upstream
 2026-08-10 23:08 UTC 

[CVE-2026-68276][MODERATE 7.0] drm/amdgpu/gfx: fix cleaner shader IB buffer overflow [ Upstream
 2026-08-10 23:08 UTC 

[CVE-2026-68275][MODERATE REGULAR] drm/amdgpu: check amdgpu_vm_bo_find() result in GET_MAPPING_INFO
 2026-08-10 23:08 UTC 

[CVE-2026-68271][MODERATE REGULAR] drm/nouveau: fix reversed error cleanup order in ucopy functions
 2026-08-10 23:08 UTC 

[CVE-2026-68408][LOW] wifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock [ Upstream
 2026-08-10 23:06 UTC 

[CVE-2026-68287][MODERATE 7.0] drop_monitor: fix size calculations for 64-bit attributes [ Upstream
 2026-08-10 23:04 UTC 

[CVE-2026-68383][MODERATE 7.0] drm/xe/guc: Keep scheduler timeline name alive [ Upstream
 2026-08-10 23:01 UTC 

[CVE-2026-68313][LOW] tipc: fix infinite loop in __tipc_nl_compat_dumpit [ Upstream
 2026-08-10 22:59 UTC 

[CVE-2026-68274][MODERATE 7.0] drm/xe/guc: Fix buffer overflow in steered register list allocation [ Upstream
 2026-08-10 22:55 UTC 

[CVE-2026-68299][MODERATE 7.0] vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets [ Upstream
 2026-08-10 22:54 UTC 

[CVE-2026-68112][MODERATE REGULAR] drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()
 2026-08-10 22:49 UTC 

[CVE-2026-68354][MODERATE 7.0] firewire: net: Fix fragmented datagram reassembly [ Upstream
 2026-08-10 22:49 UTC 

[CVE-2026-68145][IMPORTANT] iomap: fix out-of-bounds bitmap_set() with zero-length range
 2026-08-10 22:45 UTC 

[CVE-2026-68286][MODERATE REGULAR] drop_monitor: perform u64_stats updates under IRQ-disabled section [ Upstream
 2026-08-10 22:41 UTC 

[CVE-2026-68155][MODERATE 7.0] libceph: Reject monmaps advertising zero monitors
 2026-08-10 22:37 UTC 

[CVE-2026-68261][MODERATE REGULAR] drm/imagination: fix error checking of pvr_vm_context_lookup()
 2026-08-10 22:35 UTC 

[CVE-2026-68238][LOW] drm/amdgpu: Release VFCT ACPI table reference
 2026-08-10 22:35 UTC 

[CVE-2026-68335][IMPORTANT] rds: drop incoming messages that cross network namespace boundaries [ Upstream
 2026-08-10 22:34 UTC 

[CVE-2026-68105][LOW] drm/amdgpu: Fix kernel panic during driver load failure
 2026-08-10 22:34 UTC 

[CVE-2026-68393][MODERATE 7.0] Bluetooth: hci_sync: extend conn_hash lookup critical sections [ Upstream
 2026-08-10 22:34 UTC 

[CVE-2026-68197][MODERATE REGULAR] wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper
 2026-08-10 22:30 UTC 

[CVE-2026-68205][MODERATE REGULAR] media: v4l2-fwnode: Fix subdev owner overwritten in v4l2_async_register_subdev_sensor() [ Upstream
 2026-08-10 22:27 UTC 

[CVE-2026-68328][LOW] nfp: Check resource mutex allocation [ Upstream
 2026-08-10 22:22 UTC 

[CVE-2026-68343][MODERATE 7.0] smb: client: validate DFS referral PathConsumed [ Upstream
 2026-08-10 22:18 UTC 

[CVE-2026-68158][MODERATE 7.0] libceph: Fix multiplication overflow in decode_new_up_state_weight()
 2026-08-10 22:14 UTC 

[CVE-2026-68119][MODERATE REGULAR] tcp: initialize standalone TCP-AO response padding
 2026-08-10 22:10 UTC 

[CVE-2026-68403][LOW] wifi: brcmfmac: initialize SDIO data work before cleanup [ Upstream
 2026-08-10 22:08 UTC 

[CVE-2026-68284][MODERATE 7.0] bpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg() [ Upstream
 2026-08-10 22:04 UTC 

[CVE-2026-68248][MODERATE REGULAR] drm/i915: Return NULL on error in active_instance
 2026-08-10 22:00 UTC 

[CVE-2026-68351][MODERATE 7.0] wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read [ Upstream
 2026-08-10 21:56 UTC 

[CVE-2026-68174][LOW] tracing: Fix union collision of module and refcnt for dynamic events
 2026-08-10 21:51 UTC 

[CVE-2026-68110][LOW] drm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON()
 2026-08-10 21:50 UTC 

[CVE-2026-68344][MODERATE 7.0] usb: atm: ueagle-atm: reject descriptors that confuse probe and disconnect [ Upstream
 2026-08-10 21:50 UTC 

[CVE-2026-68355][MODERATE 7.0] wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() [ Upstream
 2026-08-10 21:48 UTC 

[CVE-2026-68111][MODERATE REGULAR] drm/amdgpu/gfx9: replace BUG_ON() with WARN_ON()
 2026-08-10 21:43 UTC 

[CVE-2026-68186][MODERATE REGULAR] binfmt_misc: set have_execfd only once the interpreter is opened
 2026-08-10 21:43 UTC 

[CVE-2026-68126][MODERATE 7.0] mac802154: hold an interface reference across the scan worker
 2026-08-10 21:39 UTC 

[CVE-2026-68337][LOW] bpf: Reject redirect helpers without a bpf_net_context [ Upstream
 2026-08-10 21:37 UTC 

[CVE-2026-68301][LOW] net: hsr: fix memory leak on slave unregistration by removing synced VLANs [ Upstream
 2026-08-10 21:33 UTC 

[CVE-2026-68315][MODERATE 7.0] sctp: validate stream count in sctp_process_strreset_inreq() [ Upstream
 2026-08-10 21:29 UTC 

[CVE-2026-68165][LOW] mm/damon/core: validate ranges in damon_set_regions()
 2026-08-10 21:25 UTC 

[CVE-2026-68404][MODERATE 7.0] wifi: cfg80211: use wiphy work for socket owner autodisconnect [ Upstream
 2026-08-10 21:21 UTC 

[CVE-2026-68300][MODERATE 7.0] sctp: auth: verify auth requirement when auth_chunk is NULL [ Upstream
 2026-08-10 21:18 UTC 

[CVE-2026-68247][MODERATE 7.0] drm/i915/bios: range check LFP Data Block panel_type2
 2026-08-10 21:14 UTC 

[CVE-2026-68386][LOW] bpf, sockmap: Reject unhashed UDP sockets on sockmap update [ Upstream
 2026-08-10 21:12 UTC 

[CVE-2026-68402][MODERATE 7.0] wifi: cfg80211: bound element ID read when checking non-inheritance [ Upstream
 2026-08-10 21:08 UTC 

[CVE-2026-68309][LOW] wifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bss_he_tlv() [ Upstream
 2026-08-10 21:04 UTC 

[CVE-2026-68269][MODERATE REGULAR] drm/i915/gem: Add missing nospec on parallel submit slot
 2026-08-10 20:59 UTC 

[CVE-2026-68154][MODERATE 7.0] libceph: reject zero bucket types in crush_decode
 2026-08-10 20:59 UTC 

[CVE-2026-68184][MODERATE REGULAR] cdrom: fix stack out-of-bounds read in CDROMVOLCTRL
 2026-08-10 20:55 UTC 

[CVE-2026-68206][MODERATE 7.0] media: v4l2-ctrls: validate HEVC active reference counts
 2026-08-10 20:50 UTC 

[CVE-2026-68243][MODERATE REGULAR] drm/i915/gem: Fix NULL deref in I915_CONTEXT_PARAM_SSEU
 2026-08-10 20:46 UTC 

[CVE-2026-68382][MODERATE 7.0] drm/xe/guc: Hold device ref until queue teardown completes [ Upstream
 2026-08-10 20:46 UTC 

[CVE-2026-68244][MODERATE REGULAR] drm/i915/gem: Do not leak siblings[] on proto context error
 2026-08-10 20:44 UTC 

[CVE-2026-68350][MODERATE REGULAR] wifi: carl9170: fix OOB read from off-by-two in TX status handler [ Upstream
 2026-08-10 20:44 UTC 

[CVE-2026-68256][LOW] drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference
 2026-08-10 20:39 UTC 

[CVE-2026-68232][LOW] drm/gpusvm: Fix MM reference leak in drm_gpusvm_range_evict
 2026-08-10 20:39 UTC 

[CVE-2026-68240][LOW] drm/gpusvm: publish dpagemap early to avoid device mapping leak on error
 2026-08-10 20:38 UTC 

[CVE-2026-68399][MODERATE 7.0] bpf: Fix UAF in sock clone early bailouts [ Upstream
 2026-08-10 20:36 UTC 

[CVE-2026-68310][MODERATE REGULAR] wifi: mt76: mt7915: guard HE capability lookups [ Upstream
 2026-08-10 20:32 UTC 

[CVE-2026-68281][LOW] drm/imagination: Count paired job fence as dependency in prepare_job()
 2026-08-10 20:32 UTC 

[CVE-2026-68348][MODERATE REGULAR] ASoC: tas2781: bound firmware description string parsing [ Upstream
 2026-08-10 20:32 UTC 

[CVE-2026-68123][IMPORTANT] openvswitch: fix GSO userspace truncation underflow [ Upstream
 2026-08-10 20:28 UTC 

[CVE-2026-68264][IMPORTANT] drm/xe/pt: Reset current_op in xe_pt_update_ops_init() [ Upstream
 2026-08-10 20:23 UTC 

[CVE-2026-68150][LOW] fs/super: fix emergency thaw double-unlock of s_umount
 2026-08-10 20:20 UTC 

[CVE-2026-68173][MODERATE REGULAR] ublk: wait on ublk_dev_ready() instead of ub->completion
 2026-08-10 20:18 UTC 

[CVE-2026-68374][MODERATE 7.0] usb: core: sysfs: add lock to bos_descriptors_read()
 2026-08-10 20:16 UTC 

[CVE-2026-68144][IMPORTANT] phonet: pep: fix use-after-free in pep_get_sb()
 2026-08-10 20:13 UTC 

[CVE-2026-68164][LOW] mm/damon/core: disallow overlapping input ranges for damon_set_regions()
 2026-08-10 20:13 UTC 

[CVE-2026-68192][MODERATE 7.0] wifi: brcmfmac: make release_scratchbuffers idempotent
 2026-08-10 20:09 UTC 

[CVE-2026-68325][MODERATE 7.0] iommu/amd: Bound the early ACPI HID map [ Upstream
 2026-08-10 20:05 UTC 

[CVE-2026-68189][MODERATE REGULAR] Bluetooth: hci_sync: Protect UUID list traversal
 2026-08-10 20:01 UTC 

[CVE-2026-68114][MODERATE REGULAR] drm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON()
 2026-08-10 19:56 UTC 

[CVE-2026-68339][MODERATE REGULAR] Bluetooth: btusb: validate Realtek vendor event length [ Upstream
 2026-08-10 19:56 UTC 

[CVE-2026-68405][LOW] wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock [ Upstream
 2026-08-10 19:51 UTC 

[CVE-2026-68116][MODERATE 7.0] vxlan: mdb: Fix source list corruption on a failed replace
 2026-08-10 19:47 UTC 

[CVE-2026-68389][MODERATE 7.0] Bluetooth: hci_qca: Clear memdump state on invalid dump size [ Upstream
 2026-08-10 19:43 UTC 

[CVE-2026-68195][MODERATE REGULAR] wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 19:43 UTC 

[CVE-2026-68193][MODERATE REGULAR] wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 19:43 UTC 

[CVE-2026-68311][MODERATE REGULAR] wifi: mt76: mt7925: guard link STA in decap offload [ Upstream
 2026-08-10 19:38 UTC 

[CVE-2026-68272][MODERATE REGULAR] drm/amdgpu: validate CP_GFX_SHADOW chunk size in CS pass1
 2026-08-10 19:34 UTC 

[CVE-2026-68394][MODERATE REGULAR] Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update [ Upstream
 2026-08-10 19:34 UTC 

[CVE-2026-68277][MODERATE REGULAR] drm/dp/mst: fix OOB reads on 2-byte fields in sideband reply parsers
 2026-08-10 19:30 UTC 

[CVE-2026-68113][MODERATE REGULAR] drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON()
 2026-08-10 19:26 UTC 

[CVE-2026-68171][IMPORTANT] arm64: syscall: Ensure saved x0 is kept in-sync with tracer updates
 2026-08-10 19:26 UTC 

[CVE-2026-68336][LOW] bonding: fix devconf_all NULL dereference when IPv6 is disabled [ Upstream
 2026-08-10 19:22 UTC 

[CVE-2026-68414][MODERATE 7.0] wifi: cfg80211: cancel sched scan results work on unregister [ Upstream
 2026-08-10 19:17 UTC 

[CVE-2026-68181][MODERATE 7.0] mei: bus: access mei_device under device_lock on cleanup
 2026-08-10 19:13 UTC 

[CVE-2026-68141][MODERATE REGULAR] net/af_iucv: fix NULL deref in afiucv_hs_callback_syn()
 2026-08-10 19:11 UTC 

[CVE-2026-68087][LOW] HID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush()
 2026-08-10 19:05 UTC 

[CVE-2026-68101][MODERATE REGULAR] drm/amdgpu: fix check in amdgpu_hmm_invalidate_gfx For a short moment during alloc/free the userptr BO is not part of his VM, so bo->vm_bo can be NULL. Keep a reference to the VM root PD as parent of the userptr BO so that we can always use that to wait for all submissions of the VM instead of only the one involving the userptr BO. Signed-off-by: Christian König <[email protected]> Fixes: 9125089 ("drm/amdgpu: fix waiting for all submissions for userptrs") Closes: https://gitlab.freedesktop.org/drm/amd/-/work_items/5399 Reviewed-by: Alex Deucher <[email protected]> Signed-off-by: Alex Deucher <[email protected]> (cherry picked from
 2026-08-10 19:02 UTC 

[CVE-2026-68396][MODERATE REGULAR] scsi: core: wake eh reliably when using scsi_schedule_eh [ Upstream
 2026-08-10 19:02 UTC 

[CVE-2026-68183][MODERATE 7.0] firmware: stratix10-svc: fix memory leaks and list corruption bugs [ Upstream
 2026-08-10 18:57 UTC 

[CVE-2026-68377][MODERATE 7.0] net/sched: act_tunnel_key: Defer dst_release to RCU callback [ Upstream
 2026-08-10 18:57 UTC 

[CVE-2026-68357][MODERATE 7.0] watchdog: pretimeout: Fix UAF in watchdog_unregister_governor() [ Upstream
 2026-08-10 18:53 UTC 

[CVE-2026-68345][LOW] arm_mpam: guard MBWU state before adding it to garbage [ Upstream
 2026-08-10 18:49 UTC 

[CVE-2026-68160][IMPORTANT] ceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps()
 2026-08-10 18:46 UTC 

[CVE-2026-68307][MODERATE REGULAR] wifi: mt76: mt7925: fix crash in reset link replay [ Upstream
 2026-08-10 18:42 UTC 

[CVE-2026-68085][MODERATE 7.0] Bluetooth: hci_uart: clear HCI_UART_SENDING when write_work is canceled
 2026-08-10 18:39 UTC 

[CVE-2026-68426][IMPORTANT] xfrm: fix stale skb->prev after async crypto steals a GSO segment [ Upstream
 2026-08-10 18:37 UTC 

[CVE-2026-68371][MODERATE REGULAR] usb: musb: omap2430: Do not put borrowed of_node in probe [ Upstream
 2026-08-10 18:33 UTC 

[CVE-2026-68176][LOW] tracing: Fix mmiotrace possible NULL dereferencing of hiter->dev
 2026-08-10 18:33 UTC 

[CVE-2026-68089][LOW] iio: core: fix uninitialized data in debugfs
 2026-08-10 18:29 UTC 

[CVE-2026-68252][LOW] drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
 2026-08-10 18:28 UTC 

[CVE-2026-68305][LOW] drm/xe/vf: Add drm_dev guards when detaching CCS read/write buffers [ Upstream
 2026-08-10 18:27 UTC 

[CVE-2026-68333][LOW] dpaa2-switch: put MAC endpoint device on disconnect [ Upstream
 2026-08-10 18:26 UTC 

[CVE-2026-68251][LOW] drm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON()
 2026-08-10 18:24 UTC 

[CVE-2026-68381][IMPORTANT] ksmbd: pin conn during async oplock break notification [ Upstream
 2026-08-10 18:24 UTC 

[CVE-2026-68326][MODERATE 7.0] wifi: mwifiex: bound uAP association event IEs to the event buffer [ Upstream
 2026-08-10 18:24 UTC 

[CVE-2026-68417][MODERATE 7.0] RDMA/siw: publish QP after initialization [ Upstream
 2026-08-10 18:19 UTC 

[CVE-2026-68258][MODERATE 7.0] drm/amdkfd: Check bounds on CRIU restore queue type and mqd size
 2026-08-10 18:13 UTC 

[CVE-2026-68117][MODERATE 7.0] tipc: clear sock->sk on the failed-insert path in tipc_sk_create()
 2026-08-10 18:13 UTC 

[CVE-2026-68320][IMPORTANT] sctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid [ Upstream
 2026-08-10 18:08 UTC 

[CVE-2026-68091][MODERATE REGULAR] HID: wacom: stop hardware after post-start probe failures
 2026-08-10 18:03 UTC 

[CVE-2026-68107][MODERATE REGULAR] drm/amdgpu/vcn4: avoid rereading IB param length
 2026-08-10 17:59 UTC 

[CVE-2026-68298][LOW] drm/xe/vm: Fix SVM leak on resv obj alloc failure in xe_vm_create() [ Upstream
 2026-08-10 17:59 UTC 

[CVE-2026-68265][MODERATE 7.0] drm/xe/vm: Fix BO prefetch with CONSULT_MEM_ADVISE_PREF_LOC [ Upstream
 2026-08-10 17:55 UTC 

[CVE-2026-68338][MODERATE 7.0] net/packet: avoid fanout hook re-registration after unregister [ Upstream
 2026-08-10 17:53 UTC 

[CVE-2026-68362][MODERATE REGULAR] wifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin [ Upstream
 2026-08-10 17:49 UTC 

[CVE-2026-68237][MODERATE REGULAR] drm/amdgpu/userq: fix indefinite fence wait during GPU reset
 2026-08-10 17:45 UTC 

[CVE-2026-68134][MODERATE REGULAR] ptp: ptp_s390: Add missing facility check
 2026-08-10 17:45 UTC 

[CVE-2026-68143][MODERATE 7.0] net: slip: serialize receive against buffer reallocation
 2026-08-10 17:43 UTC 

[CVE-2026-68172][MODERATE REGULAR] arm64: make huge_ptep_get handled unaligned addresses
 2026-08-10 17:39 UTC 

[CVE-2026-68380][IMPORTANT] accel/amdxdna: Fix use-after-free of mm_struct in job scheduler [ Upstream
 2026-08-10 17:37 UTC 

[CVE-2026-68249][LOW] drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON()
 2026-08-10 17:37 UTC 

[CVE-2026-68096][MODERATE REGULAR] audit: fix recursive locking deadlock in audit_dupe_exe() [ Upstream
 2026-08-10 17:37 UTC 

[CVE-2026-68324][MODERATE 7.0] iommu/intel: Fix out-of-bounds memset in dmar_latency_disable() [ Upstream
 2026-08-10 17:33 UTC 

[CVE-2026-68153][MODERATE REGULAR] libceph: remove debugfs files before client teardown
 2026-08-10 17:28 UTC 

[CVE-2026-68216][LOW] media: pwc: Return queued buffers on start_streaming() failure
 2026-08-10 17:23 UTC 

[CVE-2026-68259][MODERATE REGULAR] drm/amdkfd: Check bounds in allocate_event_notification_slot
 2026-08-10 17:20 UTC 

[CVE-2026-68104][MODERATE 7.0] drm/amdgpu: invoke pm_genpd_remove() before freeing genpd
 2026-08-10 17:20 UTC 

[CVE-2026-68241][LOW] drm/i915/mst: limit DP MST ESI service loop
 2026-08-10 17:20 UTC 

[CVE-2026-68226][LOW] media: cx23885: add ioremap return check and cleanup
 2026-08-10 17:16 UTC 

[CVE-2026-68379][MODERATE 7.0] tcp: fix TIME_WAIT socket reference leak on PSP policy failure [ Upstream
 2026-08-10 17:12 UTC 

[CVE-2026-68293][MODERATE 7.0] net/mlx5: Fix MCIA register buffer overflow on 32 dword reads [ Upstream
 2026-08-10 17:10 UTC 

[CVE-2026-68201][IMPORTANT] ALSA: timer: drain a slave's callback before its master detaches it
 2026-08-10 17:10 UTC 

[CVE-2026-68288][LOW] net: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD [ Upstream
 2026-08-10 17:06 UTC 

[CVE-2026-68166][IMPORTANT] userfaultfd: prevent registration of special VMAs [ Upstream
 2026-08-10 17:03 UTC 

[CVE-2026-68191][LOW] wifi: ath12k: fix NULL pointer dereference in rhash table destroy
 2026-08-10 16:58 UTC 

[CVE-2026-68214][MODERATE 7.0] media: rtl2832: fix use-after-free in rtl2832_remove()
 2026-08-10 16:57 UTC 

[CVE-2026-68109][LOW] drm/amdgpu/sdma7.1: replace BUG_ON() with WARN_ON()
 2026-08-10 16:52 UTC 

[CVE-2026-68138][MODERATE 7.0] net/sched: serialize qdisc_rtab_list against concurrent get/put
 2026-08-10 16:52 UTC 

[CVE-2026-68217][LOW] media: pwc: Drain fill_buf on start_streaming() failure
 2026-08-10 16:49 UTC 

[CVE-2026-68100][MODERATE 7.0] ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl
 2026-08-10 16:45 UTC 

[CVE-2026-68086][MODERATE 7.0] mm/khugepaged: write all dirty file folios when collapsing [There is no upstream commit, as this code was removed by upstream
 2026-08-10 16:45 UTC 

[CVE-2026-68146][MODERATE REGULAR] ftrace: Add global mutex to serialize trace_parser access
 2026-08-10 16:41 UTC 

[CVE-2026-68425][MODERATE REGULAR] IB/mad: Drop unmatched RMPP responses before reassembly [ Upstream
 2026-08-10 16:37 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox