public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-68173][MODERATE REGULAR] ublk: wait on ublk_dev_ready() instead of ub->completion
 2026-08-10 20:18 UTC 

[CVE-2026-68374][MODERATE 7.0] usb: core: sysfs: add lock to bos_descriptors_read()
 2026-08-10 20:16 UTC 

[CVE-2026-68144][IMPORTANT] phonet: pep: fix use-after-free in pep_get_sb()
 2026-08-10 20:13 UTC 

[CVE-2026-68164][LOW] mm/damon/core: disallow overlapping input ranges for damon_set_regions()
 2026-08-10 20:13 UTC 

[CVE-2026-68192][MODERATE 7.0] wifi: brcmfmac: make release_scratchbuffers idempotent
 2026-08-10 20:09 UTC 

[CVE-2026-68325][MODERATE 7.0] iommu/amd: Bound the early ACPI HID map [ Upstream
 2026-08-10 20:05 UTC 

[CVE-2026-68189][MODERATE REGULAR] Bluetooth: hci_sync: Protect UUID list traversal
 2026-08-10 20:01 UTC 

[CVE-2026-68114][MODERATE REGULAR] drm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON()
 2026-08-10 19:56 UTC 

[CVE-2026-68339][MODERATE REGULAR] Bluetooth: btusb: validate Realtek vendor event length [ Upstream
 2026-08-10 19:56 UTC 

[CVE-2026-68405][LOW] wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock [ Upstream
 2026-08-10 19:51 UTC 

[CVE-2026-68116][MODERATE 7.0] vxlan: mdb: Fix source list corruption on a failed replace
 2026-08-10 19:47 UTC 

[CVE-2026-68389][MODERATE 7.0] Bluetooth: hci_qca: Clear memdump state on invalid dump size [ Upstream
 2026-08-10 19:43 UTC 

[CVE-2026-68195][MODERATE REGULAR] wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 19:43 UTC 

[CVE-2026-68193][MODERATE REGULAR] wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 19:43 UTC 

[CVE-2026-68311][MODERATE REGULAR] wifi: mt76: mt7925: guard link STA in decap offload [ Upstream
 2026-08-10 19:38 UTC 

[CVE-2026-68272][MODERATE REGULAR] drm/amdgpu: validate CP_GFX_SHADOW chunk size in CS pass1
 2026-08-10 19:34 UTC 

[CVE-2026-68394][MODERATE REGULAR] Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update [ Upstream
 2026-08-10 19:34 UTC 

[CVE-2026-68277][MODERATE REGULAR] drm/dp/mst: fix OOB reads on 2-byte fields in sideband reply parsers
 2026-08-10 19:30 UTC 

[CVE-2026-68113][MODERATE REGULAR] drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON()
 2026-08-10 19:26 UTC 

[CVE-2026-68171][IMPORTANT] arm64: syscall: Ensure saved x0 is kept in-sync with tracer updates
 2026-08-10 19:26 UTC 

[CVE-2026-68336][LOW] bonding: fix devconf_all NULL dereference when IPv6 is disabled [ Upstream
 2026-08-10 19:22 UTC 

[CVE-2026-68414][MODERATE 7.0] wifi: cfg80211: cancel sched scan results work on unregister [ Upstream
 2026-08-10 19:17 UTC 

[CVE-2026-68181][MODERATE 7.0] mei: bus: access mei_device under device_lock on cleanup
 2026-08-10 19:13 UTC 

[CVE-2026-68141][MODERATE REGULAR] net/af_iucv: fix NULL deref in afiucv_hs_callback_syn()
 2026-08-10 19:11 UTC 

[CVE-2026-68087][LOW] HID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush()
 2026-08-10 19:05 UTC 

[CVE-2026-68101][MODERATE REGULAR] drm/amdgpu: fix check in amdgpu_hmm_invalidate_gfx For a short moment during alloc/free the userptr BO is not part of his VM, so bo->vm_bo can be NULL. Keep a reference to the VM root PD as parent of the userptr BO so that we can always use that to wait for all submissions of the VM instead of only the one involving the userptr BO. Signed-off-by: Christian König <[email protected]> Fixes: 9125089 ("drm/amdgpu: fix waiting for all submissions for userptrs") Closes: https://gitlab.freedesktop.org/drm/amd/-/work_items/5399 Reviewed-by: Alex Deucher <[email protected]> Signed-off-by: Alex Deucher <[email protected]> (cherry picked from
 2026-08-10 19:02 UTC 

[CVE-2026-68396][MODERATE REGULAR] scsi: core: wake eh reliably when using scsi_schedule_eh [ Upstream
 2026-08-10 19:02 UTC 

[CVE-2026-68183][MODERATE 7.0] firmware: stratix10-svc: fix memory leaks and list corruption bugs [ Upstream
 2026-08-10 18:57 UTC 

[CVE-2026-68377][MODERATE 7.0] net/sched: act_tunnel_key: Defer dst_release to RCU callback [ Upstream
 2026-08-10 18:57 UTC 

[CVE-2026-68357][MODERATE 7.0] watchdog: pretimeout: Fix UAF in watchdog_unregister_governor() [ Upstream
 2026-08-10 18:53 UTC 

[CVE-2026-68345][LOW] arm_mpam: guard MBWU state before adding it to garbage [ Upstream
 2026-08-10 18:49 UTC 

[CVE-2026-68160][IMPORTANT] ceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps()
 2026-08-10 18:46 UTC 

[CVE-2026-68307][MODERATE REGULAR] wifi: mt76: mt7925: fix crash in reset link replay [ Upstream
 2026-08-10 18:42 UTC 

[CVE-2026-68085][MODERATE 7.0] Bluetooth: hci_uart: clear HCI_UART_SENDING when write_work is canceled
 2026-08-10 18:39 UTC 

[CVE-2026-68426][IMPORTANT] xfrm: fix stale skb->prev after async crypto steals a GSO segment [ Upstream
 2026-08-10 18:37 UTC 

[CVE-2026-68371][MODERATE REGULAR] usb: musb: omap2430: Do not put borrowed of_node in probe [ Upstream
 2026-08-10 18:33 UTC 

[CVE-2026-68176][LOW] tracing: Fix mmiotrace possible NULL dereferencing of hiter->dev
 2026-08-10 18:33 UTC 

[CVE-2026-68089][LOW] iio: core: fix uninitialized data in debugfs
 2026-08-10 18:29 UTC 

[CVE-2026-68252][LOW] drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
 2026-08-10 18:28 UTC 

[CVE-2026-68305][LOW] drm/xe/vf: Add drm_dev guards when detaching CCS read/write buffers [ Upstream
 2026-08-10 18:27 UTC 

[CVE-2026-68333][LOW] dpaa2-switch: put MAC endpoint device on disconnect [ Upstream
 2026-08-10 18:26 UTC 

[CVE-2026-68251][LOW] drm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON()
 2026-08-10 18:24 UTC 

[CVE-2026-68381][IMPORTANT] ksmbd: pin conn during async oplock break notification [ Upstream
 2026-08-10 18:24 UTC 

[CVE-2026-68326][MODERATE 7.0] wifi: mwifiex: bound uAP association event IEs to the event buffer [ Upstream
 2026-08-10 18:24 UTC 

[CVE-2026-68417][MODERATE 7.0] RDMA/siw: publish QP after initialization [ Upstream
 2026-08-10 18:19 UTC 

[CVE-2026-68258][MODERATE 7.0] drm/amdkfd: Check bounds on CRIU restore queue type and mqd size
 2026-08-10 18:13 UTC 

[CVE-2026-68117][MODERATE 7.0] tipc: clear sock->sk on the failed-insert path in tipc_sk_create()
 2026-08-10 18:13 UTC 

[CVE-2026-68320][IMPORTANT] sctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid [ Upstream
 2026-08-10 18:08 UTC 

[CVE-2026-68091][MODERATE REGULAR] HID: wacom: stop hardware after post-start probe failures
 2026-08-10 18:03 UTC 

[CVE-2026-68107][MODERATE REGULAR] drm/amdgpu/vcn4: avoid rereading IB param length
 2026-08-10 17:59 UTC 

[CVE-2026-68298][LOW] drm/xe/vm: Fix SVM leak on resv obj alloc failure in xe_vm_create() [ Upstream
 2026-08-10 17:59 UTC 

[CVE-2026-68265][MODERATE 7.0] drm/xe/vm: Fix BO prefetch with CONSULT_MEM_ADVISE_PREF_LOC [ Upstream
 2026-08-10 17:55 UTC 

[CVE-2026-68338][MODERATE 7.0] net/packet: avoid fanout hook re-registration after unregister [ Upstream
 2026-08-10 17:53 UTC 

[CVE-2026-68362][MODERATE REGULAR] wifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin [ Upstream
 2026-08-10 17:49 UTC 

[CVE-2026-68237][MODERATE REGULAR] drm/amdgpu/userq: fix indefinite fence wait during GPU reset
 2026-08-10 17:45 UTC 

[CVE-2026-68134][MODERATE REGULAR] ptp: ptp_s390: Add missing facility check
 2026-08-10 17:45 UTC 

[CVE-2026-68143][MODERATE 7.0] net: slip: serialize receive against buffer reallocation
 2026-08-10 17:43 UTC 

[CVE-2026-68172][MODERATE REGULAR] arm64: make huge_ptep_get handled unaligned addresses
 2026-08-10 17:39 UTC 

[CVE-2026-68380][IMPORTANT] accel/amdxdna: Fix use-after-free of mm_struct in job scheduler [ Upstream
 2026-08-10 17:37 UTC 

[CVE-2026-68249][LOW] drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON()
 2026-08-10 17:37 UTC 

[CVE-2026-68096][MODERATE REGULAR] audit: fix recursive locking deadlock in audit_dupe_exe() [ Upstream
 2026-08-10 17:37 UTC 

[CVE-2026-68324][MODERATE 7.0] iommu/intel: Fix out-of-bounds memset in dmar_latency_disable() [ Upstream
 2026-08-10 17:33 UTC 

[CVE-2026-68153][MODERATE REGULAR] libceph: remove debugfs files before client teardown
 2026-08-10 17:28 UTC 

[CVE-2026-68216][LOW] media: pwc: Return queued buffers on start_streaming() failure
 2026-08-10 17:23 UTC 

[CVE-2026-68259][MODERATE REGULAR] drm/amdkfd: Check bounds in allocate_event_notification_slot
 2026-08-10 17:20 UTC 

[CVE-2026-68104][MODERATE 7.0] drm/amdgpu: invoke pm_genpd_remove() before freeing genpd
 2026-08-10 17:20 UTC 

[CVE-2026-68241][LOW] drm/i915/mst: limit DP MST ESI service loop
 2026-08-10 17:20 UTC 

[CVE-2026-68226][LOW] media: cx23885: add ioremap return check and cleanup
 2026-08-10 17:16 UTC 

[CVE-2026-68379][MODERATE 7.0] tcp: fix TIME_WAIT socket reference leak on PSP policy failure [ Upstream
 2026-08-10 17:12 UTC 

[CVE-2026-68293][MODERATE 7.0] net/mlx5: Fix MCIA register buffer overflow on 32 dword reads [ Upstream
 2026-08-10 17:10 UTC 

[CVE-2026-68201][IMPORTANT] ALSA: timer: drain a slave's callback before its master detaches it
 2026-08-10 17:10 UTC 

[CVE-2026-68288][LOW] net: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD [ Upstream
 2026-08-10 17:06 UTC 

[CVE-2026-68166][IMPORTANT] userfaultfd: prevent registration of special VMAs [ Upstream
 2026-08-10 17:03 UTC 

[CVE-2026-68191][LOW] wifi: ath12k: fix NULL pointer dereference in rhash table destroy
 2026-08-10 16:58 UTC 

[CVE-2026-68214][MODERATE 7.0] media: rtl2832: fix use-after-free in rtl2832_remove()
 2026-08-10 16:57 UTC 

[CVE-2026-68109][LOW] drm/amdgpu/sdma7.1: replace BUG_ON() with WARN_ON()
 2026-08-10 16:52 UTC 

[CVE-2026-68138][MODERATE 7.0] net/sched: serialize qdisc_rtab_list against concurrent get/put
 2026-08-10 16:52 UTC 

[CVE-2026-68217][LOW] media: pwc: Drain fill_buf on start_streaming() failure
 2026-08-10 16:49 UTC 

[CVE-2026-68100][MODERATE 7.0] ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl
 2026-08-10 16:45 UTC 

[CVE-2026-68086][MODERATE 7.0] mm/khugepaged: write all dirty file folios when collapsing [There is no upstream commit, as this code was removed by upstream
 2026-08-10 16:45 UTC 

[CVE-2026-68146][MODERATE REGULAR] ftrace: Add global mutex to serialize trace_parser access
 2026-08-10 16:41 UTC 

[CVE-2026-68425][MODERATE REGULAR] IB/mad: Drop unmatched RMPP responses before reassembly [ Upstream
 2026-08-10 16:37 UTC 

[CVE-2026-68289][MODERATE 7.0] tipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream() [ Upstream
 2026-08-10 16:32 UTC 

[CVE-2026-68234][LOW] drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved
 2026-08-10 16:28 UTC 

[CVE-2026-68092][LOW] time/jiffies: Register jiffies clocksource before usage [ Upstream
 2026-08-10 16:28 UTC 

[CVE-2026-68129][MODERATE REGULAR] gve: fix Rx queue stall on alloc failure
 2026-08-10 16:26 UTC 

[CVE-2026-68415][MODERATE 7.0] xfrm: clear mode callbacks after failed mode setup [ Upstream
 2026-08-10 16:22 UTC 

[CVE-2026-68136][IMPORTANT] net: gro: fix double aggregation of flush-marked skbs
 2026-08-10 16:20 UTC 

[CVE-2026-68398][MODERATE 7.0] ppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF [ Upstream
 2026-08-10 16:15 UTC 

[CVE-2026-68412][LOW] wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan() [ Upstream
 2026-08-10 16:11 UTC 

[CVE-2026-68312][MODERATE REGULAR] cifs: fix cifsFileInfo leak on kmalloc failure in deferred close drain paths [ Upstream
 2026-08-10 16:07 UTC 

[CVE-2026-68308][MODERATE REGULAR] wifi: mt76: mt7996: check pointer returned by mt76_connac_get_he_phy_cap() [ Upstream
 2026-08-10 16:04 UTC 

[CVE-2026-68422][LOW] btrfs: fix root leak if its reloc root is unexpected in merge_reloc_roots() [ Upstream
 2026-08-10 16:04 UTC 

[CVE-2026-68139][MODERATE REGULAR] net/mlx5e: Use sender devcom for MPV master-up
 2026-08-10 16:00 UTC 

[CVE-2026-68254][LOW] drm/i915/vrr: require valid min/max vfreq for VRR [ Upstream
 2026-08-10 16:00 UTC 

[CVE-2026-68260][MODERATE REGULAR] drm/imagination: acquire vm_ctx->lock before mapping memory to GPU VM
 2026-08-10 15:56 UTC 

[CVE-2026-68200][IMPORTANT] ALSA: timer: don't re-enter an instance callback that is still running
 2026-08-10 15:56 UTC 

[CVE-2026-68235][LOW] drm/amd/display: dce100: skip non-DP stream encoders for DP MST
 2026-08-10 15:52 UTC 

[CVE-2026-68401][MODERATE 7.0] firmware: arm_ffa: Fix out-of-bound writes in ffa_setup_and_transmit() [ Upstream
 2026-08-10 15:52 UTC 

[CVE-2026-68378][LOW] dpll: fix NULL pointer dereference in dpll_msg_add_pin_ref_sync()
 2026-08-10 15:52 UTC 

[CVE-2026-68266][MODERATE 7.0] drm/xe: Hold a dma-buf reference for imported BOs [ Upstream
 2026-08-10 15:48 UTC 

[CVE-2026-68400][MODERATE 7.0] firmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation [ Upstream
 2026-08-10 15:44 UTC 

[CVE-2026-68262][MODERATE 7.0] drm/imagination: Fix user array stride in pvr_set_uobj_array()
 2026-08-10 15:44 UTC 

[CVE-2026-68188][MODERATE 7.0] Bluetooth: RFCOMM: Fix session UAF in set_termios
 2026-08-10 15:44 UTC 

[CVE-2026-68090][LOW] debugobjects: Plug race against a concurrent OOM disable
 2026-08-10 15:40 UTC 

[CVE-2026-68296][MODERATE REGULAR] net: gre: fix lltx regression for GRE tunnels with SEQ/CSUM [ Upstream
 2026-08-10 15:36 UTC 

[CVE-2026-68250][LOW] drm/amdgpu/sdma5.2: replace BUG_ON() with WARN_ON()
 2026-08-10 15:32 UTC 

[CVE-2026-68387][LOW] can: raw: add locking for raw flags bitfield [ Upstream
 2026-08-10 15:32 UTC 

[CVE-2026-68187][MODERATE REGULAR] exec: fix unsigned loop counter wrap in transfer_args_to_stack()
 2026-08-10 15:30 UTC 

[CVE-2026-68297][MODERATE REGULAR] tipc: fix u16 MTU truncation in media and bearer MTU validation [ Upstream
 2026-08-10 15:26 UTC 

[CVE-2026-68291][LOW] idpf: fix max_vport related crash on allocation error during init [ Upstream
 2026-08-10 15:20 UTC 

[CVE-2026-68375][LOW] bnxt_en: Handle partially initialized auxiliary devices [ Upstream
 2026-08-10 15:17 UTC 

[CVE-2026-68390][MODERATE 7.0] Bluetooth: hci_sync: hold hdev->lock for hci_conn_params lookups [ Upstream
 2026-08-10 15:13 UTC 

[CVE-2026-68428][MODERATE 7.0] KVM: x86/mmu: Fix use-after-free on vendor module reload
 2026-08-10 15:12 UTC 

[CVE-2026-68140][IMPORTANT] net/iucv: fix use-after-free of a severed iucv_path
 2026-08-10 15:08 UTC 

[CVE-2026-68365][MODERATE 7.0] USB: serial: io_edgeport: cap received transmit credits
 2026-08-10 15:03 UTC 

[CVE-2026-68102][LOW] drm/amdgpu: fix aperture mapping leak
 2026-08-10 14:59 UTC 

[CVE-2026-68218][LOW] media: pci: dm1105: Free allocated workqueue
 2026-08-10 14:59 UTC 

[CVE-2026-68236][IMPORTANT] drm/amd/display: set new_stream to NULL after release
 2026-08-10 14:54 UTC 

[CVE-2026-68363][MODERATE 7.0] wifi: ath9k: hif_usb: don't dereference hif_dev after re-arming firmware request [ Upstream
 2026-08-10 14:54 UTC 

[CVE-2026-68099][IMPORTANT] ksmbd: restore DACL size on check_add_overflow() to avoid malformed ACL
 2026-08-10 14:50 UTC 

[CVE-2026-68246][MODERATE REGULAR] drm/amdgpu/gfx11: replace BUG_ON() with WARN_ON()
 2026-08-10 14:50 UTC 

[CVE-2026-68156][IMPORTANT] libceph: refresh auth->authorizer_buf{,_len} after authorizer update
 2026-08-10 14:50 UTC 

[CVE-2026-68427][MODERATE 7.0] gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings [ Upstream
 2026-08-10 14:46 UTC 

[CVE-2026-68159][IMPORTANT] libceph: bound pg_{temp,upmap,upmap_items} length to CEPH_PG_MAX_SIZE
 2026-08-10 14:43 UTC 

[CVE-2026-68121][MODERATE 7.0] pppoe: reload header pointer after dev_hard_header()
 2026-08-10 14:39 UTC 

[CVE-2026-68278][IMPORTANT] drm/dp/mst: fix buffer overflows in sideband chunk accumulation
 2026-08-10 14:34 UTC 

[CVE-2026-68128][IMPORTANT] ice: reject out-of-range ptype in ice_parser_profile_init
 2026-08-10 14:30 UTC 

[CVE-2026-68416][MODERATE 7.0] mtd: fix double free and WARN_ON in add_mtd_device() error paths [ Upstream
 2026-08-10 14:26 UTC 

[CVE-2026-68131][MODERATE 7.0] rbd: Reset positive result codes to zero in object map update path
 2026-08-10 14:24 UTC 

[CVE-2026-68384][MODERATE 7.0] drm/xe/vf: Fix VF CCS attach/detach race with in-flight BO moves [ Upstream
 2026-08-10 14:20 UTC 

[CVE-2026-68419][MODERATE 7.0] RDMA/irdma: Prevent rereg_mr for non-mem regions [ Upstream
 2026-08-10 14:18 UTC 

[CVE-2026-68255][MODERATE 7.0] drm/virtio: bound EDID block reads to the response buffer
 2026-08-10 14:14 UTC 

[CVE-2026-68148][MODERATE 7.0] fscrypt: Add missing superblock check in find_or_insert_direct_key()
 2026-08-10 14:10 UTC 

[CVE-2026-68167][LOW] btrfs: do not try compression for data reloc inodes
 2026-08-10 14:06 UTC 

[CVE-2026-68118][MODERATE 7.0] tcp: challenge ACK for non-exact RST in SYN-RECEIVED
 2026-08-10 14:06 UTC 

[CVE-2026-68242][MODERATE REGULAR] drm/i915/gt: Fix NULL deref on sched_engine alloc failure
 2026-08-10 14:03 UTC 

[CVE-2026-68372][MODERATE REGULAR] usb: core: port: Deattach Type-C connector on component unbind
 2026-08-10 14:03 UTC 

[CVE-2026-68106][MODERATE REGULAR] drm/amdgpu: fix division by zero with invalid uvd dimensions
 2026-08-10 13:57 UTC 

[CVE-2026-68409][IMPORTANT] wifi: mac80211: defer link RX stats percpu free to RCU [ Upstream
 2026-08-10 13:57 UTC 

[CVE-2026-68239][MODERATE 7.0] drm/ttm: Account for NULL and handle pages in ttm_pool_backup
 2026-08-10 13:53 UTC 

[CVE-2026-68125][MODERATE 7.0] mac802154: llsec: reject frames shorter than the authentication tag
 2026-08-10 13:51 UTC 

[CVE-2026-68368][MODERATE 7.0] usb: gadget: f_ncm: validate datagram bounds in ncm_unwrap_ntb()
 2026-08-10 13:48 UTC 

[CVE-2026-68376][IMPORTANT] sctp: fix auth_hmacs array size in struct sctp_cookie [ Upstream
 2026-08-10 13:34 UTC 

[CVE-2026-68108][MODERATE 7.0] drm/amdgpu/vce: fix integer overflow in image size
 2026-08-10 13:34 UTC 

[CVE-2026-68161][MODERATE 7.0] sctp: close UDP tunnel sockets during netns teardown [ Upstream
 2026-08-10 13:34 UTC 

[CVE-2026-68304][LOW] wifi: brcmfmac: fix 802.1X-SHA256 call trace warning [ Upstream
 2026-08-10 13:30 UTC 

[CVE-2026-68227][LOW] media: cx231xx: fix devres lifetime
 2026-08-10 13:26 UTC 

[CVE-2026-68391][MODERATE 7.0] Bluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds [ Upstream
 2026-08-10 13:23 UTC 

[CVE-2026-68364][MODERATE REGULAR] drm/amd/display: Fix ISM dc_lock deadlock during suspend [ Upstream
 2026-08-10 13:19 UTC 

[CVE-2026-68157][MODERATE 7.0] libceph: guard missing CRUSH type name lookup
 2026-08-10 13:19 UTC 

[CVE-2026-68133][LOW] ice: fix PTP Call Trace during PTP release
 2026-08-10 13:15 UTC 

[CVE-2026-68406][LOW] wifi: cfg80211: validate PMSR FTM preamble range [ Upstream
 2026-08-10 13:11 UTC 

[CVE-2026-68103][MODERATE 7.0] drm/amdgpu: reject mapping a reserved doorbell to a new queue
 2026-08-10 13:07 UTC 

[CVE-2026-68169][MODERATE 7.0] mptcp: pm: userspace: fix use-after-free in get_local_id [ Upstream
 2026-08-10 13:07 UTC 

[CVE-2026-68202][IMPORTANT] ALSA: seq: close a re-opened queue timer in the destructor
 2026-08-10 13:02 UTC 

[CVE-2026-68194][MODERATE REGULAR] wifi: mt76: mt7921: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 12:59 UTC 

[CVE-2026-68349][MODERATE 7.0] wifi: carl9170: fix buffer overflow in rx_stream failover path [ Upstream
 2026-08-10 12:55 UTC 

[CVE-2026-68316][MODERATE 7.0] accel: ethosu: Fix element size accounting for cmd stream validation [ Upstream
 2026-08-10 12:51 UTC 

[CVE-2026-68331][LOW] dpaa2-eth: put MAC endpoint device on disconnect [ Upstream
 2026-08-10 12:51 UTC 

[CVE-2026-68322][MODERATE REGULAR] rds: Fix inet6_addr_lst NULL dereference when IPv6 is disabled [ Upstream
 2026-08-10 12:43 UTC 

[CVE-2026-68082][MODERATE 7.0] libceph: fix two unsafe bare decodes in decode_lockers()
 2026-08-08  9:54 UTC 

[CVE-2026-68081][MODERATE 7.0] KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state
 2026-08-08  9:51 UTC 

[CVE-2026-31669][IMPORTANT] mptcp: fix slab-use-after-free in __inet_lookup_established
 2026-08-07 16:00 UTC 

[CVE-2026-46082][MODERATE REGULAR] KVM: SVM: Inject #UD for INVLPGA if EFER.SVME=0
 2026-08-07 14:09 UTC 

[CVE-2026-68480][MODERATE REGULAR] x86/bugs: Make Safe-RET robust against interrupt injection
 2026-08-06 17:51 UTC 

[CVE-2026-64590][LOW] dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning [ Upstream
 2026-08-06  8:22 UTC 

[CVE-2026-64601][MODERATE 7.0] ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on each resubmission
 2026-08-06  8:19 UTC 

[CVE-2026-64598][MODERATE REGULAR] smb/client: Fix error code in smb2_aead_req_alloc()
 2026-08-06  8:15 UTC 

[CVE-2026-64597][IMPORTANT] smb: client: fix double-free in SMB2_close() replay
 2026-08-06  8:11 UTC 

[CVE-2026-64603][LOW] platform/x86: intel-hid: Protect ACPI notify handler against recursion
 2026-08-06  8:07 UTC 

[CVE-2026-64591][LOW] iommu/vt-d: Avoid WARNING in sva unbind path
 2026-08-06  8:07 UTC 

[CVE-2026-64604][MODERATE REGULAR] KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode
 2026-08-06  8:03 UTC 

[CVE-2026-64593][LOW] btrfs: do not trim a device which is not writeable [ Upstream
 2026-08-06  8:00 UTC 

[CVE-2026-64586][MODERATE 7.0] wifi: brcmfmac: drain bus_reset work on device removal
 2026-08-06  7:55 UTC 

[CVE-2026-64596][MODERATE REGULAR] libfs: set SB_I_NOEXEC and SB_I_NODEV by default in init_pseudo()
 2026-08-06  7:45 UTC 

[CVE-2026-64582][IMPORTANT] RDMA/rxe: Fix a use-after-free problem in rxe_mmap [ Upstream
 2026-08-05 11:51 UTC 

[CVE-2026-64572][MODERATE 7.0] ipv4: fib: free fib_alias with kfree_rcu() on insert error path [ Upstream
 2026-08-05  9:29 UTC 

[CVE-2026-64569][MODERATE REGULAR] mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n [ Upstream
 2026-08-05  9:25 UTC 

[CVE-2026-64570][MODERATE 7.0] wifi: mac80211: fix fils_discovery double free on alloc failure [ Upstream
 2026-08-05  9:22 UTC 

[CVE-2026-64577][MODERATE 7.0] gtp: check skb_pull_data() return in gtp1u_send_echo_resp() [ Upstream
 2026-08-05  9:17 UTC 

[CVE-2026-64579][MODERATE 7.0] xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert [ Upstream
 2026-08-05  9:17 UTC 

[CVE-2026-64573][MODERATE 7.0] Bluetooth: qca: fix NVM tag length underflow in TLV parser [ Upstream
 2026-08-05  9:13 UTC 

[CVE-2026-64580][MODERATE 7.0] xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst() [ Upstream
 2026-08-05  9:13 UTC 

[CVE-2026-64581][MODERATE 7.0] xfrm: fix sk_dst_cache double-free in xfrm_user_policy() [ Upstream
 2026-08-05  9:09 UTC 

[CVE-2026-64567][MODERATE 7.0] btrfs: reject free space cache with more entries than pages [ Upstream
 2026-08-05  9:06 UTC 

[CVE-2026-64568][MODERATE 7.0] wifi: mac80211: fix unsol_bcast_probe_resp double free on alloc failure [ Upstream
 2026-08-05  9:02 UTC 

[CVE-2026-64576][MODERATE REGULAR] nexthop: initialize extack in nh_res_bucket_migrate() [ Upstream
 2026-08-05  8:58 UTC 

[CVE-2026-64575][MODERATE 7.0] bpf: tcp: fix double sock release on batch realloc [ Upstream
 2026-08-05  8:53 UTC 

[CVE-2026-64574][MODERATE 7.0] wifi: mac80211: tear down new links on vif update error path [ Upstream
 2026-08-05  8:52 UTC 

[CVE-2026-64564][IMPORTANT] sctp: don't free the ASCONF's own transport in DEL-IP processing
 2026-08-04  7:02 UTC 

[CVE-2026-64563][MODERATE 7.0] rhashtable: clear stale iter->p on table restart
 2026-08-04  6:59 UTC 

[CVE-2026-64562][MODERATE 7.0] KVM: nVMX: Hide shadow VMCS right after VMCLEAR
 2026-08-04  6:55 UTC 

[CVE-2026-64561][IMPORTANT] KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
 2026-08-04  6:51 UTC 

[CVE-2026-64549][MODERATE REGULAR] Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup() [ Upstream
 2026-08-02 13:03 UTC 

[CVE-2025-71130][MODERATE 7.0] drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer
 2026-08-02 11:49 UTC 

[CVE-2026-31540][LOW] drm/i915/gt: Check set_default_submission() before deferencing [ Upstream
 2026-08-02 11:40 UTC 

[CVE-2025-68793][MODERATE 7.0] drm/amdgpu: fix a job->pasid access race in gpu recovery [ Upstream
 2026-08-01 18:06 UTC 

[CVE-2026-23034][MODERATE REGULAR] drm/amdgpu/userq: Fix fence reference leak on queue teardown v2 [ Upstream
 2026-08-01 18:01 UTC 

[CVE-2026-23051][LOW] drm/amdgpu: fix drm panic null pointer when driver not support atomic [ Upstream
 2026-08-01 17:55 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox