public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-72469][MODERATE 7.0] xprtrdma: Fix ep kref imbalance on ADDR_CHANGE [ Upstream
 2026-08-15 10:54 UTC 

[CVE-2026-72349][MODERATE REGULAR] netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt() [ Upstream
 2026-08-15 10:49 UTC 

[CVE-2026-72425][LOW] ice: fix FDIR CTRL VSI resource leak in ice_reset_all_vfs() [ Upstream
 2026-08-15 10:45 UTC 

[CVE-2026-72041][MODERATE 7.0] espintcp: use sk_msg_free_partial to fix partial send
 2026-08-15 10:42 UTC 

[CVE-2026-72125][MODERATE 7.0] can: isotp: fix use-after-free race with concurrent NETDEV_UNREGISTER
 2026-08-15 10:38 UTC 

[CVE-2026-72463][IMPORTANT] xfrm: Fix dev use-after-free in xfrm async resumption [ Upstream
 2026-08-15 10:34 UTC 

[CVE-2026-74261][LOW] ALSA: seq: avoid stale FIFO cells during resize [ Upstream
 2026-08-15 10:32 UTC 

[CVE-2026-72220][IMPORTANT] sunrpc: harden rq_procinfo lifecycle to prevent double-free
 2026-08-15 10:29 UTC 

[CVE-2026-74318][LOW] btrfs: fix deadlock cloning inline extent when using flushoncommit [ Upstream
 2026-08-15 10:27 UTC 

[CVE-2026-74328][MODERATE 7.0] iommufd: Destroy the pages content after detaching from dmabuf [ Upstream
 2026-08-15 10:24 UTC 

[CVE-2026-74392][MODERATE REGULAR] dm: limit target bio polling to one shot [ Upstream
 2026-08-15 10:22 UTC 

[CVE-2026-72333][MODERATE REGULAR] Bluetooth: L2CAP: fix tx ident leak for commands without a response
 2026-08-15 10:20 UTC 

[CVE-2026-72122][MODERATE REGULAR] can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure
 2026-08-15 10:18 UTC 

[CVE-2026-72343][MODERATE 7.0] net/mlx5e: Fix HV VHCA stats zero-sized buffer allocation [ Upstream
 2026-08-15 10:14 UTC 

[CVE-2026-72236][MODERATE REGULAR] Navigation Menu Sign in Appearance settings Platform AI CODE CREATION GitHub Copilot Write better code with AI GitHub Copilot app Direct agents from issue to merge MCP Registry Integrate external tools DEVELOPER WORKFLOWS Actions Automate any workflow Codespaces Instant dev environments Issues Plan and track work Code Review Manage code changes Code Quality Enforce quality at merge APPLICATION SECURITY GitHub Advanced Security Find and fix vulnerabilities Code security Secure your code as you build Secret protection Stop leaks before they start EXPLORE Why GitHub Documentation Blog Changelog Marketplace View all features Solutions BY COMPANY SIZE Enterprises Small and medium teams Startups Nonprofits BY USE CASE App Modernization DevSecOps DevOps CI/CD View all use cases BY INDUSTRY Healthcare Financial services Manufacturing Government View all industries View all solutions Resources EXPLORE BY TOPIC AI Software Development DevOps Security View all topics EXPLORE BY TYPE Customer stories Events & webinars Ebooks & reports Business insights GitHub Skills SUPPORT & SERVICES Documentation Customer support Community forum Trust center Partners View all resources Open Source COMMUNITY GitHub Sponsors Fund open source developers PROGRAMS Security Lab Maintainer Community Accelerator GitHub Stars Archive Program REPOSITORIES Topics Trending Collections Enterprise ENTERPRISE SOLUTIONS Enterprise platform AI-powered developer platform AVAILABLE ADD-ONS GitHub Advanced Security Enterprise-grade security features Copilot for Business Enterprise-grade AI features Premium Support Enterprise-grade 24/7 support Pricing Search / Sign in Sign up Appearance settings
 2026-08-15 10:14 UTC 

[CVE-2026-72318][IMPORTANT] cifs: validate DFS referral string offsets [ Upstream
 2026-08-15 10:11 UTC 

[CVE-2026-72084][IMPORTANT] scsi: target: Bound PR-OUT TransportID parsing to the received buffer
 2026-08-15 10:06 UTC 

[CVE-2026-74394][IMPORTANT] RDMA/srpt: fix integer overflow in immediate data length check [ Upstream
 2026-08-15 10:02 UTC 

[CVE-2026-74405][MODERATE 7.0] OPP: Fix race between OPP addition and lookup [ Upstream
 2026-08-15  9:57 UTC 

[CVE-2026-72120][MODERATE 7.0] can: bcm: add missing rcu list annotations and operations commit 7b2c3eabc4dafc062a25e10711154f2107526a78 upstream
 2026-08-15  9:53 UTC 

[CVE-2026-74270][IMPORTANT] handshake: Require admin permission for DONE command [ Upstream
 2026-08-15  9:50 UTC 

[CVE-2026-74339][MODERATE REGULAR] ALSA: seq: Clear variable event pointer on read [ Upstream
 2026-08-15  9:46 UTC 

[CVE-2026-72502][MODERATE 7.0] tcp: ipv6: clamp default adverting MSS to avoid GSO_BY_FRAGS (0xFFFF) [ Upstream
 2026-08-15  9:42 UTC 

[CVE-2026-74391][MODERATE 7.0] tracing: Bound synthetic-field strings with seq_buf [ Upstream
 2026-08-15  9:38 UTC 

[CVE-2026-72304][MODERATE REGULAR] ASoC: SOF: ipc4-control: Fix TOCTOU in sof_ipc4_bytes_put
 2026-08-15  9:34 UTC 

[CVE-2026-74260][MODERATE REGULAR] netfilter: nf_dup_netdev: add nf_dev_xmit_recursion*() helpers and use them [ Upstream
 2026-08-15  9:30 UTC 

[CVE-2026-72310][MODERATE 7.0] smb: client: fix overflow in passthrough ioctl bounds check [ Upstream
 2026-08-15  9:28 UTC 

[CVE-2026-74287][MODERATE 7.0] sctp: validate embedded address parameter length [ Upstream
 2026-08-15  9:23 UTC 

[CVE-2026-72046][MODERATE 7.0] gve: fix header buffer corruption with header-split and HW-GRO [ Upstream commit d676c9a73bdcd8237425dbb826f2bd1a25c36e40 ]
 2026-08-15  9:18 UTC 

[CVE-2026-72245][LOW] gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path
 2026-08-15  9:16 UTC 

[CVE-2026-72030][MODERATE 7.0] ata: libata-core: Reject an invalid concurrent positioning ranges count [ Upstream
 2026-08-15  9:12 UTC 

[CVE-2026-72114][MODERATE 7.0] can: bcm: validate frame length in bcm_rx_setup() for RTR replies
 2026-08-15  9:08 UTC 

[CVE-2026-72441][MODERATE REGULAR] ieee802154: fix kernel-infoleak in dgram_recvmsg() [ Upstream
 2026-08-15  9:04 UTC 

[CVE-2026-72279][MODERATE 7.0] KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR
 2026-08-15  9:00 UTC 

[CVE-2026-72051][MODERATE 7.0] net: ip6_tunnel: require CAP_NET_ADMIN in the device netns for changelink [ Upstream
 2026-08-15  8:58 UTC 

[CVE-2026-68477][MODERATE REGULAR] ipvs: fix more places with wrong ipv6 transport offsets
 2026-08-15  8:55 UTC 

[CVE-2026-72494][LOW] RDMA/irdma: Replace waitqueue and flag with completion [ Upstream
 2026-08-15  8:50 UTC 

[CVE-2026-74295][LOW] ASoC: codecs: hdac_hdmi: Validate written enum value [ Upstream
 2026-08-15  8:47 UTC 

[CVE-2026-72083][IMPORTANT] scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE
 2026-08-15  8:43 UTC 

[CVE-2026-72421][LOW] ipv4: fib: Don't ignore error route in local/main tables. [ Upstream
 2026-08-15  8:39 UTC 

[CVE-2026-72106][MODERATE 7.0] dm-ioctl: fix a possible overflow in list_version_get_info
 2026-08-15  8:39 UTC 

[CVE-2026-72315][LOW] smb: client: fix busy dentry warning on unmount after DIO [ Upstream
 2026-08-15  8:35 UTC 

[CVE-2026-72012][MODERATE 7.0] tracing/osnoise: Call synchronize_rcu() when unregistering
 2026-08-15  8:34 UTC 

[CVE-2026-74329][MODERATE 7.0] watchdog: unregister PM notifier on watchdog unregister [ Upstream
 2026-08-15  8:30 UTC 

[CVE-2026-72166][LOW] net/9p: fix infinite loop in p9_client_rpc on fatal signal
 2026-08-15  8:22 UTC 

[CVE-2026-72224][LOW] nvdimm/btt: Free arenas on btt_init() error paths
 2026-08-15  8:17 UTC 

[CVE-2026-72280][MODERATE REGULAR] KVM: arm64: nv: Drop bogus WARN for write to ZCR_EL2
 2026-08-15  8:13 UTC 

[CVE-2026-74325][MODERATE 7.0] wifi: mt76: use kfree_rcu for offchannel link in mt76_put_vif_phy_link [ Upstream
 2026-08-15  8:13 UTC 

[CVE-2026-72316][LOW] dm era: fix NULL pointer dereference in metadata_open() [ Upstream
 2026-08-15  8:09 UTC 

[CVE-2026-74312][MODERATE 7.0] vhost/vdpa: validate virtqueue index in mmap and fault paths [ Upstream
 2026-08-15  8:05 UTC 

[CVE-2026-72119][MODERATE 7.0] can: bcm: extend bcm_tx_lock usage for data and timer updates commit 12ce799f7ab1e05bd8fbf79e46f403bfe5597ebc upstream
 2026-08-15  8:01 UTC 

[CVE-2026-72376][LOW] afs: Fix misplaced inc of net->cells_outstanding [ Upstream
 2026-08-15  7:57 UTC 

[CVE-2026-72029][MODERATE 7.0] net: wwan: iosm: bound device offsets in the MUX downlink decoder
 2026-08-15  7:53 UTC 

[CVE-2026-72244][MODERATE REGULAR] gpu/buddy: bail out of try_harder when alignment cannot be honoured [ Upstream
 2026-08-15  7:49 UTC 

[CVE-2026-72263][LOW] ASoC: SOF: topology: fix memory leak in snd_sof_load_topology
 2026-08-15  7:49 UTC 

[CVE-2026-72124][MODERATE REGULAR] can: isotp: serialize TX state transitions under so->rx_lock
 2026-08-15  7:45 UTC 

[CVE-2026-72175][MODERATE REGULAR] fs/proc/task_mmu: fix make_uffd_wp_huge_pte() prot-update race
 2026-08-15  7:41 UTC 

[CVE-2026-74436][MODERATE 7.0] rxrpc: serialize kernel accept preallocation with socket teardown [ Upstream
 2026-08-15  7:39 UTC 

[CVE-2026-74426][LOW] afs: fix NULL pointer dereference in afs_get_tree()
 2026-08-15  7:35 UTC 

[CVE-2026-72335][MODERATE 7.0] Bluetooth: MGMT: Fix adv monitor add failure cleanup [ Upstream
 2026-08-15  7:31 UTC 

[CVE-2026-72290][LOW] KVM: s390: pci: Fix GISC refcount leak on AIF enable failure
 2026-08-15  7:27 UTC 

[CVE-2026-72126][MODERATE 7.0] can: isotp: use unconditional synchronize_rcu() in isotp_release()
 2026-08-15  7:23 UTC 

[CVE-2026-72422][MODERATE 7.0] ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE [ Upstream
 2026-08-15  7:18 UTC 

[CVE-2026-72177][MODERATE REGULAR] mm/damon/sysfs-schemes: fix dir put orders in access_pattern_add_dirs()
 2026-08-15  7:18 UTC 

[CVE-2026-72225][LOW] jbd2: fix integer underflow in jbd2_journal_initialize_fast_commit()
 2026-08-15  7:15 UTC 

[CVE-2026-72450][MODERATE REGULAR] xfrm: validate selector family and prefixlen during match [ Upstream
 2026-08-15  7:10 UTC 

[CVE-2026-74265][LOW] net: mana: initialize gdma queue id to INVALID_QUEUE_ID [ Upstream
 2026-08-15  7:06 UTC 

[CVE-2026-72003][IMPORTANT] wifi: brcmfmac: cyw: fix heap overflow on a short auth frame
 2026-08-15  7:02 UTC 

[CVE-2026-72031][LOW] ata: libata-core: Add NOLPM quirk for PNY CS900 1TB SSD
 2026-08-15  6:58 UTC 

[CVE-2026-72019][MODERATE 7.0] macsec: don't read an unset MAC header in macsec_encrypt()
 2026-08-15  6:55 UTC 

[CVE-2026-72467][LOW] xprtrdma: Check frwr_wp_create() during connect [ Upstream
 2026-08-15  6:51 UTC 

[CVE-2026-68454][MODERATE 7.0] KVM: s390: pci: Fix handling of AIF enable without AISB
 2026-08-13 15:04 UTC 

[CVE-2026-68451][MODERATE 7.0] s390/zcrypt: Validate length for CCA ECC private key requests
 2026-08-13 14:59 UTC 

[CVE-2026-68453][MODERATE 7.0] s390/zcrypt: Fix buffer over-read in cca_cipher2protkey
 2026-08-13 14:55 UTC 

[CVE-2026-68452][MODERATE 7.0] s390/zcrypt: Validate length for CCA AES cipher key requests
 2026-08-13 14:52 UTC 

[CVE-2026-68450][LOW] btrfs: free mapping node on duplicate reloc root insert [ Upstream
 2026-08-12  1:58 UTC 

[CVE-2026-68447][MODERATE REGULAR] drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size
 2026-08-12  1:55 UTC 

[CVE-2026-68448][MODERATE 7.0] ovl: check access to copy_file_range source with src mounter creds [ Upstream
 2026-08-12  1:52 UTC 

[CVE-2026-68434][LOW] serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms
 2026-08-12  1:16 UTC 

[CVE-2026-68442][MODERATE 7.0] btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps [ Upstream
 2026-08-12  1:14 UTC 

[CVE-2026-68446][MODERATE REGULAR] drm/vmwgfx: Validate vmw_surface_metadata::array_size
 2026-08-12  1:10 UTC 

[CVE-2026-68430][LOW] drm/amdgpu/gfx8: drop unecessary BUG_ON()
 2026-08-12  1:06 UTC 

[CVE-2026-68437][MODERATE REGULAR] drm/imagination: Fit paired fragment job in the correct CCCB
 2026-08-12  1:06 UTC 

[CVE-2026-68441][MODERATE REGULAR] net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains [ Upstream
 2026-08-12  1:06 UTC 

[CVE-2026-68439][LOW] wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() [ Upstream
 2026-08-12  1:02 UTC 

[CVE-2026-68432][IMPORTANT] vxlan: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-12  0:57 UTC 

[CVE-2026-68436][LOW] drm/amd/display: use kvzalloc to allocate struct dc
 2026-08-12  0:53 UTC 

[CVE-2026-68429][LOW] drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue_probe()
 2026-08-12  0:53 UTC 

[CVE-2026-68433][MODERATE REGULAR] libceph: bound get_version reply decode to front len
 2026-08-12  0:51 UTC 

[CVE-2026-68245][MODERATE 7.0] drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()
 2026-08-11  0:34 UTC 

[CVE-2026-68279][MODERATE REGULAR] drm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers
 2026-08-11  0:33 UTC 

[CVE-2026-68420][MODERATE 7.0] xfrm: reject optional IPTFS templates in outbound policies [ Upstream
 2026-08-11  0:30 UTC 

[CVE-2026-68418][LOW] RDMA/irdma: Prevent user-triggered null deref on QP create [ Upstream
 2026-08-11  0:28 UTC 

[CVE-2026-68323][MODERATE 7.0] tipc: serialize udp bearer replicast list updates [ Upstream
 2026-08-11  0:25 UTC 

[CVE-2026-68268][LOW] drm/xe: Return error on non-migratable faults requiring devmem
 2026-08-11  0:22 UTC 

[CVE-2026-68142][IMPORTANT] geneve: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-11  0:20 UTC 

[CVE-2026-68411][MODERATE REGULAR] wifi: mac80211_hwsim: clamp virtio RX length before skb_put [ Upstream
 2026-08-11  0:16 UTC 

[CVE-2026-68149][MODERATE 7.0] fs: preserve ACL_DONT_CACHE state in forget_cached_acl()
 2026-08-11  0:16 UTC 

[CVE-2026-68397][IMPORTANT] net/iucv: take a reference on the socket found in afiucv_hs_rcv() [ Upstream
 2026-08-11  0:12 UTC 

[CVE-2026-68346][LOW] ALSA: hda: cs35l41: validate and free ACPI mute object [ Upstream
 2026-08-11  0:08 UTC 

[CVE-2026-68093][MODERATE 7.0] KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug
 2026-08-11  0:05 UTC 

[CVE-2026-68267][MODERATE 7.0] drm/xe/rtp: Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists [ Upstream
 2026-08-11  0:00 UTC 

[CVE-2026-68132][LOW] super: fix emergency thaw deadlock on frozen block devices
 2026-08-10 23:58 UTC 

[CVE-2026-68270][MODERATE REGULAR] drm/sysfb: Avoid possible truncation with calculating visible size
 2026-08-10 23:55 UTC 

[CVE-2026-68385][MODERATE REGULAR] s390/checksum: Fix csum_partial() without vector facility [ Upstream
 2026-08-10 23:51 UTC 

[CVE-2026-68273][MODERATE 7.0] drm/amdgpu: Fix context pstate override handling [ Upstream
 2026-08-10 23:47 UTC 

[CVE-2026-68253][MODERATE 7.0] drm/i915/hdcp: check streams[] bounds before overflow [ Upstream
 2026-08-10 23:47 UTC 

[CVE-2026-68407][LOW] wifi: nl80211: free RNR data on MBSSID mismatch [ Upstream
 2026-08-10 23:44 UTC 

[CVE-2026-68147][IMPORTANT] fscrypt: Avoid dynamic allocation in fscrypt_get_devices()
 2026-08-10 23:40 UTC 

[CVE-2026-68392][MODERATE 7.0] Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync [ Upstream
 2026-08-10 23:40 UTC 

[CVE-2026-68175][LOW] tracing: Fix resource leak on mmiotrace trace_pipe close
 2026-08-10 23:36 UTC 

[CVE-2026-68388][MODERATE 7.0] smb/client: handle overlapping allocated ranges in fallocate [ Upstream
 2026-08-10 23:32 UTC 

[CVE-2026-68347][MODERATE REGULAR] iommu/amd: Fix IRQ unsafe locking in gdom allocation [ Upstream
 2026-08-10 23:28 UTC 

[CVE-2026-68306][MODERATE REGULAR] wifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht() [ Upstream
 2026-08-10 23:26 UTC 

[CVE-2026-68212][MODERATE REGULAR] media: saa7134: Fix a possible memory leak in saa7134_video_init1
 2026-08-10 23:26 UTC 

[CVE-2026-68257][MODERATE 7.0] drm/amdkfd: fix 32-bit overflow in CWSR total size calculation
 2026-08-10 23:23 UTC 

[CVE-2026-68168][MODERATE 7.0] afs: Fix afs_edit_dir_remove() to get, not find, block 0
 2026-08-10 23:23 UTC 

[CVE-2026-68115][LOW] drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON()
 2026-08-10 23:21 UTC 

[CVE-2026-68329][IMPORTANT] iommu/amd: Wait for completion instead of returning early in iommu_completion_wait() [ Upstream
 2026-08-10 23:21 UTC 

[CVE-2026-68162][MODERATE 7.0] Revert "sctp: sysctl: auth_enable: avoid using current->nsproxy" This reverts
 2026-08-10 23:17 UTC 

[CVE-2026-68294][IMPORTANT] net: qrtr: restrict socket creation to the initial network namespace [ Upstream
 2026-08-10 23:12 UTC 

[CVE-2026-68292][LOW] ice: prevent tstamp ring allocation for non-PF VSI types [ Upstream
 2026-08-10 23:08 UTC 

[CVE-2026-68276][MODERATE 7.0] drm/amdgpu/gfx: fix cleaner shader IB buffer overflow [ Upstream
 2026-08-10 23:08 UTC 

[CVE-2026-68275][MODERATE REGULAR] drm/amdgpu: check amdgpu_vm_bo_find() result in GET_MAPPING_INFO
 2026-08-10 23:08 UTC 

[CVE-2026-68271][MODERATE REGULAR] drm/nouveau: fix reversed error cleanup order in ucopy functions
 2026-08-10 23:08 UTC 

[CVE-2026-68408][LOW] wifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock [ Upstream
 2026-08-10 23:06 UTC 

[CVE-2026-68287][MODERATE 7.0] drop_monitor: fix size calculations for 64-bit attributes [ Upstream
 2026-08-10 23:04 UTC 

[CVE-2026-68383][MODERATE 7.0] drm/xe/guc: Keep scheduler timeline name alive [ Upstream
 2026-08-10 23:01 UTC 

[CVE-2026-68313][LOW] tipc: fix infinite loop in __tipc_nl_compat_dumpit [ Upstream
 2026-08-10 22:59 UTC 

[CVE-2026-68274][MODERATE 7.0] drm/xe/guc: Fix buffer overflow in steered register list allocation [ Upstream
 2026-08-10 22:55 UTC 

[CVE-2026-68299][MODERATE 7.0] vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets [ Upstream
 2026-08-10 22:54 UTC 

[CVE-2026-68112][MODERATE REGULAR] drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()
 2026-08-10 22:49 UTC 

[CVE-2026-68354][MODERATE 7.0] firewire: net: Fix fragmented datagram reassembly [ Upstream
 2026-08-10 22:49 UTC 

[CVE-2026-68145][IMPORTANT] iomap: fix out-of-bounds bitmap_set() with zero-length range
 2026-08-10 22:45 UTC 

[CVE-2026-68286][MODERATE REGULAR] drop_monitor: perform u64_stats updates under IRQ-disabled section [ Upstream
 2026-08-10 22:41 UTC 

[CVE-2026-68155][MODERATE 7.0] libceph: Reject monmaps advertising zero monitors
 2026-08-10 22:37 UTC 

[CVE-2026-68261][MODERATE REGULAR] drm/imagination: fix error checking of pvr_vm_context_lookup()
 2026-08-10 22:35 UTC 

[CVE-2026-68238][LOW] drm/amdgpu: Release VFCT ACPI table reference
 2026-08-10 22:35 UTC 

[CVE-2026-68335][IMPORTANT] rds: drop incoming messages that cross network namespace boundaries [ Upstream
 2026-08-10 22:34 UTC 

[CVE-2026-68105][LOW] drm/amdgpu: Fix kernel panic during driver load failure
 2026-08-10 22:34 UTC 

[CVE-2026-68393][MODERATE 7.0] Bluetooth: hci_sync: extend conn_hash lookup critical sections [ Upstream
 2026-08-10 22:34 UTC 

[CVE-2026-68197][MODERATE REGULAR] wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper
 2026-08-10 22:30 UTC 

[CVE-2026-68205][MODERATE REGULAR] media: v4l2-fwnode: Fix subdev owner overwritten in v4l2_async_register_subdev_sensor() [ Upstream
 2026-08-10 22:27 UTC 

[CVE-2026-68328][LOW] nfp: Check resource mutex allocation [ Upstream
 2026-08-10 22:22 UTC 

[CVE-2026-68343][MODERATE 7.0] smb: client: validate DFS referral PathConsumed [ Upstream
 2026-08-10 22:18 UTC 

[CVE-2026-68158][MODERATE 7.0] libceph: Fix multiplication overflow in decode_new_up_state_weight()
 2026-08-10 22:14 UTC 

[CVE-2026-68119][MODERATE REGULAR] tcp: initialize standalone TCP-AO response padding
 2026-08-10 22:10 UTC 

[CVE-2026-68403][LOW] wifi: brcmfmac: initialize SDIO data work before cleanup [ Upstream
 2026-08-10 22:08 UTC 

[CVE-2026-68284][MODERATE 7.0] bpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg() [ Upstream
 2026-08-10 22:04 UTC 

[CVE-2026-68248][MODERATE REGULAR] drm/i915: Return NULL on error in active_instance
 2026-08-10 22:00 UTC 

[CVE-2026-68351][MODERATE 7.0] wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read [ Upstream
 2026-08-10 21:56 UTC 

[CVE-2026-68174][LOW] tracing: Fix union collision of module and refcnt for dynamic events
 2026-08-10 21:51 UTC 

[CVE-2026-68110][LOW] drm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON()
 2026-08-10 21:50 UTC 

[CVE-2026-68344][MODERATE 7.0] usb: atm: ueagle-atm: reject descriptors that confuse probe and disconnect [ Upstream
 2026-08-10 21:50 UTC 

[CVE-2026-68355][MODERATE 7.0] wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() [ Upstream
 2026-08-10 21:48 UTC 

[CVE-2026-68111][MODERATE REGULAR] drm/amdgpu/gfx9: replace BUG_ON() with WARN_ON()
 2026-08-10 21:43 UTC 

[CVE-2026-68186][MODERATE REGULAR] binfmt_misc: set have_execfd only once the interpreter is opened
 2026-08-10 21:43 UTC 

[CVE-2026-68126][MODERATE 7.0] mac802154: hold an interface reference across the scan worker
 2026-08-10 21:39 UTC 

[CVE-2026-68337][LOW] bpf: Reject redirect helpers without a bpf_net_context [ Upstream
 2026-08-10 21:37 UTC 

[CVE-2026-68301][LOW] net: hsr: fix memory leak on slave unregistration by removing synced VLANs [ Upstream
 2026-08-10 21:33 UTC 

[CVE-2026-68315][MODERATE 7.0] sctp: validate stream count in sctp_process_strreset_inreq() [ Upstream
 2026-08-10 21:29 UTC 

[CVE-2026-68165][LOW] mm/damon/core: validate ranges in damon_set_regions()
 2026-08-10 21:25 UTC 

[CVE-2026-68404][MODERATE 7.0] wifi: cfg80211: use wiphy work for socket owner autodisconnect [ Upstream
 2026-08-10 21:21 UTC 

[CVE-2026-68300][MODERATE 7.0] sctp: auth: verify auth requirement when auth_chunk is NULL [ Upstream
 2026-08-10 21:18 UTC 

[CVE-2026-68247][MODERATE 7.0] drm/i915/bios: range check LFP Data Block panel_type2
 2026-08-10 21:14 UTC 

[CVE-2026-68386][LOW] bpf, sockmap: Reject unhashed UDP sockets on sockmap update [ Upstream
 2026-08-10 21:12 UTC 

[CVE-2026-68402][MODERATE 7.0] wifi: cfg80211: bound element ID read when checking non-inheritance [ Upstream
 2026-08-10 21:08 UTC 

[CVE-2026-68309][LOW] wifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bss_he_tlv() [ Upstream
 2026-08-10 21:04 UTC 

[CVE-2026-68269][MODERATE REGULAR] drm/i915/gem: Add missing nospec on parallel submit slot
 2026-08-10 20:59 UTC 

[CVE-2026-68154][MODERATE 7.0] libceph: reject zero bucket types in crush_decode
 2026-08-10 20:59 UTC 

[CVE-2026-68184][MODERATE REGULAR] cdrom: fix stack out-of-bounds read in CDROMVOLCTRL
 2026-08-10 20:55 UTC 

[CVE-2026-68206][MODERATE 7.0] media: v4l2-ctrls: validate HEVC active reference counts
 2026-08-10 20:50 UTC 

[CVE-2026-68243][MODERATE REGULAR] drm/i915/gem: Fix NULL deref in I915_CONTEXT_PARAM_SSEU
 2026-08-10 20:46 UTC 

[CVE-2026-68382][MODERATE 7.0] drm/xe/guc: Hold device ref until queue teardown completes [ Upstream
 2026-08-10 20:46 UTC 

[CVE-2026-68244][MODERATE REGULAR] drm/i915/gem: Do not leak siblings[] on proto context error
 2026-08-10 20:44 UTC 

[CVE-2026-68350][MODERATE REGULAR] wifi: carl9170: fix OOB read from off-by-two in TX status handler [ Upstream
 2026-08-10 20:44 UTC 

[CVE-2026-68256][LOW] drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference
 2026-08-10 20:39 UTC 

[CVE-2026-68232][LOW] drm/gpusvm: Fix MM reference leak in drm_gpusvm_range_evict
 2026-08-10 20:39 UTC 

[CVE-2026-68240][LOW] drm/gpusvm: publish dpagemap early to avoid device mapping leak on error
 2026-08-10 20:38 UTC 

[CVE-2026-68399][MODERATE 7.0] bpf: Fix UAF in sock clone early bailouts [ Upstream
 2026-08-10 20:36 UTC 

[CVE-2026-68310][MODERATE REGULAR] wifi: mt76: mt7915: guard HE capability lookups [ Upstream
 2026-08-10 20:32 UTC 

[CVE-2026-68281][LOW] drm/imagination: Count paired job fence as dependency in prepare_job()
 2026-08-10 20:32 UTC 

[CVE-2026-68348][MODERATE REGULAR] ASoC: tas2781: bound firmware description string parsing [ Upstream
 2026-08-10 20:32 UTC 

[CVE-2026-68123][IMPORTANT] openvswitch: fix GSO userspace truncation underflow [ Upstream
 2026-08-10 20:28 UTC 

[CVE-2026-68264][IMPORTANT] drm/xe/pt: Reset current_op in xe_pt_update_ops_init() [ Upstream
 2026-08-10 20:23 UTC 

[CVE-2026-68150][LOW] fs/super: fix emergency thaw double-unlock of s_umount
 2026-08-10 20:20 UTC 

[CVE-2026-68173][MODERATE REGULAR] ublk: wait on ublk_dev_ready() instead of ub->completion
 2026-08-10 20:18 UTC 

[CVE-2026-68374][MODERATE 7.0] usb: core: sysfs: add lock to bos_descriptors_read()
 2026-08-10 20:16 UTC 

[CVE-2026-68144][IMPORTANT] phonet: pep: fix use-after-free in pep_get_sb()
 2026-08-10 20:13 UTC 

[CVE-2026-68164][LOW] mm/damon/core: disallow overlapping input ranges for damon_set_regions()
 2026-08-10 20:13 UTC 

[CVE-2026-68192][MODERATE 7.0] wifi: brcmfmac: make release_scratchbuffers idempotent
 2026-08-10 20:09 UTC 

[CVE-2026-68325][MODERATE 7.0] iommu/amd: Bound the early ACPI HID map [ Upstream
 2026-08-10 20:05 UTC 

[CVE-2026-68189][MODERATE REGULAR] Bluetooth: hci_sync: Protect UUID list traversal
 2026-08-10 20:01 UTC 

[CVE-2026-68114][MODERATE REGULAR] drm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON()
 2026-08-10 19:56 UTC 

[CVE-2026-68339][MODERATE REGULAR] Bluetooth: btusb: validate Realtek vendor event length [ Upstream
 2026-08-10 19:56 UTC 

[CVE-2026-68405][LOW] wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock [ Upstream
 2026-08-10 19:51 UTC 

[CVE-2026-68116][MODERATE 7.0] vxlan: mdb: Fix source list corruption on a failed replace
 2026-08-10 19:47 UTC 

[CVE-2026-68389][MODERATE 7.0] Bluetooth: hci_qca: Clear memdump state on invalid dump size [ Upstream
 2026-08-10 19:43 UTC 

[CVE-2026-68195][MODERATE REGULAR] wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 19:43 UTC 

[CVE-2026-68193][MODERATE REGULAR] wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses
 2026-08-10 19:43 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox