public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-74504][MODERATE REGULAR] ALSA: seq: Fix division by zero in initialize_timer()
 2026-08-15 21:31 UTC 

[CVE-2026-72292][MODERATE REGULAR] KVM: s390: Initialize KVM_S390_GET_CMMA_BITS memory
 2026-08-15 21:28 UTC 

[CVE-2026-74472][MODERATE 7.0] ublk: reset kernel-owned dev_info fields in ublk_ctrl_add_dev()
 2026-08-15 21:26 UTC 

[CVE-2026-74359][IMPORTANT] configfs_lookup(): don't leave ->s_dentry dangling on failure [ Upstream
 2026-08-15 21:24 UTC 

[CVE-2026-72137][IMPORTANT] xfrm: nat_keepalive: avoid double free on send error [ Upstream
 2026-08-15 21:20 UTC 

[CVE-2026-74503][IMPORTANT] ALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes commit c2744d5f3aea474513fd2298daecb94a952ce441 upstream
 2026-08-15 21:17 UTC 

[CVE-2026-72487][MODERATE REGULAR] PCI: Check ROM header and data structure addr before accessing [ Upstream
 2026-08-15 21:15 UTC 

[CVE-2026-74517][MODERATE 7.0] KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs
 2026-08-15 21:11 UTC 

[CVE-2026-74381][MODERATE REGULAR] gpu: host1x: Allow entries in BO caches to be freed [ Upstream
 2026-08-15 21:07 UTC 

[CVE-2026-74535][MODERATE 7.0] Bluetooth: ISO: avoid deadlocks in iso_sock_timeout [ Upstream
 2026-08-15 21:04 UTC 

[CVE-2026-74423][LOW] accel/amdxdna: Fix leak when pinning ubuf pages [ Upstream
 2026-08-15 21:01 UTC 

[CVE-2026-72277][MODERATE REGULAR] KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory commit 4bd7dbe0b2243e6aa735cae4d5e1ff988b30b2a6 upstream
 2026-08-15 21:01 UTC 

[CVE-2026-74485][MODERATE REGULAR] binfmt_misc: reject a flag character as the field delimiter
 2026-08-15 20:59 UTC 

[CVE-2026-74324][MODERATE REGULAR] wifi: mt76: mt7925: validate skb length in testmode query [ Upstream
 2026-08-15 20:55 UTC 

[CVE-2026-74574][IMPORTANT] dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() [ Upstream
 2026-08-15 20:55 UTC 

[CVE-2026-72216][LOW] remoteproc: qcom: Fix leak when custom dump_segments addition fails
 2026-08-15 20:52 UTC 

[CVE-2026-72276][LOW] fbdev: metronomefb: fix potential memory leak in metronomefb_probe()
 2026-08-15 20:48 UTC 

[CVE-2026-74315][MODERATE 7.0] lockd: Avoid hashing uninitialized bytes in nlm4svc_lookup_file() [ Upstream
 2026-08-15 20:48 UTC 

[CVE-2026-74507][MODERATE REGULAR] Bluetooth: HIDP: validate numbered report payloads
 2026-08-15 20:47 UTC 

[CVE-2026-74331][LOW] firmware_loader: Fix recursive lock in device_cache_fw_images() [ Upstream
 2026-08-15 20:43 UTC 

[CVE-2026-74552][MODERATE REGULAR] hwmon: (lm90) Only report alarms if driver is ready [ Upstream
 2026-08-15 20:40 UTC 

[CVE-2026-74278][MODERATE REGULAR] ALSA: seq: Fix kernel heap address leak in bounce_error_event() [ Upstream
 2026-08-15 20:37 UTC 

[CVE-2026-74571][LOW] btrfs: skip global block reserve accounting for rescue mounts [ Upstream
 2026-08-15 20:34 UTC 

[CVE-2026-72174][LOW] fs/proc/task_mmu: fix hugetlb self-deadlock in pagemap_scan_pte_hole()
 2026-08-15 20:32 UTC 

[CVE-2026-74540][MODERATE 7.0] Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp [ Upstream
 2026-08-15 20:30 UTC 

[CVE-2026-72498][MODERATE REGULAR] RDMA/bnxt_re: Avoid displaying the kernel pointer [ Upstream
 2026-08-15 20:27 UTC 

[CVE-2026-74471][MODERATE 7.0] tracing: Check return value of __register_event() in trace_module_add_events()
 2026-08-15 20:24 UTC 

[CVE-2026-68472][MODERATE 7.0] wifi: cfg80211: validate EHT MLE before MLD ID read
 2026-08-15 20:20 UTC 

[CVE-2026-74534][MODERATE 7.0] Bluetooth: ISO: fix refcounting of iso_conn [ Upstream
 2026-08-15 20:16 UTC 

[CVE-2026-74467][MODERATE 7.0] s390/qeth: Check CAP_NET_ADMIN for private ioctls
 2026-08-15 20:13 UTC 

[CVE-2026-72485][LOW] coresight: platform: defer connection counter increment until alloc succeeds [ Upstream
 2026-08-15 20:10 UTC 

[CVE-2026-74538][MODERATE 7.0] Bluetooth: ISO: lock sk in iso_connect_ind [ Upstream
 2026-08-15 20:10 UTC 

[CVE-2026-72104][LOW] dm-pcache: reject option groups without values commit d9c631e3fbd44246a2be781d26cfacbb9b8ec127 upstream
 2026-08-15 20:06 UTC 

[CVE-2026-74559][LOW] xsk: drain continuation descs after overflow in xsk_build_skb() [ Upstream
 2026-08-15 20:06 UTC 

[CVE-2026-74357][MODERATE 7.0] drm/amdgpu: fix KASAN slab-out-of-bounds in amdgpu_coredump ring dump [ Upstream
 2026-08-15 20:03 UTC 

[CVE-2026-74443][MODERATE 7.0] drm/vmwgfx: bound DMA command body size against suffix pointer
 2026-08-15 20:03 UTC 

[CVE-2026-74447][MODERATE 7.0] drm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment
 2026-08-15 19:59 UTC 

[CVE-2026-74444][MODERATE 7.0] drm/vmwgfx: validate DRAW_PRIMITIVES header size before division
 2026-08-15 19:59 UTC 

[CVE-2026-74273][MODERATE 7.0] cxl/region: Block region delete during region creation [ Upstream
 2026-08-15 19:55 UTC 

[CVE-2026-74562][MODERATE 7.0] nexthop: take nh->lock for f6i_list walks in replace check and notify [ Upstream
 2026-08-15 19:52 UTC 

[CVE-2026-74560][LOW] xsk: fix buffer leak in xsk_drop_skb() for AF_XDP multi-buffer Tx [ Upstream
 2026-08-15 19:50 UTC 

[CVE-2026-72419][MODERATE 7.0] netfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init() [ Upstream
 2026-08-15 19:47 UTC 

[CVE-2026-74488][IMPORTANT] wifi: mwifiex: use the subframe length when parsing A-MSDU TDLS frames
 2026-08-15 19:43 UTC 

[CVE-2026-72258][LOW] ASoC: mediatek: mt8183: Release reserved memory on cleanup
 2026-08-15 19:39 UTC 

[CVE-2026-74465][MODERATE 7.0] net: openvswitch: fix potential UAF on meter attach failure
 2026-08-15 19:39 UTC 

[CVE-2026-74495][LOW] igbvf: Fix leak in TX DMA error cleanup
 2026-08-15 19:35 UTC 

[CVE-2026-72005][LOW] wifi: rt2x00: avoid full teardown before work setup in probe
 2026-08-15 19:33 UTC 

[CVE-2026-74510][IMPORTANT] Bluetooth: mgmt: fix UAF in pair command cancellation
 2026-08-15 19:29 UTC 

[CVE-2026-74460][MODERATE REGULAR] can: ems_usb: validate CPC message lengths
 2026-08-15 19:25 UTC 

[CVE-2026-74577][LOW] net: mpls: initialize rtm_tos in mpls_getroute() [ Upstream
 2026-08-15 19:22 UTC 

[CVE-2026-72360][MODERATE REGULAR] drm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays [ Upstream
 2026-08-15 19:18 UTC 

[CVE-2026-74449][MODERATE REGULAR] drm/amd/display: Fix divide-by-zero in calculate_mcache_setting on zero viewport
 2026-08-15 19:17 UTC 

[CVE-2026-72021][MODERATE 7.0] ipvs: use parsed transport offset in SCTP state lookup commit 2f75c0faa3361b28e36cc0512b3299e163e25789 upstream
 2026-08-15 19:17 UTC 

[CVE-2026-74511][MODERATE 7.0] Bluetooth: mgmt: fix pending command UAF in EIR updates
 2026-08-15 19:17 UTC 

[CVE-2026-72042][IMPORTANT] ipmi: Fix user refcount underflow in event delivery
 2026-08-15 19:13 UTC 

[CVE-2026-74576][MODERATE 7.0] mm/slab: prevent unbounded recursion in free path with new kmalloc type
 2026-08-15 19:13 UTC 

[CVE-2026-74390][MODERATE 7.0] RDMA/irdma: Fix out-of-bounds write in irdma_copy_user_pgaddrs [ Upstream
 2026-08-15 19:11 UTC 

[CVE-2026-74513][MODERATE 7.0] dibs: fix use-after-free of dmb_node in loopback attach/detach/unregister
 2026-08-15 19:07 UTC 

[CVE-2026-72323][IMPORTANT] ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() [ Upstream
 2026-08-15 19:07 UTC 

[CVE-2026-74496][MODERATE 7.0] fou: Fix use-after-free in fou_create()
 2026-08-15 19:03 UTC 

[CVE-2026-72183][IMPORTANT] landlock: Fix LANDLOCK_SCOPE_SIGNAL bypass on the SIGIO path [ Upstream
 2026-08-15 18:59 UTC 

[CVE-2026-74464][MODERATE REGULAR] net: openvswitch: fix skb leak on flow key update failure during ct
 2026-08-15 18:56 UTC 

[CVE-2026-72128][MODERATE 7.0] nvmet: fix refcount leak in nvmet_sq_create()
 2026-08-15 18:52 UTC 

[CVE-2026-74493][MODERATE 7.0] net/smc: fix socket use-after-free during link group termination
 2026-08-15 18:49 UTC 

[CVE-2026-72387][MODERATE REGULAR] drm/panthor: Fix potential invalid pointer deref in group_process_tiler_oom() [ Upstream
 2026-08-15 18:45 UTC 

[CVE-2026-74556][IMPORTANT] scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer [ Upstream
 2026-08-15 18:45 UTC 

[CVE-2026-74505][MODERATE 7.0] ALSA: 6fire: Fix UAF at error handling during probe
 2026-08-15 18:41 UTC 

[CVE-2026-72371][MODERATE 7.0] afs: Fix the volume AFS_VOLUME_RM_TREE is set on [ Upstream
 2026-08-15 18:38 UTC 

[CVE-2026-74479][MODERATE REGULAR] net: pktgen: fix proc entry use-after-free
 2026-08-15 18:33 UTC 

[CVE-2026-72140][MODERATE REGULAR] i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource()
 2026-08-15 18:29 UTC 

[CVE-2026-74572][MODERATE REGULAR] btrfs: zoned: fix deadlock between metadata writeback and transaction commit [ Upstream
 2026-08-15 18:25 UTC 

[CVE-2026-74466][MODERATE REGULAR] s390/zcrypt: Close speculative mem read possibility
 2026-08-15 18:23 UTC 

[CVE-2026-74303][MODERATE REGULAR] Bluetooth: hci_qca: fix NULL pointer dereference in qca_dmp_hdr() for non-serdev device [ Upstream
 2026-08-15 18:20 UTC 

[CVE-2026-74519][MODERATE 7.0] pinctrl: devicetree: don't free uninitialized dev_name on error path
 2026-08-15 18:20 UTC 

[CVE-2026-72052][IMPORTANT] net: ip6_gre: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-15 18:16 UTC 

[CVE-2026-74520][IMPORTANT] iommu/iommufd: Fix IOPF group ownership UAF
 2026-08-15 18:08 UTC 

[CVE-2026-74514][LOW] KVM: s390: pci: Fix memory accounting for pinned/unpinned pages
 2026-08-15 18:05 UTC 

[CVE-2026-74481][MODERATE 7.0] mm/page_reporting: use system_freezable_wq to fix UAF during suspend
 2026-08-15 18:01 UTC 

[CVE-2026-74277][MODERATE 7.0] iommu/dma-iommu: Fix wrong scatterlist length assignment in P2PDMA path [ Upstream
 2026-08-15 17:58 UTC 

[CVE-2026-74482][MODERATE 7.0] mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios [ Upstream
 2026-08-15 17:54 UTC 

[CVE-2026-74302][MODERATE 7.0] Bluetooth: hci_core: Fix UAF in hci_unregister_dev() [ Upstream
 2026-08-15 17:51 UTC 

[CVE-2026-74483][LOW] binfmt_misc: don't leak the user namespace when the mount fails
 2026-08-15 17:47 UTC 

[CVE-2026-74536][LOW] Bluetooth: ISO: fix leaking sk after socket release [ Upstream
 2026-08-15 17:45 UTC 

[CVE-2026-74573][IMPORTANT] iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE [ Upstream
 2026-08-15 17:42 UTC 

[CVE-2026-74543][LOW] net: udp_tunnel: fix memory leak in udp_tunnel_nic_unregister() [ Upstream
 2026-08-15 17:38 UTC 

[CVE-2026-72499][MODERATE 7.0] RDMA/bnxt_re: Free CQ toggle page after firmware teardown [ Upstream
 2026-08-15 17:35 UTC 

[CVE-2026-74452][MODERATE 7.0] drm/panthor: reject firmware sections with oversized data
 2026-08-15 17:32 UTC 

[CVE-2026-74563][MODERATE 7.0] rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check() [ Upstream
 2026-08-15 17:32 UTC 

[CVE-2026-74364][MODERATE 7.0] bpf: Reject exclusive maps as inner maps in map-in-map [ Upstream
 2026-08-15 17:32 UTC 

[CVE-2026-74475][MODERATE 7.0] vxlan: use neigh_ha_snapshot() in route_shortcircuit()
 2026-08-15 17:30 UTC 

[CVE-2026-72300][MODERATE REGULAR] ASoC: SOF: topology: validate vendor array size before parsing
 2026-08-15 17:27 UTC 

[CVE-2026-74539][MODERATE REGULAR] Bluetooth: ISO: lock sk in iso_sock_getname [ Upstream
 2026-08-15 17:25 UTC 

[CVE-2026-74480][MODERATE 7.0] net: bridge: stop fast-leave after deleting a port group
 2026-08-15 17:21 UTC 

[CVE-2026-72096][LOW] dm-verity: make error counter atomic [ Upstream
 2026-08-15 17:17 UTC 

[CVE-2026-74546][LOW] hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read [ Upstream
 2026-08-15 17:14 UTC 

[CVE-2026-74554][MODERATE 7.0] wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup() [ Upstream
 2026-08-15 17:11 UTC 

[CVE-2026-74336][MODERATE REGULAR] wifi: mac80211: bound S1G TIM PVB walk to the TIM element [ Upstream
 2026-08-15 17:09 UTC 

[CVE-2026-74529][MODERATE 7.0] Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback [ Upstream
 2026-08-15 17:09 UTC 

[CVE-2026-74446][IMPORTANT] drm/amdkfd: hold event_mutex while checkpointing CRIU events
 2026-08-15 17:04 UTC 

[CVE-2026-74500][MODERATE REGULAR] ALSA: usb-audio: fix stack info leak in RME Digiface status
 2026-08-15 17:04 UTC 

[CVE-2026-74411][MODERATE REGULAR] wifi: rtw89: Correct data type for scan index to avoid infinite loop [ Upstream
 2026-08-15 17:01 UTC 

[CVE-2026-74549][MODERATE REGULAR] hwmon: (nct6775-core) Prevent access to unsupported weight registers [ Upstream
 2026-08-15 16:57 UTC 

[CVE-2026-74537][MODERATE 7.0] Bluetooth: ISO: hold sk properly in iso_conn_ready [ Upstream
 2026-08-15 16:53 UTC 

[CVE-2026-72009][LOW] pmdomain: imx93-blk-ctrl: Extract PHY as shared domain for DSI/CSI [ Upstream
 2026-08-15 16:50 UTC 

[CVE-2026-74487][LOW] binfmt_misc: restore write access when removing an entry
 2026-08-15 16:47 UTC 

[CVE-2026-74518][IMPORTANT] mm/hugetlb: fix list corruption in allocate_file_region_entries()
 2026-08-15 16:43 UTC 

[CVE-2026-72437][LOW] md/raid1: free r1_bio when REQ_NOWAIT is set and read would block on retry [ Upstream
 2026-08-15 16:40 UTC 

[CVE-2026-74506][MODERATE 7.0] afs: Fix UAF when sending a message
 2026-08-15 16:36 UTC 

[CVE-2026-68457][IMPORTANT] ksmbd: use opener credentials for FSCTL mutations [ Upstream
 2026-08-15 16:36 UTC 

[CVE-2026-74337][MODERATE REGULAR] bpf: Fix NMI/tracepoint re-entry deadlock on lru locks [ Upstream
 2026-08-15 16:36 UTC 

[CVE-2026-74569][IMPORTANT] netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() [ Upstream
 2026-08-15 16:33 UTC 

[CVE-2026-74382][LOW] net/sched: cls_bpf: prevent unbounded recursion in offload rollback [ Upstream
 2026-08-15 16:29 UTC 

[CVE-2026-72098][MODERATE 7.0] dm-verity: fix buffer overflow in FEC calculation
 2026-08-15 16:23 UTC 

[CVE-2026-74445][MODERATE REGULAR] drm/vmwgfx: reject DX_BIND_QUERY without a DX context
 2026-08-15 16:19 UTC 

[CVE-2026-74462][LOW] i2c: imx: mark I2C adapter when hardware is powered down
 2026-08-15 16:16 UTC 

[CVE-2026-74327][LOW] vmalloc: fix NULL pointer dereference in is_vm_area_hugepages() [ Upstream
 2026-08-15 16:14 UTC 

[CVE-2026-74533][MODERATE 7.0] Bluetooth: ISO: fix race of kfree vs kref_get_unless_zero [ Upstream
 2026-08-15 16:14 UTC 

[CVE-2026-72222][IMPORTANT] sunrpc: pin svc_xprt across the asynchronous TLS handshake callback
 2026-08-15 16:10 UTC 

[CVE-2026-74555][LOW] scsi: libsas: Fix HA resume deadlock and hisi_sas disk-wake race [ Upstream
 2026-08-15 16:06 UTC 

[CVE-2026-72284][MODERATE 7.0] KVM: x86: Ignore pending PV EOI if the vCPU has since disabled PV EOIs
 2026-08-15 16:04 UTC 

[CVE-2026-74448][LOW] drm/amdkfd: fix QID bit leak in pqm_create_queue()
 2026-08-15 16:01 UTC 

[CVE-2026-72223][LOW] nvdimm/btt: Free arena sub-allocations on discover_arenas() error path
 2026-08-15 16:01 UTC 

[CVE-2026-74557][MODERATE 7.0] scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer [ Upstream
 2026-08-15 15:57 UTC 

[CVE-2026-72355][MODERATE 7.0] netfs: Fix barriering when walking subrequest list [ Upstream
 2026-08-15 15:53 UTC 

[CVE-2026-74439][MODERATE 7.0] iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry [ Upstream
 2026-08-15 15:51 UTC 

[CVE-2026-74553][LOW] hwmon: (nct6775-core) Fix number of temperature registers for NCT6116 [ Upstream
 2026-08-15 15:47 UTC 

[CVE-2026-74333][MODERATE REGULAR] ASoC: amd: acp-sdw-legacy: Bound DAI link iteration [ Upstream
 2026-08-15 15:44 UTC 

[CVE-2026-74575][MODERATE 7.0] thunderbolt: Prevent XDomain delayed work use-after-free on disconnect [ Upstream
 2026-08-15 15:40 UTC 

[CVE-2026-74542][MODERATE REGULAR] netfs: Fix folio_queue ENOMEM in writeback by adding a mempool [ Upstream
 2026-08-15 15:40 UTC 

[CVE-2026-74305][MODERATE 7.0] bpf: Tighten cgroup storage cookie checks for prog arrays [ Upstream
 2026-08-15 15:38 UTC 

[CVE-2026-74509][IMPORTANT] Bluetooth: hci_sync: Fix advertising data UAFs
 2026-08-15 15:34 UTC 

[CVE-2026-74271][MODERATE 7.0] power: supply: core: fix supplied_from allocations [ Upstream
 2026-08-15 15:30 UTC 

[CVE-2026-74530][MODERATE 7.0] Bluetooth: hci_sync: hold conn in hci_connect_big_sync() callback [ Upstream
 2026-08-15 15:26 UTC 

[CVE-2026-72433][MODERATE REGULAR] netfilter: nft_meta_bridge: fix NFT_META_BRI_IIFPVID stack leak [ Upstream
 2026-08-15 15:22 UTC 

[CVE-2026-74532][MODERATE REGULAR] Bluetooth: btintel: Validate length before parsing diagnostics TLV [ Upstream
 2026-08-15 15:19 UTC 

[CVE-2026-74289][MODERATE 7.0] ipv4: fib: Don't dump dying fib_info in fib_leaf_notify(). [ Upstream
 2026-08-15 15:15 UTC 

[CVE-2026-74523][MODERATE REGULAR] qede: sync udp_tunnel ports outside qede_lock in the recovery path [ Upstream
 2026-08-15 15:12 UTC 

[CVE-2026-72032][LOW] net/mlx5: HWS, fix matcher leak on resize target setup failure [ Upstream commit bb09d0e64ecaa0aa0f7d1133a1696ed74dead295 ]
 2026-08-15 15:08 UTC 

[CVE-2026-74469][MODERATE 7.0] sctp: prevent peer transport count overflow
 2026-08-15 15:08 UTC 

[CVE-2026-72249][MODERATE 7.0] netfilter: flowtable: use dst in this direction when pushing IPIP header
 2026-08-15 15:04 UTC 

[CVE-2026-74499][IMPORTANT] ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output()
 2026-08-15 15:02 UTC 

[CVE-2026-72447][MODERATE REGULAR] sctp: hold socket lock when dumping endpoints in sctp_diag [ Upstream
 2026-08-15 14:58 UTC 

[CVE-2026-74544][MODERATE REGULAR] net/sched: cls_u32: validate offshift to prevent shift-out-of-bounds [ Upstream
 2026-08-15 14:54 UTC 

[CVE-2026-72065][MODERATE 7.0] net: mana: Validate the packet length reported by the NIC [ Upstream
 2026-08-15 14:51 UTC 

[CVE-2026-74388][MODERATE 7.0] ALSA: seq: oss: Fix UAF at handling events with embedded SysEx data [ Upstream
 2026-08-15 14:47 UTC 

[CVE-2026-74473][MODERATE 7.0] vxlan: use pskb_network_may_pull() in route_shortcircuit()
 2026-08-15 14:43 UTC 

[CVE-2026-72045][MODERATE 7.0] octeontx2-af: cn10k: restrict VF LMTLINE sharing to its own PF [ Upstream
 2026-08-15 14:39 UTC 

[CVE-2026-74564][LOW] netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH [ Upstream
 2026-08-15 14:35 UTC 

[CVE-2026-74258][MODERATE 7.0] bpf: Guard __get_user acesss with access_ok for uprobe_multi data [ Upstream
 2026-08-15 14:31 UTC 

[CVE-2026-74440][MODERATE 7.0] drm/xe: Wait on external BO kernel fences in exec IOCTL [ Upstream
 2026-08-15 14:28 UTC 

[CVE-2026-72049][IMPORTANT] ieee802154: admin-gate legacy LLSEC dump operations
 2026-08-15 14:24 UTC 

[CVE-2026-72035][MODERATE 7.0] net/sched: sch_taprio: Replace direct dequeue call with peek and qdisc_dequeue_peeked
 2026-08-15 14:19 UTC 

[CVE-2026-74516][IMPORTANT] KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active
 2026-08-15 14:16 UTC 

[CVE-2026-72018][MODERATE 7.0] dibs: loopback: validate offset and size in move_data() commit 78237e3c0720fcc6eb9b87e90fd70f63eeca886f upstream
 2026-08-15 14:12 UTC 

[CVE-2026-74451][MODERATE 7.0] drm/panthor: validate firmware interface structure sizes
 2026-08-15 14:12 UTC 

[CVE-2026-72287][MODERATE 7.0] KVM: nVMX: Move vTPR vs. TPR Threshold consistency check into "normal" checks
 2026-08-15 14:12 UTC 

[CVE-2026-74561][MODERATE 7.0] nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush [ Upstream commit 4787a6d2629b4e8c0b6bacab1f75c1660eca44d9 ]
 2026-08-15 14:10 UTC 

[CVE-2026-72334][MODERATE REGULAR] Bluetooth: ISO: fix malformed ISO_END/CONT handling [ Upstream
 2026-08-15 14:09 UTC 

[CVE-2026-74528][MODERATE 7.0] Bluetooth: hci_sync: hold conn in hci_past_sync() callback [ Upstream
 2026-08-15 14:07 UTC 

[CVE-2026-72129][MODERATE 7.0] nvmet-rdma: handle inline data with a nonzero offset
 2026-08-15 14:06 UTC 

[CVE-2026-74526][LOW] scsi: mpi3mr: Fix potential deadlock in mpi3mr_fault_uevent_emit [ Upstream
 2026-08-15 14:01 UTC 

[CVE-2026-72464][MODERATE REGULAR] xprtrdma: Repost Receive buffers for malformed replies [ Upstream
 2026-08-15 13:59 UTC 

[CVE-2026-74461][MODERATE 7.0] i2c: imx: Cancel hrtimer before clearing slave pointer
 2026-08-15 13:55 UTC 

[CVE-2026-74547][LOW] hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread [ Upstream
 2026-08-15 13:50 UTC 

[CVE-2026-68476][IMPORTANT] ipvs: reload ip header after head reallocation
 2026-08-15 13:46 UTC 

[CVE-2026-74498][MODERATE 7.0] ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set
 2026-08-15 13:41 UTC 

[CVE-2026-72312][MODERATE REGULAR] octeontx2-af: fix VF bringup affecting PF promiscuous state [ Upstream
 2026-08-15 13:37 UTC 

[CVE-2026-74489][MODERATE 7.0] wifi: mac80211: fix tid_tx use-after-free on BA session stop
 2026-08-15 13:33 UTC 

[CVE-2026-74490][MODERATE REGULAR] tipc: avoid use-after-free in poll trace queue dumps
 2026-08-15 13:32 UTC 

[CVE-2026-74274][LOW] cxl/region: Fill first free targets[] slot during auto-discovery [ Upstream
 2026-08-15 13:28 UTC 

[CVE-2026-74566][MODERATE 7.0] keys: make keyring key-chunk byte order agree with keyring_diff_objects() [ Upstream
 2026-08-15 13:27 UTC 

[CVE-2026-74492][MODERATE 7.0] netfilter: ipset: do not update comments from kernel-side hash adds
 2026-08-15 13:23 UTC 

[CVE-2026-72273][LOW] fbdev: efifb: fix memory leak in efifb_probe() [ Upstream
 2026-08-15 13:23 UTC 

[CVE-2026-74269][IMPORTANT] bnxt: fix head underflow on XDP head-grow [ Upstream
 2026-08-15 13:18 UTC 

[CVE-2026-74558][LOW] xsk: reclaim invalid Tx descriptors in ZC batch path [ Upstream
 2026-08-15 13:14 UTC 

[CVE-2026-72283][MODERATE 7.0] KVM: x86: Nullify irqfd->producer if updating IRTE for bypass fails
 2026-08-15 13:11 UTC 

[CVE-2026-74508][MODERATE 7.0] Bluetooth: HIDP: reject frames without a transaction header
 2026-08-15 13:09 UTC 

[CVE-2026-72011][LOW] s390/diag: Add missing array_index_nospec() call to memtop_get_page_count()
 2026-08-15 13:05 UTC 

[CVE-2026-74502][IMPORTANT] ALSA: ump: fix double free of out_cvts on rawmidi error
 2026-08-15 13:02 UTC 

[CVE-2026-72303][MODERATE REGULAR] ASoC: SOF: ipc4-control: Validate notification payload size commit 5bdfeccb7fbf6e000fc783cd8412732e67c1ad0c upstream
 2026-08-15 12:58 UTC 

[CVE-2026-74450][MODERATE 7.0] drm/amd/pm: fix pptable use-after-free
 2026-08-15 12:57 UTC 

[CVE-2026-74550][MODERATE 7.0] net: do not send ICMP/NDISC Redirects when peer allocation fails [ Upstream
 2026-08-15 12:56 UTC 

[CVE-2026-72370][LOW] iomap: release pages on atomic dio size mismatch [ Upstream
 2026-08-15 12:53 UTC 

[CVE-2026-74457][MODERATE REGULAR] can: peak_usb: add bounds check for USB channel index
 2026-08-15 12:51 UTC 

[CVE-2026-72491][MODERATE 7.0] net/9p: fix race condition on rdma->state in trans_rdma.c [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74409][MODERATE 7.0] wifi: rtw89: add bounds check on firmware mac_id in link lookup [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74321][MODERATE REGULAR] btrfs: fix invalid pointer dereference in __btrfs_run_delayed_refs() [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74413][MODERATE 7.0] wifi: rtw89: fix wrong pci_get_drvdata type in AER handlers [ Upstream
 2026-08-15 12:38 UTC 

[CVE-2026-72466][MODERATE 7.0] xprtrdma: Fix bcall rep leak and unbounded peek [ Upstream
 2026-08-15 12:34 UTC 

[CVE-2026-72274][LOW] fbdev: hecubafb: fix potential memory leak in hecubafb_probe()
 2026-08-15 12:30 UTC 

[CVE-2026-72306][MODERATE 7.0] vduse: Fix race in vduse_dev_msg_sync and vduse_dev_read_iter
 2026-08-15 12:30 UTC 

[CVE-2026-72057][MODERATE 7.0] net/sched: act_ct: preserve tc_skb_cb across defragmentation
 2026-08-15 12:26 UTC 

[CVE-2026-72025][MODERATE 7.0] s390/monwriter: Reject buffer reuse with different data length
 2026-08-15 12:22 UTC 

[CVE-2026-72428][MODERATE REGULAR] bpf: Fix stack slot index in nospec checks [ Upstream
 2026-08-15 12:19 UTC 

[CVE-2026-72127][LOW] netdev-genl: report NAPI thread PID in the caller's pid namespace
 2026-08-15 12:14 UTC 

[CVE-2026-72488][MODERATE REGULAR] soundwire: fix bug in sdw_add_element_group_count found by syzkaller [ Upstream
 2026-08-15 12:11 UTC 

[CVE-2026-72111][MODERATE 7.0] bpf: Reset register bounds before narrowing retval range in check_mem_access() [ Upstream
 2026-08-15 12:08 UTC 

[CVE-2026-72255][IMPORTANT] netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst
 2026-08-15 12:04 UTC 

[CVE-2026-74368][MODERATE REGULAR] wifi: ath12k: fix memory leak in ath12k_wifi7_dp_rx_h_verify_tkip_mic() [ Upstream
 2026-08-15 11:59 UTC 

[CVE-2026-74386][MODERATE 7.0] nvmet-tcp: fix page fragment cache leak in error path [ Upstream
 2026-08-15 11:56 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox