public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-74274][LOW] cxl/region: Fill first free targets[] slot during auto-discovery [ Upstream
 2026-08-15 13:28 UTC 

[CVE-2026-74566][MODERATE 7.0] keys: make keyring key-chunk byte order agree with keyring_diff_objects() [ Upstream
 2026-08-15 13:27 UTC 

[CVE-2026-74492][MODERATE 7.0] netfilter: ipset: do not update comments from kernel-side hash adds
 2026-08-15 13:23 UTC 

[CVE-2026-72273][LOW] fbdev: efifb: fix memory leak in efifb_probe() [ Upstream
 2026-08-15 13:23 UTC 

[CVE-2026-74269][IMPORTANT] bnxt: fix head underflow on XDP head-grow [ Upstream
 2026-08-15 13:18 UTC 

[CVE-2026-74558][LOW] xsk: reclaim invalid Tx descriptors in ZC batch path [ Upstream
 2026-08-15 13:14 UTC 

[CVE-2026-72283][MODERATE 7.0] KVM: x86: Nullify irqfd->producer if updating IRTE for bypass fails
 2026-08-15 13:11 UTC 

[CVE-2026-74508][MODERATE 7.0] Bluetooth: HIDP: reject frames without a transaction header
 2026-08-15 13:09 UTC 

[CVE-2026-72011][LOW] s390/diag: Add missing array_index_nospec() call to memtop_get_page_count()
 2026-08-15 13:05 UTC 

[CVE-2026-74502][IMPORTANT] ALSA: ump: fix double free of out_cvts on rawmidi error
 2026-08-15 13:02 UTC 

[CVE-2026-72303][MODERATE REGULAR] ASoC: SOF: ipc4-control: Validate notification payload size commit 5bdfeccb7fbf6e000fc783cd8412732e67c1ad0c upstream
 2026-08-15 12:58 UTC 

[CVE-2026-74450][MODERATE 7.0] drm/amd/pm: fix pptable use-after-free
 2026-08-15 12:57 UTC 

[CVE-2026-74550][MODERATE 7.0] net: do not send ICMP/NDISC Redirects when peer allocation fails [ Upstream
 2026-08-15 12:56 UTC 

[CVE-2026-72370][LOW] iomap: release pages on atomic dio size mismatch [ Upstream
 2026-08-15 12:53 UTC 

[CVE-2026-74457][MODERATE REGULAR] can: peak_usb: add bounds check for USB channel index
 2026-08-15 12:51 UTC 

[CVE-2026-72491][MODERATE 7.0] net/9p: fix race condition on rdma->state in trans_rdma.c [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74409][MODERATE 7.0] wifi: rtw89: add bounds check on firmware mac_id in link lookup [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74321][MODERATE REGULAR] btrfs: fix invalid pointer dereference in __btrfs_run_delayed_refs() [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74413][MODERATE 7.0] wifi: rtw89: fix wrong pci_get_drvdata type in AER handlers [ Upstream
 2026-08-15 12:38 UTC 

[CVE-2026-72466][MODERATE 7.0] xprtrdma: Fix bcall rep leak and unbounded peek [ Upstream
 2026-08-15 12:34 UTC 

[CVE-2026-72274][LOW] fbdev: hecubafb: fix potential memory leak in hecubafb_probe()
 2026-08-15 12:30 UTC 

[CVE-2026-72306][MODERATE 7.0] vduse: Fix race in vduse_dev_msg_sync and vduse_dev_read_iter
 2026-08-15 12:30 UTC 

[CVE-2026-72057][MODERATE 7.0] net/sched: act_ct: preserve tc_skb_cb across defragmentation
 2026-08-15 12:26 UTC 

[CVE-2026-72025][MODERATE 7.0] s390/monwriter: Reject buffer reuse with different data length
 2026-08-15 12:22 UTC 

[CVE-2026-72428][MODERATE REGULAR] bpf: Fix stack slot index in nospec checks [ Upstream
 2026-08-15 12:19 UTC 

[CVE-2026-72127][LOW] netdev-genl: report NAPI thread PID in the caller's pid namespace
 2026-08-15 12:14 UTC 

[CVE-2026-72488][MODERATE REGULAR] soundwire: fix bug in sdw_add_element_group_count found by syzkaller [ Upstream
 2026-08-15 12:11 UTC 

[CVE-2026-72111][MODERATE 7.0] bpf: Reset register bounds before narrowing retval range in check_mem_access() [ Upstream
 2026-08-15 12:08 UTC 

[CVE-2026-72255][IMPORTANT] netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst
 2026-08-15 12:04 UTC 

[CVE-2026-74368][MODERATE REGULAR] wifi: ath12k: fix memory leak in ath12k_wifi7_dp_rx_h_verify_tkip_mic() [ Upstream
 2026-08-15 11:59 UTC 

[CVE-2026-74386][MODERATE 7.0] nvmet-tcp: fix page fragment cache leak in error path [ Upstream
 2026-08-15 11:56 UTC 

[CVE-2026-72468][LOW] xprtrdma: Initialize re_id before removal registration [ Upstream
 2026-08-15 11:53 UTC 

[CVE-2026-72288][MODERATE 7.0] KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling
 2026-08-15 11:49 UTC 

[CVE-2026-74272][MODERATE REGULAR] cxl/region: Resolve region deletion races [ Upstream
 2026-08-15 11:45 UTC 

[CVE-2026-72050][LOW] octeontx2-af: Free BPID bitmap on setup failure
 2026-08-15 11:41 UTC 

[CVE-2026-72149][LOW] dmaengine: tegra: Fix burst size calculation
 2026-08-15 11:38 UTC 

[CVE-2026-74257][MODERATE 7.0] sockmap: Fix use-after-free in udp_bpf_recvmsg() [ Upstream
 2026-08-15 11:34 UTC 

[CVE-2026-74372][MODERATE REGULAR] raid1: fix nr_pending leak in REQ_ATOMIC bad-block error path [ Upstream
 2026-08-15 11:31 UTC 

[CVE-2026-72339][IMPORTANT] qede: fix off-by-one in BD ring consumption on build_skb failure [ Upstream
 2026-08-15 11:28 UTC 

[CVE-2026-72322][MODERATE 7.0] ipv6: mcast: Fix potential UAF in MLD delayed work [ Upstream
 2026-08-15 11:23 UTC 

[CVE-2026-74313][MODERATE 7.0] vduse: hold vduse_lock across IDR lookup in open path [ Upstream
 2026-08-15 11:18 UTC 

[CVE-2026-74293][MODERATE REGULAR] ASoC: fsl: fsl_audmix: Validate written enum values [ Upstream
 2026-08-15 11:14 UTC 

[CVE-2026-72165][LOW] mtd: rawnand: fix condition in 'nand_select_target()'
 2026-08-15 11:14 UTC 

[CVE-2026-72139][MODERATE 7.0] tcp: defer md5sig_info kfree past RCU grace period in tcp_connect
 2026-08-15 11:09 UTC 

[CVE-2026-74406][MODERATE REGULAR] vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). [ Upstream
 2026-08-15 11:07 UTC 

[CVE-2026-74358][MODERATE REGULAR] ext4: fix fast commit wait/wake bit mapping on 64-bit [ Upstream
 2026-08-15 11:02 UTC 

[CVE-2026-72453][LOW] regcache: Do not overwrite error code when finalizing cache after error [ Upstream
 2026-08-15 11:01 UTC 

[CVE-2026-72420][MODERATE 7.0] md/raid5: avoid R5_Overlap races while breaking stripe batches [ Upstream
 2026-08-15 10:57 UTC 

[CVE-2026-72469][MODERATE 7.0] xprtrdma: Fix ep kref imbalance on ADDR_CHANGE [ Upstream
 2026-08-15 10:54 UTC 

[CVE-2026-72349][MODERATE REGULAR] netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt() [ Upstream
 2026-08-15 10:49 UTC 

[CVE-2026-72425][LOW] ice: fix FDIR CTRL VSI resource leak in ice_reset_all_vfs() [ Upstream
 2026-08-15 10:45 UTC 

[CVE-2026-72041][MODERATE 7.0] espintcp: use sk_msg_free_partial to fix partial send
 2026-08-15 10:42 UTC 

[CVE-2026-72125][MODERATE 7.0] can: isotp: fix use-after-free race with concurrent NETDEV_UNREGISTER
 2026-08-15 10:38 UTC 

[CVE-2026-72463][IMPORTANT] xfrm: Fix dev use-after-free in xfrm async resumption [ Upstream
 2026-08-15 10:34 UTC 

[CVE-2026-74261][LOW] ALSA: seq: avoid stale FIFO cells during resize [ Upstream
 2026-08-15 10:32 UTC 

[CVE-2026-72220][IMPORTANT] sunrpc: harden rq_procinfo lifecycle to prevent double-free
 2026-08-15 10:29 UTC 

[CVE-2026-74318][LOW] btrfs: fix deadlock cloning inline extent when using flushoncommit [ Upstream
 2026-08-15 10:27 UTC 

[CVE-2026-74328][MODERATE 7.0] iommufd: Destroy the pages content after detaching from dmabuf [ Upstream
 2026-08-15 10:24 UTC 

[CVE-2026-74392][MODERATE REGULAR] dm: limit target bio polling to one shot [ Upstream
 2026-08-15 10:22 UTC 

[CVE-2026-72333][MODERATE REGULAR] Bluetooth: L2CAP: fix tx ident leak for commands without a response
 2026-08-15 10:20 UTC 

[CVE-2026-72122][MODERATE REGULAR] can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure
 2026-08-15 10:18 UTC 

[CVE-2026-72343][MODERATE 7.0] net/mlx5e: Fix HV VHCA stats zero-sized buffer allocation [ Upstream
 2026-08-15 10:14 UTC 

[CVE-2026-72236][MODERATE REGULAR] Navigation Menu Sign in Appearance settings Platform AI CODE CREATION GitHub Copilot Write better code with AI GitHub Copilot app Direct agents from issue to merge MCP Registry Integrate external tools DEVELOPER WORKFLOWS Actions Automate any workflow Codespaces Instant dev environments Issues Plan and track work Code Review Manage code changes Code Quality Enforce quality at merge APPLICATION SECURITY GitHub Advanced Security Find and fix vulnerabilities Code security Secure your code as you build Secret protection Stop leaks before they start EXPLORE Why GitHub Documentation Blog Changelog Marketplace View all features Solutions BY COMPANY SIZE Enterprises Small and medium teams Startups Nonprofits BY USE CASE App Modernization DevSecOps DevOps CI/CD View all use cases BY INDUSTRY Healthcare Financial services Manufacturing Government View all industries View all solutions Resources EXPLORE BY TOPIC AI Software Development DevOps Security View all topics EXPLORE BY TYPE Customer stories Events & webinars Ebooks & reports Business insights GitHub Skills SUPPORT & SERVICES Documentation Customer support Community forum Trust center Partners View all resources Open Source COMMUNITY GitHub Sponsors Fund open source developers PROGRAMS Security Lab Maintainer Community Accelerator GitHub Stars Archive Program REPOSITORIES Topics Trending Collections Enterprise ENTERPRISE SOLUTIONS Enterprise platform AI-powered developer platform AVAILABLE ADD-ONS GitHub Advanced Security Enterprise-grade security features Copilot for Business Enterprise-grade AI features Premium Support Enterprise-grade 24/7 support Pricing Search / Sign in Sign up Appearance settings
 2026-08-15 10:14 UTC 

[CVE-2026-72318][IMPORTANT] cifs: validate DFS referral string offsets [ Upstream
 2026-08-15 10:11 UTC 

[CVE-2026-72084][IMPORTANT] scsi: target: Bound PR-OUT TransportID parsing to the received buffer
 2026-08-15 10:06 UTC 

[CVE-2026-74394][IMPORTANT] RDMA/srpt: fix integer overflow in immediate data length check [ Upstream
 2026-08-15 10:02 UTC 

[CVE-2026-74405][MODERATE 7.0] OPP: Fix race between OPP addition and lookup [ Upstream
 2026-08-15  9:57 UTC 

[CVE-2026-72120][MODERATE 7.0] can: bcm: add missing rcu list annotations and operations commit 7b2c3eabc4dafc062a25e10711154f2107526a78 upstream
 2026-08-15  9:53 UTC 

[CVE-2026-74270][IMPORTANT] handshake: Require admin permission for DONE command [ Upstream
 2026-08-15  9:50 UTC 

[CVE-2026-74339][MODERATE REGULAR] ALSA: seq: Clear variable event pointer on read [ Upstream
 2026-08-15  9:46 UTC 

[CVE-2026-72502][MODERATE 7.0] tcp: ipv6: clamp default adverting MSS to avoid GSO_BY_FRAGS (0xFFFF) [ Upstream
 2026-08-15  9:42 UTC 

[CVE-2026-74391][MODERATE 7.0] tracing: Bound synthetic-field strings with seq_buf [ Upstream
 2026-08-15  9:38 UTC 

[CVE-2026-72304][MODERATE REGULAR] ASoC: SOF: ipc4-control: Fix TOCTOU in sof_ipc4_bytes_put
 2026-08-15  9:34 UTC 

[CVE-2026-74260][MODERATE REGULAR] netfilter: nf_dup_netdev: add nf_dev_xmit_recursion*() helpers and use them [ Upstream
 2026-08-15  9:30 UTC 

[CVE-2026-72310][MODERATE 7.0] smb: client: fix overflow in passthrough ioctl bounds check [ Upstream
 2026-08-15  9:28 UTC 

[CVE-2026-74287][MODERATE 7.0] sctp: validate embedded address parameter length [ Upstream
 2026-08-15  9:23 UTC 

[CVE-2026-72046][MODERATE 7.0] gve: fix header buffer corruption with header-split and HW-GRO [ Upstream commit d676c9a73bdcd8237425dbb826f2bd1a25c36e40 ]
 2026-08-15  9:18 UTC 

[CVE-2026-72245][LOW] gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path
 2026-08-15  9:16 UTC 

[CVE-2026-72030][MODERATE 7.0] ata: libata-core: Reject an invalid concurrent positioning ranges count [ Upstream
 2026-08-15  9:12 UTC 

[CVE-2026-72114][MODERATE 7.0] can: bcm: validate frame length in bcm_rx_setup() for RTR replies
 2026-08-15  9:08 UTC 

[CVE-2026-72441][MODERATE REGULAR] ieee802154: fix kernel-infoleak in dgram_recvmsg() [ Upstream
 2026-08-15  9:04 UTC 

[CVE-2026-72279][MODERATE 7.0] KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR
 2026-08-15  9:00 UTC 

[CVE-2026-72051][MODERATE 7.0] net: ip6_tunnel: require CAP_NET_ADMIN in the device netns for changelink [ Upstream
 2026-08-15  8:58 UTC 

[CVE-2026-68477][MODERATE REGULAR] ipvs: fix more places with wrong ipv6 transport offsets
 2026-08-15  8:55 UTC 

[CVE-2026-72494][LOW] RDMA/irdma: Replace waitqueue and flag with completion [ Upstream
 2026-08-15  8:50 UTC 

[CVE-2026-74295][LOW] ASoC: codecs: hdac_hdmi: Validate written enum value [ Upstream
 2026-08-15  8:47 UTC 

[CVE-2026-72083][IMPORTANT] scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE
 2026-08-15  8:43 UTC 

[CVE-2026-72421][LOW] ipv4: fib: Don't ignore error route in local/main tables. [ Upstream
 2026-08-15  8:39 UTC 

[CVE-2026-72106][MODERATE 7.0] dm-ioctl: fix a possible overflow in list_version_get_info
 2026-08-15  8:39 UTC 

[CVE-2026-72315][LOW] smb: client: fix busy dentry warning on unmount after DIO [ Upstream
 2026-08-15  8:35 UTC 

[CVE-2026-72012][MODERATE 7.0] tracing/osnoise: Call synchronize_rcu() when unregistering
 2026-08-15  8:34 UTC 

[CVE-2026-74329][MODERATE 7.0] watchdog: unregister PM notifier on watchdog unregister [ Upstream
 2026-08-15  8:30 UTC 

[CVE-2026-72166][LOW] net/9p: fix infinite loop in p9_client_rpc on fatal signal
 2026-08-15  8:22 UTC 

[CVE-2026-72224][LOW] nvdimm/btt: Free arenas on btt_init() error paths
 2026-08-15  8:17 UTC 

[CVE-2026-72280][MODERATE REGULAR] KVM: arm64: nv: Drop bogus WARN for write to ZCR_EL2
 2026-08-15  8:13 UTC 

[CVE-2026-74325][MODERATE 7.0] wifi: mt76: use kfree_rcu for offchannel link in mt76_put_vif_phy_link [ Upstream
 2026-08-15  8:13 UTC 

[CVE-2026-72316][LOW] dm era: fix NULL pointer dereference in metadata_open() [ Upstream
 2026-08-15  8:09 UTC 

[CVE-2026-74312][MODERATE 7.0] vhost/vdpa: validate virtqueue index in mmap and fault paths [ Upstream
 2026-08-15  8:05 UTC 

[CVE-2026-72119][MODERATE 7.0] can: bcm: extend bcm_tx_lock usage for data and timer updates commit 12ce799f7ab1e05bd8fbf79e46f403bfe5597ebc upstream
 2026-08-15  8:01 UTC 

[CVE-2026-72376][LOW] afs: Fix misplaced inc of net->cells_outstanding [ Upstream
 2026-08-15  7:57 UTC 

[CVE-2026-72029][MODERATE 7.0] net: wwan: iosm: bound device offsets in the MUX downlink decoder
 2026-08-15  7:53 UTC 

[CVE-2026-72244][MODERATE REGULAR] gpu/buddy: bail out of try_harder when alignment cannot be honoured [ Upstream
 2026-08-15  7:49 UTC 

[CVE-2026-72263][LOW] ASoC: SOF: topology: fix memory leak in snd_sof_load_topology
 2026-08-15  7:49 UTC 

[CVE-2026-72124][MODERATE REGULAR] can: isotp: serialize TX state transitions under so->rx_lock
 2026-08-15  7:45 UTC 

[CVE-2026-72175][MODERATE REGULAR] fs/proc/task_mmu: fix make_uffd_wp_huge_pte() prot-update race
 2026-08-15  7:41 UTC 

[CVE-2026-74436][MODERATE 7.0] rxrpc: serialize kernel accept preallocation with socket teardown [ Upstream
 2026-08-15  7:39 UTC 

[CVE-2026-74426][LOW] afs: fix NULL pointer dereference in afs_get_tree()
 2026-08-15  7:35 UTC 

[CVE-2026-72335][MODERATE 7.0] Bluetooth: MGMT: Fix adv monitor add failure cleanup [ Upstream
 2026-08-15  7:31 UTC 

[CVE-2026-72290][LOW] KVM: s390: pci: Fix GISC refcount leak on AIF enable failure
 2026-08-15  7:27 UTC 

[CVE-2026-72126][MODERATE 7.0] can: isotp: use unconditional synchronize_rcu() in isotp_release()
 2026-08-15  7:23 UTC 

[CVE-2026-72422][MODERATE 7.0] ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE [ Upstream
 2026-08-15  7:18 UTC 

[CVE-2026-72177][MODERATE REGULAR] mm/damon/sysfs-schemes: fix dir put orders in access_pattern_add_dirs()
 2026-08-15  7:18 UTC 

[CVE-2026-72225][LOW] jbd2: fix integer underflow in jbd2_journal_initialize_fast_commit()
 2026-08-15  7:15 UTC 

[CVE-2026-72450][MODERATE REGULAR] xfrm: validate selector family and prefixlen during match [ Upstream
 2026-08-15  7:10 UTC 

[CVE-2026-74265][LOW] net: mana: initialize gdma queue id to INVALID_QUEUE_ID [ Upstream
 2026-08-15  7:06 UTC 

[CVE-2026-72003][IMPORTANT] wifi: brcmfmac: cyw: fix heap overflow on a short auth frame
 2026-08-15  7:02 UTC 

[CVE-2026-72031][LOW] ata: libata-core: Add NOLPM quirk for PNY CS900 1TB SSD
 2026-08-15  6:58 UTC 

[CVE-2026-72019][MODERATE 7.0] macsec: don't read an unset MAC header in macsec_encrypt()
 2026-08-15  6:55 UTC 

[CVE-2026-72467][LOW] xprtrdma: Check frwr_wp_create() during connect [ Upstream
 2026-08-15  6:51 UTC 

[CVE-2026-68454][MODERATE 7.0] KVM: s390: pci: Fix handling of AIF enable without AISB
 2026-08-13 15:04 UTC 

[CVE-2026-68451][MODERATE 7.0] s390/zcrypt: Validate length for CCA ECC private key requests
 2026-08-13 14:59 UTC 

[CVE-2026-68453][MODERATE 7.0] s390/zcrypt: Fix buffer over-read in cca_cipher2protkey
 2026-08-13 14:55 UTC 

[CVE-2026-68452][MODERATE 7.0] s390/zcrypt: Validate length for CCA AES cipher key requests
 2026-08-13 14:52 UTC 

[CVE-2026-68450][LOW] btrfs: free mapping node on duplicate reloc root insert [ Upstream
 2026-08-12  1:58 UTC 

[CVE-2026-68447][MODERATE REGULAR] drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size
 2026-08-12  1:55 UTC 

[CVE-2026-68448][MODERATE 7.0] ovl: check access to copy_file_range source with src mounter creds [ Upstream
 2026-08-12  1:52 UTC 

[CVE-2026-68434][LOW] serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms
 2026-08-12  1:16 UTC 

[CVE-2026-68442][MODERATE 7.0] btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps [ Upstream
 2026-08-12  1:14 UTC 

[CVE-2026-68446][MODERATE REGULAR] drm/vmwgfx: Validate vmw_surface_metadata::array_size
 2026-08-12  1:10 UTC 

[CVE-2026-68430][LOW] drm/amdgpu/gfx8: drop unecessary BUG_ON()
 2026-08-12  1:06 UTC 

[CVE-2026-68437][MODERATE REGULAR] drm/imagination: Fit paired fragment job in the correct CCCB
 2026-08-12  1:06 UTC 

[CVE-2026-68441][MODERATE REGULAR] net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains [ Upstream
 2026-08-12  1:06 UTC 

[CVE-2026-68439][LOW] wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() [ Upstream
 2026-08-12  1:02 UTC 

[CVE-2026-68432][IMPORTANT] vxlan: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-12  0:57 UTC 

[CVE-2026-68436][LOW] drm/amd/display: use kvzalloc to allocate struct dc
 2026-08-12  0:53 UTC 

[CVE-2026-68429][LOW] drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue_probe()
 2026-08-12  0:53 UTC 

[CVE-2026-68433][MODERATE REGULAR] libceph: bound get_version reply decode to front len
 2026-08-12  0:51 UTC 

[CVE-2026-68245][MODERATE 7.0] drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()
 2026-08-11  0:34 UTC 

[CVE-2026-68279][MODERATE REGULAR] drm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers
 2026-08-11  0:33 UTC 

[CVE-2026-68420][MODERATE 7.0] xfrm: reject optional IPTFS templates in outbound policies [ Upstream
 2026-08-11  0:30 UTC 

[CVE-2026-68418][LOW] RDMA/irdma: Prevent user-triggered null deref on QP create [ Upstream
 2026-08-11  0:28 UTC 

[CVE-2026-68323][MODERATE 7.0] tipc: serialize udp bearer replicast list updates [ Upstream
 2026-08-11  0:25 UTC 

[CVE-2026-68268][LOW] drm/xe: Return error on non-migratable faults requiring devmem
 2026-08-11  0:22 UTC 

[CVE-2026-68142][IMPORTANT] geneve: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-11  0:20 UTC 

[CVE-2026-68411][MODERATE REGULAR] wifi: mac80211_hwsim: clamp virtio RX length before skb_put [ Upstream
 2026-08-11  0:16 UTC 

[CVE-2026-68149][MODERATE 7.0] fs: preserve ACL_DONT_CACHE state in forget_cached_acl()
 2026-08-11  0:16 UTC 

[CVE-2026-68397][IMPORTANT] net/iucv: take a reference on the socket found in afiucv_hs_rcv() [ Upstream
 2026-08-11  0:12 UTC 

[CVE-2026-68346][LOW] ALSA: hda: cs35l41: validate and free ACPI mute object [ Upstream
 2026-08-11  0:08 UTC 

[CVE-2026-68093][MODERATE 7.0] KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug
 2026-08-11  0:05 UTC 

[CVE-2026-68267][MODERATE 7.0] drm/xe/rtp: Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists [ Upstream
 2026-08-11  0:00 UTC 

[CVE-2026-68132][LOW] super: fix emergency thaw deadlock on frozen block devices
 2026-08-10 23:58 UTC 

[CVE-2026-68270][MODERATE REGULAR] drm/sysfb: Avoid possible truncation with calculating visible size
 2026-08-10 23:55 UTC 

[CVE-2026-68385][MODERATE REGULAR] s390/checksum: Fix csum_partial() without vector facility [ Upstream
 2026-08-10 23:51 UTC 

[CVE-2026-68273][MODERATE 7.0] drm/amdgpu: Fix context pstate override handling [ Upstream
 2026-08-10 23:47 UTC 

[CVE-2026-68253][MODERATE 7.0] drm/i915/hdcp: check streams[] bounds before overflow [ Upstream
 2026-08-10 23:47 UTC 

[CVE-2026-68407][LOW] wifi: nl80211: free RNR data on MBSSID mismatch [ Upstream
 2026-08-10 23:44 UTC 

[CVE-2026-68147][IMPORTANT] fscrypt: Avoid dynamic allocation in fscrypt_get_devices()
 2026-08-10 23:40 UTC 

[CVE-2026-68392][MODERATE 7.0] Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync [ Upstream
 2026-08-10 23:40 UTC 

[CVE-2026-68175][LOW] tracing: Fix resource leak on mmiotrace trace_pipe close
 2026-08-10 23:36 UTC 

[CVE-2026-68388][MODERATE 7.0] smb/client: handle overlapping allocated ranges in fallocate [ Upstream
 2026-08-10 23:32 UTC 

[CVE-2026-68347][MODERATE REGULAR] iommu/amd: Fix IRQ unsafe locking in gdom allocation [ Upstream
 2026-08-10 23:28 UTC 

[CVE-2026-68306][MODERATE REGULAR] wifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht() [ Upstream
 2026-08-10 23:26 UTC 

[CVE-2026-68212][MODERATE REGULAR] media: saa7134: Fix a possible memory leak in saa7134_video_init1
 2026-08-10 23:26 UTC 

[CVE-2026-68257][MODERATE 7.0] drm/amdkfd: fix 32-bit overflow in CWSR total size calculation
 2026-08-10 23:23 UTC 

[CVE-2026-68168][MODERATE 7.0] afs: Fix afs_edit_dir_remove() to get, not find, block 0
 2026-08-10 23:23 UTC 

[CVE-2026-68115][LOW] drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON()
 2026-08-10 23:21 UTC 

[CVE-2026-68329][IMPORTANT] iommu/amd: Wait for completion instead of returning early in iommu_completion_wait() [ Upstream
 2026-08-10 23:21 UTC 

[CVE-2026-68162][MODERATE 7.0] Revert "sctp: sysctl: auth_enable: avoid using current->nsproxy" This reverts
 2026-08-10 23:17 UTC 

[CVE-2026-68294][IMPORTANT] net: qrtr: restrict socket creation to the initial network namespace [ Upstream
 2026-08-10 23:12 UTC 

[CVE-2026-68292][LOW] ice: prevent tstamp ring allocation for non-PF VSI types [ Upstream
 2026-08-10 23:08 UTC 

[CVE-2026-68276][MODERATE 7.0] drm/amdgpu/gfx: fix cleaner shader IB buffer overflow [ Upstream
 2026-08-10 23:08 UTC 

[CVE-2026-68275][MODERATE REGULAR] drm/amdgpu: check amdgpu_vm_bo_find() result in GET_MAPPING_INFO
 2026-08-10 23:08 UTC 

[CVE-2026-68271][MODERATE REGULAR] drm/nouveau: fix reversed error cleanup order in ucopy functions
 2026-08-10 23:08 UTC 

[CVE-2026-68408][LOW] wifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock [ Upstream
 2026-08-10 23:06 UTC 

[CVE-2026-68287][MODERATE 7.0] drop_monitor: fix size calculations for 64-bit attributes [ Upstream
 2026-08-10 23:04 UTC 

[CVE-2026-68383][MODERATE 7.0] drm/xe/guc: Keep scheduler timeline name alive [ Upstream
 2026-08-10 23:01 UTC 

[CVE-2026-68313][LOW] tipc: fix infinite loop in __tipc_nl_compat_dumpit [ Upstream
 2026-08-10 22:59 UTC 

[CVE-2026-68274][MODERATE 7.0] drm/xe/guc: Fix buffer overflow in steered register list allocation [ Upstream
 2026-08-10 22:55 UTC 

[CVE-2026-68299][MODERATE 7.0] vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets [ Upstream
 2026-08-10 22:54 UTC 

[CVE-2026-68112][MODERATE REGULAR] drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()
 2026-08-10 22:49 UTC 

[CVE-2026-68354][MODERATE 7.0] firewire: net: Fix fragmented datagram reassembly [ Upstream
 2026-08-10 22:49 UTC 

[CVE-2026-68145][IMPORTANT] iomap: fix out-of-bounds bitmap_set() with zero-length range
 2026-08-10 22:45 UTC 

[CVE-2026-68286][MODERATE REGULAR] drop_monitor: perform u64_stats updates under IRQ-disabled section [ Upstream
 2026-08-10 22:41 UTC 

[CVE-2026-68155][MODERATE 7.0] libceph: Reject monmaps advertising zero monitors
 2026-08-10 22:37 UTC 

[CVE-2026-68261][MODERATE REGULAR] drm/imagination: fix error checking of pvr_vm_context_lookup()
 2026-08-10 22:35 UTC 

[CVE-2026-68238][LOW] drm/amdgpu: Release VFCT ACPI table reference
 2026-08-10 22:35 UTC 

[CVE-2026-68335][IMPORTANT] rds: drop incoming messages that cross network namespace boundaries [ Upstream
 2026-08-10 22:34 UTC 

[CVE-2026-68105][LOW] drm/amdgpu: Fix kernel panic during driver load failure
 2026-08-10 22:34 UTC 

[CVE-2026-68393][MODERATE 7.0] Bluetooth: hci_sync: extend conn_hash lookup critical sections [ Upstream
 2026-08-10 22:34 UTC 

[CVE-2026-68197][MODERATE REGULAR] wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper
 2026-08-10 22:30 UTC 

[CVE-2026-68205][MODERATE REGULAR] media: v4l2-fwnode: Fix subdev owner overwritten in v4l2_async_register_subdev_sensor() [ Upstream
 2026-08-10 22:27 UTC 

[CVE-2026-68328][LOW] nfp: Check resource mutex allocation [ Upstream
 2026-08-10 22:22 UTC 

[CVE-2026-68343][MODERATE 7.0] smb: client: validate DFS referral PathConsumed [ Upstream
 2026-08-10 22:18 UTC 

[CVE-2026-68158][MODERATE 7.0] libceph: Fix multiplication overflow in decode_new_up_state_weight()
 2026-08-10 22:14 UTC 

[CVE-2026-68119][MODERATE REGULAR] tcp: initialize standalone TCP-AO response padding
 2026-08-10 22:10 UTC 

[CVE-2026-68403][LOW] wifi: brcmfmac: initialize SDIO data work before cleanup [ Upstream
 2026-08-10 22:08 UTC 

[CVE-2026-68284][MODERATE 7.0] bpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg() [ Upstream
 2026-08-10 22:04 UTC 

[CVE-2026-68248][MODERATE REGULAR] drm/i915: Return NULL on error in active_instance
 2026-08-10 22:00 UTC 

[CVE-2026-68351][MODERATE 7.0] wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read [ Upstream
 2026-08-10 21:56 UTC 

[CVE-2026-68174][LOW] tracing: Fix union collision of module and refcnt for dynamic events
 2026-08-10 21:51 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox