public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-72258][LOW] ASoC: mediatek: mt8183: Release reserved memory on cleanup
 2026-08-15 19:39 UTC 

[CVE-2026-74465][MODERATE 7.0] net: openvswitch: fix potential UAF on meter attach failure
 2026-08-15 19:39 UTC 

[CVE-2026-74495][LOW] igbvf: Fix leak in TX DMA error cleanup
 2026-08-15 19:35 UTC 

[CVE-2026-72005][LOW] wifi: rt2x00: avoid full teardown before work setup in probe
 2026-08-15 19:33 UTC 

[CVE-2026-74510][IMPORTANT] Bluetooth: mgmt: fix UAF in pair command cancellation
 2026-08-15 19:29 UTC 

[CVE-2026-74460][MODERATE REGULAR] can: ems_usb: validate CPC message lengths
 2026-08-15 19:25 UTC 

[CVE-2026-74577][LOW] net: mpls: initialize rtm_tos in mpls_getroute() [ Upstream
 2026-08-15 19:22 UTC 

[CVE-2026-72360][MODERATE REGULAR] drm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays [ Upstream
 2026-08-15 19:18 UTC 

[CVE-2026-74449][MODERATE REGULAR] drm/amd/display: Fix divide-by-zero in calculate_mcache_setting on zero viewport
 2026-08-15 19:17 UTC 

[CVE-2026-72021][MODERATE 7.0] ipvs: use parsed transport offset in SCTP state lookup commit 2f75c0faa3361b28e36cc0512b3299e163e25789 upstream
 2026-08-15 19:17 UTC 

[CVE-2026-74511][MODERATE 7.0] Bluetooth: mgmt: fix pending command UAF in EIR updates
 2026-08-15 19:17 UTC 

[CVE-2026-72042][IMPORTANT] ipmi: Fix user refcount underflow in event delivery
 2026-08-15 19:13 UTC 

[CVE-2026-74576][MODERATE 7.0] mm/slab: prevent unbounded recursion in free path with new kmalloc type
 2026-08-15 19:13 UTC 

[CVE-2026-74390][MODERATE 7.0] RDMA/irdma: Fix out-of-bounds write in irdma_copy_user_pgaddrs [ Upstream
 2026-08-15 19:11 UTC 

[CVE-2026-74513][MODERATE 7.0] dibs: fix use-after-free of dmb_node in loopback attach/detach/unregister
 2026-08-15 19:07 UTC 

[CVE-2026-72323][IMPORTANT] ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() [ Upstream
 2026-08-15 19:07 UTC 

[CVE-2026-74496][MODERATE 7.0] fou: Fix use-after-free in fou_create()
 2026-08-15 19:03 UTC 

[CVE-2026-72183][IMPORTANT] landlock: Fix LANDLOCK_SCOPE_SIGNAL bypass on the SIGIO path [ Upstream
 2026-08-15 18:59 UTC 

[CVE-2026-74464][MODERATE REGULAR] net: openvswitch: fix skb leak on flow key update failure during ct
 2026-08-15 18:56 UTC 

[CVE-2026-72128][MODERATE 7.0] nvmet: fix refcount leak in nvmet_sq_create()
 2026-08-15 18:52 UTC 

[CVE-2026-74493][MODERATE 7.0] net/smc: fix socket use-after-free during link group termination
 2026-08-15 18:49 UTC 

[CVE-2026-72387][MODERATE REGULAR] drm/panthor: Fix potential invalid pointer deref in group_process_tiler_oom() [ Upstream
 2026-08-15 18:45 UTC 

[CVE-2026-74556][IMPORTANT] scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer [ Upstream
 2026-08-15 18:45 UTC 

[CVE-2026-74505][MODERATE 7.0] ALSA: 6fire: Fix UAF at error handling during probe
 2026-08-15 18:41 UTC 

[CVE-2026-72371][MODERATE 7.0] afs: Fix the volume AFS_VOLUME_RM_TREE is set on [ Upstream
 2026-08-15 18:38 UTC 

[CVE-2026-74479][MODERATE REGULAR] net: pktgen: fix proc entry use-after-free
 2026-08-15 18:33 UTC 

[CVE-2026-72140][MODERATE REGULAR] i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource()
 2026-08-15 18:29 UTC 

[CVE-2026-74572][MODERATE REGULAR] btrfs: zoned: fix deadlock between metadata writeback and transaction commit [ Upstream
 2026-08-15 18:25 UTC 

[CVE-2026-74466][MODERATE REGULAR] s390/zcrypt: Close speculative mem read possibility
 2026-08-15 18:23 UTC 

[CVE-2026-74303][MODERATE REGULAR] Bluetooth: hci_qca: fix NULL pointer dereference in qca_dmp_hdr() for non-serdev device [ Upstream
 2026-08-15 18:20 UTC 

[CVE-2026-74519][MODERATE 7.0] pinctrl: devicetree: don't free uninitialized dev_name on error path
 2026-08-15 18:20 UTC 

[CVE-2026-72052][IMPORTANT] net: ip6_gre: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-15 18:16 UTC 

[CVE-2026-74520][IMPORTANT] iommu/iommufd: Fix IOPF group ownership UAF
 2026-08-15 18:08 UTC 

[CVE-2026-74514][LOW] KVM: s390: pci: Fix memory accounting for pinned/unpinned pages
 2026-08-15 18:05 UTC 

[CVE-2026-74481][MODERATE 7.0] mm/page_reporting: use system_freezable_wq to fix UAF during suspend
 2026-08-15 18:01 UTC 

[CVE-2026-74277][MODERATE 7.0] iommu/dma-iommu: Fix wrong scatterlist length assignment in P2PDMA path [ Upstream
 2026-08-15 17:58 UTC 

[CVE-2026-74482][MODERATE 7.0] mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios [ Upstream
 2026-08-15 17:54 UTC 

[CVE-2026-74302][MODERATE 7.0] Bluetooth: hci_core: Fix UAF in hci_unregister_dev() [ Upstream
 2026-08-15 17:51 UTC 

[CVE-2026-74483][LOW] binfmt_misc: don't leak the user namespace when the mount fails
 2026-08-15 17:47 UTC 

[CVE-2026-74536][LOW] Bluetooth: ISO: fix leaking sk after socket release [ Upstream
 2026-08-15 17:45 UTC 

[CVE-2026-74573][IMPORTANT] iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE [ Upstream
 2026-08-15 17:42 UTC 

[CVE-2026-74543][LOW] net: udp_tunnel: fix memory leak in udp_tunnel_nic_unregister() [ Upstream
 2026-08-15 17:38 UTC 

[CVE-2026-72499][MODERATE 7.0] RDMA/bnxt_re: Free CQ toggle page after firmware teardown [ Upstream
 2026-08-15 17:35 UTC 

[CVE-2026-74452][MODERATE 7.0] drm/panthor: reject firmware sections with oversized data
 2026-08-15 17:32 UTC 

[CVE-2026-74563][MODERATE 7.0] rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check() [ Upstream
 2026-08-15 17:32 UTC 

[CVE-2026-74364][MODERATE 7.0] bpf: Reject exclusive maps as inner maps in map-in-map [ Upstream
 2026-08-15 17:32 UTC 

[CVE-2026-74475][MODERATE 7.0] vxlan: use neigh_ha_snapshot() in route_shortcircuit()
 2026-08-15 17:30 UTC 

[CVE-2026-72300][MODERATE REGULAR] ASoC: SOF: topology: validate vendor array size before parsing
 2026-08-15 17:27 UTC 

[CVE-2026-74539][MODERATE REGULAR] Bluetooth: ISO: lock sk in iso_sock_getname [ Upstream
 2026-08-15 17:25 UTC 

[CVE-2026-74480][MODERATE 7.0] net: bridge: stop fast-leave after deleting a port group
 2026-08-15 17:21 UTC 

[CVE-2026-72096][LOW] dm-verity: make error counter atomic [ Upstream
 2026-08-15 17:17 UTC 

[CVE-2026-74546][LOW] hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read [ Upstream
 2026-08-15 17:14 UTC 

[CVE-2026-74554][MODERATE 7.0] wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup() [ Upstream
 2026-08-15 17:11 UTC 

[CVE-2026-74336][MODERATE REGULAR] wifi: mac80211: bound S1G TIM PVB walk to the TIM element [ Upstream
 2026-08-15 17:09 UTC 

[CVE-2026-74529][MODERATE 7.0] Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback [ Upstream
 2026-08-15 17:09 UTC 

[CVE-2026-74446][IMPORTANT] drm/amdkfd: hold event_mutex while checkpointing CRIU events
 2026-08-15 17:04 UTC 

[CVE-2026-74500][MODERATE REGULAR] ALSA: usb-audio: fix stack info leak in RME Digiface status
 2026-08-15 17:04 UTC 

[CVE-2026-74411][MODERATE REGULAR] wifi: rtw89: Correct data type for scan index to avoid infinite loop [ Upstream
 2026-08-15 17:01 UTC 

[CVE-2026-74549][MODERATE REGULAR] hwmon: (nct6775-core) Prevent access to unsupported weight registers [ Upstream
 2026-08-15 16:57 UTC 

[CVE-2026-74537][MODERATE 7.0] Bluetooth: ISO: hold sk properly in iso_conn_ready [ Upstream
 2026-08-15 16:53 UTC 

[CVE-2026-72009][LOW] pmdomain: imx93-blk-ctrl: Extract PHY as shared domain for DSI/CSI [ Upstream
 2026-08-15 16:50 UTC 

[CVE-2026-74487][LOW] binfmt_misc: restore write access when removing an entry
 2026-08-15 16:47 UTC 

[CVE-2026-74518][IMPORTANT] mm/hugetlb: fix list corruption in allocate_file_region_entries()
 2026-08-15 16:43 UTC 

[CVE-2026-72437][LOW] md/raid1: free r1_bio when REQ_NOWAIT is set and read would block on retry [ Upstream
 2026-08-15 16:40 UTC 

[CVE-2026-74506][MODERATE 7.0] afs: Fix UAF when sending a message
 2026-08-15 16:36 UTC 

[CVE-2026-68457][IMPORTANT] ksmbd: use opener credentials for FSCTL mutations [ Upstream
 2026-08-15 16:36 UTC 

[CVE-2026-74337][MODERATE REGULAR] bpf: Fix NMI/tracepoint re-entry deadlock on lru locks [ Upstream
 2026-08-15 16:36 UTC 

[CVE-2026-74569][IMPORTANT] netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() [ Upstream
 2026-08-15 16:33 UTC 

[CVE-2026-74382][LOW] net/sched: cls_bpf: prevent unbounded recursion in offload rollback [ Upstream
 2026-08-15 16:29 UTC 

[CVE-2026-72098][MODERATE 7.0] dm-verity: fix buffer overflow in FEC calculation
 2026-08-15 16:23 UTC 

[CVE-2026-74445][MODERATE REGULAR] drm/vmwgfx: reject DX_BIND_QUERY without a DX context
 2026-08-15 16:19 UTC 

[CVE-2026-74462][LOW] i2c: imx: mark I2C adapter when hardware is powered down
 2026-08-15 16:16 UTC 

[CVE-2026-74327][LOW] vmalloc: fix NULL pointer dereference in is_vm_area_hugepages() [ Upstream
 2026-08-15 16:14 UTC 

[CVE-2026-74533][MODERATE 7.0] Bluetooth: ISO: fix race of kfree vs kref_get_unless_zero [ Upstream
 2026-08-15 16:14 UTC 

[CVE-2026-72222][IMPORTANT] sunrpc: pin svc_xprt across the asynchronous TLS handshake callback
 2026-08-15 16:10 UTC 

[CVE-2026-74555][LOW] scsi: libsas: Fix HA resume deadlock and hisi_sas disk-wake race [ Upstream
 2026-08-15 16:06 UTC 

[CVE-2026-72284][MODERATE 7.0] KVM: x86: Ignore pending PV EOI if the vCPU has since disabled PV EOIs
 2026-08-15 16:04 UTC 

[CVE-2026-74448][LOW] drm/amdkfd: fix QID bit leak in pqm_create_queue()
 2026-08-15 16:01 UTC 

[CVE-2026-72223][LOW] nvdimm/btt: Free arena sub-allocations on discover_arenas() error path
 2026-08-15 16:01 UTC 

[CVE-2026-74557][MODERATE 7.0] scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer [ Upstream
 2026-08-15 15:57 UTC 

[CVE-2026-72355][MODERATE 7.0] netfs: Fix barriering when walking subrequest list [ Upstream
 2026-08-15 15:53 UTC 

[CVE-2026-74439][MODERATE 7.0] iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry [ Upstream
 2026-08-15 15:51 UTC 

[CVE-2026-74553][LOW] hwmon: (nct6775-core) Fix number of temperature registers for NCT6116 [ Upstream
 2026-08-15 15:47 UTC 

[CVE-2026-74333][MODERATE REGULAR] ASoC: amd: acp-sdw-legacy: Bound DAI link iteration [ Upstream
 2026-08-15 15:44 UTC 

[CVE-2026-74575][MODERATE 7.0] thunderbolt: Prevent XDomain delayed work use-after-free on disconnect [ Upstream
 2026-08-15 15:40 UTC 

[CVE-2026-74542][MODERATE REGULAR] netfs: Fix folio_queue ENOMEM in writeback by adding a mempool [ Upstream
 2026-08-15 15:40 UTC 

[CVE-2026-74305][MODERATE 7.0] bpf: Tighten cgroup storage cookie checks for prog arrays [ Upstream
 2026-08-15 15:38 UTC 

[CVE-2026-74509][IMPORTANT] Bluetooth: hci_sync: Fix advertising data UAFs
 2026-08-15 15:34 UTC 

[CVE-2026-74271][MODERATE 7.0] power: supply: core: fix supplied_from allocations [ Upstream
 2026-08-15 15:30 UTC 

[CVE-2026-74530][MODERATE 7.0] Bluetooth: hci_sync: hold conn in hci_connect_big_sync() callback [ Upstream
 2026-08-15 15:26 UTC 

[CVE-2026-72433][MODERATE REGULAR] netfilter: nft_meta_bridge: fix NFT_META_BRI_IIFPVID stack leak [ Upstream
 2026-08-15 15:22 UTC 

[CVE-2026-74532][MODERATE REGULAR] Bluetooth: btintel: Validate length before parsing diagnostics TLV [ Upstream
 2026-08-15 15:19 UTC 

[CVE-2026-74289][MODERATE 7.0] ipv4: fib: Don't dump dying fib_info in fib_leaf_notify(). [ Upstream
 2026-08-15 15:15 UTC 

[CVE-2026-74523][MODERATE REGULAR] qede: sync udp_tunnel ports outside qede_lock in the recovery path [ Upstream
 2026-08-15 15:12 UTC 

[CVE-2026-72032][LOW] net/mlx5: HWS, fix matcher leak on resize target setup failure [ Upstream commit bb09d0e64ecaa0aa0f7d1133a1696ed74dead295 ]
 2026-08-15 15:08 UTC 

[CVE-2026-74469][MODERATE 7.0] sctp: prevent peer transport count overflow
 2026-08-15 15:08 UTC 

[CVE-2026-72249][MODERATE 7.0] netfilter: flowtable: use dst in this direction when pushing IPIP header
 2026-08-15 15:04 UTC 

[CVE-2026-74499][IMPORTANT] ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output()
 2026-08-15 15:02 UTC 

[CVE-2026-72447][MODERATE REGULAR] sctp: hold socket lock when dumping endpoints in sctp_diag [ Upstream
 2026-08-15 14:58 UTC 

[CVE-2026-74544][MODERATE REGULAR] net/sched: cls_u32: validate offshift to prevent shift-out-of-bounds [ Upstream
 2026-08-15 14:54 UTC 

[CVE-2026-72065][MODERATE 7.0] net: mana: Validate the packet length reported by the NIC [ Upstream
 2026-08-15 14:51 UTC 

[CVE-2026-74388][MODERATE 7.0] ALSA: seq: oss: Fix UAF at handling events with embedded SysEx data [ Upstream
 2026-08-15 14:47 UTC 

[CVE-2026-74473][MODERATE 7.0] vxlan: use pskb_network_may_pull() in route_shortcircuit()
 2026-08-15 14:43 UTC 

[CVE-2026-72045][MODERATE 7.0] octeontx2-af: cn10k: restrict VF LMTLINE sharing to its own PF [ Upstream
 2026-08-15 14:39 UTC 

[CVE-2026-74564][LOW] netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH [ Upstream
 2026-08-15 14:35 UTC 

[CVE-2026-74258][MODERATE 7.0] bpf: Guard __get_user acesss with access_ok for uprobe_multi data [ Upstream
 2026-08-15 14:31 UTC 

[CVE-2026-74440][MODERATE 7.0] drm/xe: Wait on external BO kernel fences in exec IOCTL [ Upstream
 2026-08-15 14:28 UTC 

[CVE-2026-72049][IMPORTANT] ieee802154: admin-gate legacy LLSEC dump operations
 2026-08-15 14:24 UTC 

[CVE-2026-72035][MODERATE 7.0] net/sched: sch_taprio: Replace direct dequeue call with peek and qdisc_dequeue_peeked
 2026-08-15 14:19 UTC 

[CVE-2026-74516][IMPORTANT] KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active
 2026-08-15 14:16 UTC 

[CVE-2026-72018][MODERATE 7.0] dibs: loopback: validate offset and size in move_data() commit 78237e3c0720fcc6eb9b87e90fd70f63eeca886f upstream
 2026-08-15 14:12 UTC 

[CVE-2026-74451][MODERATE 7.0] drm/panthor: validate firmware interface structure sizes
 2026-08-15 14:12 UTC 

[CVE-2026-72287][MODERATE 7.0] KVM: nVMX: Move vTPR vs. TPR Threshold consistency check into "normal" checks
 2026-08-15 14:12 UTC 

[CVE-2026-74561][MODERATE 7.0] nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush [ Upstream commit 4787a6d2629b4e8c0b6bacab1f75c1660eca44d9 ]
 2026-08-15 14:10 UTC 

[CVE-2026-72334][MODERATE REGULAR] Bluetooth: ISO: fix malformed ISO_END/CONT handling [ Upstream
 2026-08-15 14:09 UTC 

[CVE-2026-74528][MODERATE 7.0] Bluetooth: hci_sync: hold conn in hci_past_sync() callback [ Upstream
 2026-08-15 14:07 UTC 

[CVE-2026-72129][MODERATE 7.0] nvmet-rdma: handle inline data with a nonzero offset
 2026-08-15 14:06 UTC 

[CVE-2026-74526][LOW] scsi: mpi3mr: Fix potential deadlock in mpi3mr_fault_uevent_emit [ Upstream
 2026-08-15 14:01 UTC 

[CVE-2026-72464][MODERATE REGULAR] xprtrdma: Repost Receive buffers for malformed replies [ Upstream
 2026-08-15 13:59 UTC 

[CVE-2026-74461][MODERATE 7.0] i2c: imx: Cancel hrtimer before clearing slave pointer
 2026-08-15 13:55 UTC 

[CVE-2026-74547][LOW] hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread [ Upstream
 2026-08-15 13:50 UTC 

[CVE-2026-68476][IMPORTANT] ipvs: reload ip header after head reallocation
 2026-08-15 13:46 UTC 

[CVE-2026-74498][MODERATE 7.0] ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set
 2026-08-15 13:41 UTC 

[CVE-2026-72312][MODERATE REGULAR] octeontx2-af: fix VF bringup affecting PF promiscuous state [ Upstream
 2026-08-15 13:37 UTC 

[CVE-2026-74489][MODERATE 7.0] wifi: mac80211: fix tid_tx use-after-free on BA session stop
 2026-08-15 13:33 UTC 

[CVE-2026-74490][MODERATE REGULAR] tipc: avoid use-after-free in poll trace queue dumps
 2026-08-15 13:32 UTC 

[CVE-2026-74274][LOW] cxl/region: Fill first free targets[] slot during auto-discovery [ Upstream
 2026-08-15 13:28 UTC 

[CVE-2026-74566][MODERATE 7.0] keys: make keyring key-chunk byte order agree with keyring_diff_objects() [ Upstream
 2026-08-15 13:27 UTC 

[CVE-2026-74492][MODERATE 7.0] netfilter: ipset: do not update comments from kernel-side hash adds
 2026-08-15 13:23 UTC 

[CVE-2026-72273][LOW] fbdev: efifb: fix memory leak in efifb_probe() [ Upstream
 2026-08-15 13:23 UTC 

[CVE-2026-74269][IMPORTANT] bnxt: fix head underflow on XDP head-grow [ Upstream
 2026-08-15 13:18 UTC 

[CVE-2026-74558][LOW] xsk: reclaim invalid Tx descriptors in ZC batch path [ Upstream
 2026-08-15 13:14 UTC 

[CVE-2026-72283][MODERATE 7.0] KVM: x86: Nullify irqfd->producer if updating IRTE for bypass fails
 2026-08-15 13:11 UTC 

[CVE-2026-74508][MODERATE 7.0] Bluetooth: HIDP: reject frames without a transaction header
 2026-08-15 13:09 UTC 

[CVE-2026-72011][LOW] s390/diag: Add missing array_index_nospec() call to memtop_get_page_count()
 2026-08-15 13:05 UTC 

[CVE-2026-74502][IMPORTANT] ALSA: ump: fix double free of out_cvts on rawmidi error
 2026-08-15 13:02 UTC 

[CVE-2026-72303][MODERATE REGULAR] ASoC: SOF: ipc4-control: Validate notification payload size commit 5bdfeccb7fbf6e000fc783cd8412732e67c1ad0c upstream
 2026-08-15 12:58 UTC 

[CVE-2026-74450][MODERATE 7.0] drm/amd/pm: fix pptable use-after-free
 2026-08-15 12:57 UTC 

[CVE-2026-74550][MODERATE 7.0] net: do not send ICMP/NDISC Redirects when peer allocation fails [ Upstream
 2026-08-15 12:56 UTC 

[CVE-2026-72370][LOW] iomap: release pages on atomic dio size mismatch [ Upstream
 2026-08-15 12:53 UTC 

[CVE-2026-74457][MODERATE REGULAR] can: peak_usb: add bounds check for USB channel index
 2026-08-15 12:51 UTC 

[CVE-2026-72491][MODERATE 7.0] net/9p: fix race condition on rdma->state in trans_rdma.c [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74409][MODERATE 7.0] wifi: rtw89: add bounds check on firmware mac_id in link lookup [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74321][MODERATE REGULAR] btrfs: fix invalid pointer dereference in __btrfs_run_delayed_refs() [ Upstream
 2026-08-15 12:42 UTC 

[CVE-2026-74413][MODERATE 7.0] wifi: rtw89: fix wrong pci_get_drvdata type in AER handlers [ Upstream
 2026-08-15 12:38 UTC 

[CVE-2026-72466][MODERATE 7.0] xprtrdma: Fix bcall rep leak and unbounded peek [ Upstream
 2026-08-15 12:34 UTC 

[CVE-2026-72274][LOW] fbdev: hecubafb: fix potential memory leak in hecubafb_probe()
 2026-08-15 12:30 UTC 

[CVE-2026-72306][MODERATE 7.0] vduse: Fix race in vduse_dev_msg_sync and vduse_dev_read_iter
 2026-08-15 12:30 UTC 

[CVE-2026-72057][MODERATE 7.0] net/sched: act_ct: preserve tc_skb_cb across defragmentation
 2026-08-15 12:26 UTC 

[CVE-2026-72025][MODERATE 7.0] s390/monwriter: Reject buffer reuse with different data length
 2026-08-15 12:22 UTC 

[CVE-2026-72428][MODERATE REGULAR] bpf: Fix stack slot index in nospec checks [ Upstream
 2026-08-15 12:19 UTC 

[CVE-2026-72127][LOW] netdev-genl: report NAPI thread PID in the caller's pid namespace
 2026-08-15 12:14 UTC 

[CVE-2026-72488][MODERATE REGULAR] soundwire: fix bug in sdw_add_element_group_count found by syzkaller [ Upstream
 2026-08-15 12:11 UTC 

[CVE-2026-72111][MODERATE 7.0] bpf: Reset register bounds before narrowing retval range in check_mem_access() [ Upstream
 2026-08-15 12:08 UTC 

[CVE-2026-72255][IMPORTANT] netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst
 2026-08-15 12:04 UTC 

[CVE-2026-74368][MODERATE REGULAR] wifi: ath12k: fix memory leak in ath12k_wifi7_dp_rx_h_verify_tkip_mic() [ Upstream
 2026-08-15 11:59 UTC 

[CVE-2026-74386][MODERATE 7.0] nvmet-tcp: fix page fragment cache leak in error path [ Upstream
 2026-08-15 11:56 UTC 

[CVE-2026-72468][LOW] xprtrdma: Initialize re_id before removal registration [ Upstream
 2026-08-15 11:53 UTC 

[CVE-2026-72288][MODERATE 7.0] KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling
 2026-08-15 11:49 UTC 

[CVE-2026-74272][MODERATE REGULAR] cxl/region: Resolve region deletion races [ Upstream
 2026-08-15 11:45 UTC 

[CVE-2026-72050][LOW] octeontx2-af: Free BPID bitmap on setup failure
 2026-08-15 11:41 UTC 

[CVE-2026-72149][LOW] dmaengine: tegra: Fix burst size calculation
 2026-08-15 11:38 UTC 

[CVE-2026-74257][MODERATE 7.0] sockmap: Fix use-after-free in udp_bpf_recvmsg() [ Upstream
 2026-08-15 11:34 UTC 

[CVE-2026-74372][MODERATE REGULAR] raid1: fix nr_pending leak in REQ_ATOMIC bad-block error path [ Upstream
 2026-08-15 11:31 UTC 

[CVE-2026-72339][IMPORTANT] qede: fix off-by-one in BD ring consumption on build_skb failure [ Upstream
 2026-08-15 11:28 UTC 

[CVE-2026-72322][MODERATE 7.0] ipv6: mcast: Fix potential UAF in MLD delayed work [ Upstream
 2026-08-15 11:23 UTC 

[CVE-2026-74313][MODERATE 7.0] vduse: hold vduse_lock across IDR lookup in open path [ Upstream
 2026-08-15 11:18 UTC 

[CVE-2026-74293][MODERATE REGULAR] ASoC: fsl: fsl_audmix: Validate written enum values [ Upstream
 2026-08-15 11:14 UTC 

[CVE-2026-72165][LOW] mtd: rawnand: fix condition in 'nand_select_target()'
 2026-08-15 11:14 UTC 

[CVE-2026-72139][MODERATE 7.0] tcp: defer md5sig_info kfree past RCU grace period in tcp_connect
 2026-08-15 11:09 UTC 

[CVE-2026-74406][MODERATE REGULAR] vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). [ Upstream
 2026-08-15 11:07 UTC 

[CVE-2026-74358][MODERATE REGULAR] ext4: fix fast commit wait/wake bit mapping on 64-bit [ Upstream
 2026-08-15 11:02 UTC 

[CVE-2026-72453][LOW] regcache: Do not overwrite error code when finalizing cache after error [ Upstream
 2026-08-15 11:01 UTC 

[CVE-2026-72420][MODERATE 7.0] md/raid5: avoid R5_Overlap races while breaking stripe batches [ Upstream
 2026-08-15 10:57 UTC 

[CVE-2026-72469][MODERATE 7.0] xprtrdma: Fix ep kref imbalance on ADDR_CHANGE [ Upstream
 2026-08-15 10:54 UTC 

[CVE-2026-72349][MODERATE REGULAR] netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt() [ Upstream
 2026-08-15 10:49 UTC 

[CVE-2026-72425][LOW] ice: fix FDIR CTRL VSI resource leak in ice_reset_all_vfs() [ Upstream
 2026-08-15 10:45 UTC 

[CVE-2026-72041][MODERATE 7.0] espintcp: use sk_msg_free_partial to fix partial send
 2026-08-15 10:42 UTC 

[CVE-2026-72125][MODERATE 7.0] can: isotp: fix use-after-free race with concurrent NETDEV_UNREGISTER
 2026-08-15 10:38 UTC 

[CVE-2026-72463][IMPORTANT] xfrm: Fix dev use-after-free in xfrm async resumption [ Upstream
 2026-08-15 10:34 UTC 

[CVE-2026-74261][LOW] ALSA: seq: avoid stale FIFO cells during resize [ Upstream
 2026-08-15 10:32 UTC 

[CVE-2026-72220][IMPORTANT] sunrpc: harden rq_procinfo lifecycle to prevent double-free
 2026-08-15 10:29 UTC 

[CVE-2026-74318][LOW] btrfs: fix deadlock cloning inline extent when using flushoncommit [ Upstream
 2026-08-15 10:27 UTC 

[CVE-2026-74328][MODERATE 7.0] iommufd: Destroy the pages content after detaching from dmabuf [ Upstream
 2026-08-15 10:24 UTC 

[CVE-2026-74392][MODERATE REGULAR] dm: limit target bio polling to one shot [ Upstream
 2026-08-15 10:22 UTC 

[CVE-2026-72333][MODERATE REGULAR] Bluetooth: L2CAP: fix tx ident leak for commands without a response
 2026-08-15 10:20 UTC 

[CVE-2026-72122][MODERATE REGULAR] can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure
 2026-08-15 10:18 UTC 

[CVE-2026-72343][MODERATE 7.0] net/mlx5e: Fix HV VHCA stats zero-sized buffer allocation [ Upstream
 2026-08-15 10:14 UTC 

[CVE-2026-72236][MODERATE REGULAR] Navigation Menu Sign in Appearance settings Platform AI CODE CREATION GitHub Copilot Write better code with AI GitHub Copilot app Direct agents from issue to merge MCP Registry Integrate external tools DEVELOPER WORKFLOWS Actions Automate any workflow Codespaces Instant dev environments Issues Plan and track work Code Review Manage code changes Code Quality Enforce quality at merge APPLICATION SECURITY GitHub Advanced Security Find and fix vulnerabilities Code security Secure your code as you build Secret protection Stop leaks before they start EXPLORE Why GitHub Documentation Blog Changelog Marketplace View all features Solutions BY COMPANY SIZE Enterprises Small and medium teams Startups Nonprofits BY USE CASE App Modernization DevSecOps DevOps CI/CD View all use cases BY INDUSTRY Healthcare Financial services Manufacturing Government View all industries View all solutions Resources EXPLORE BY TOPIC AI Software Development DevOps Security View all topics EXPLORE BY TYPE Customer stories Events & webinars Ebooks & reports Business insights GitHub Skills SUPPORT & SERVICES Documentation Customer support Community forum Trust center Partners View all resources Open Source COMMUNITY GitHub Sponsors Fund open source developers PROGRAMS Security Lab Maintainer Community Accelerator GitHub Stars Archive Program REPOSITORIES Topics Trending Collections Enterprise ENTERPRISE SOLUTIONS Enterprise platform AI-powered developer platform AVAILABLE ADD-ONS GitHub Advanced Security Enterprise-grade security features Copilot for Business Enterprise-grade AI features Premium Support Enterprise-grade 24/7 support Pricing Search / Sign in Sign up Appearance settings
 2026-08-15 10:14 UTC 

[CVE-2026-72318][IMPORTANT] cifs: validate DFS referral string offsets [ Upstream
 2026-08-15 10:11 UTC 

[CVE-2026-72084][IMPORTANT] scsi: target: Bound PR-OUT TransportID parsing to the received buffer
 2026-08-15 10:06 UTC 

[CVE-2026-74394][IMPORTANT] RDMA/srpt: fix integer overflow in immediate data length check [ Upstream
 2026-08-15 10:02 UTC 

[CVE-2026-74405][MODERATE 7.0] OPP: Fix race between OPP addition and lookup [ Upstream
 2026-08-15  9:57 UTC 

[CVE-2026-72120][MODERATE 7.0] can: bcm: add missing rcu list annotations and operations commit 7b2c3eabc4dafc062a25e10711154f2107526a78 upstream
 2026-08-15  9:53 UTC 

[CVE-2026-74270][IMPORTANT] handshake: Require admin permission for DONE command [ Upstream
 2026-08-15  9:50 UTC 

[CVE-2026-74339][MODERATE REGULAR] ALSA: seq: Clear variable event pointer on read [ Upstream
 2026-08-15  9:46 UTC 

[CVE-2026-72502][MODERATE 7.0] tcp: ipv6: clamp default adverting MSS to avoid GSO_BY_FRAGS (0xFFFF) [ Upstream
 2026-08-15  9:42 UTC 

[CVE-2026-74391][MODERATE 7.0] tracing: Bound synthetic-field strings with seq_buf [ Upstream
 2026-08-15  9:38 UTC 

[CVE-2026-72304][MODERATE REGULAR] ASoC: SOF: ipc4-control: Fix TOCTOU in sof_ipc4_bytes_put
 2026-08-15  9:34 UTC 

[CVE-2026-74260][MODERATE REGULAR] netfilter: nf_dup_netdev: add nf_dev_xmit_recursion*() helpers and use them [ Upstream
 2026-08-15  9:30 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox