public inbox for [email protected]
 help / color / mirror / Atom feed
This is experimental automated Linux kernel CVE triage research. Results are heuristic and may be incorrect. This site is not an official vendor advisory or severity source.
[CVE-2026-72089][MODERATE 7.0] accel/ivpu: Reject firmware log with size smaller than header commit ddb44baed257560f192b145ed36cf8c0a412de47 upstream
 2026-08-16  5:47 UTC 

[CVE-2026-72260][LOW] ASoC: mediatek: mt8192: Check runtime resume during probe [ Upstream
 2026-08-16  5:45 UTC 

[CVE-2026-72454][MODERATE 7.0] i3c: mipi-i3c-hci: Fix race in i3c_hci_addr_to_dev() [ Upstream
 2026-08-16  5:45 UTC 

[CVE-2026-74281][MODERATE REGULAR] tipc: reject inverted service ranges from peer bindings [ Upstream
 2026-08-16  5:40 UTC 

[CVE-2026-74264][MODERATE 7.0] net: watchdog: fix refcount tracking races [ Upstream
 2026-08-16  5:37 UTC 

[CVE-2026-72386][LOW] drm/panthor: Fix a leak when a group is evicted before the tiler OOM is serviced [ Upstream
 2026-08-16  5:34 UTC 

[CVE-2026-72401][LOW] bpf: Fix insn_aux_data leak on verifier err_free_env path [ Upstream
 2026-08-16  5:34 UTC 

[CVE-2026-72302][MODERATE 7.0] ASoC: SOF: ipc3-control: Use overflow checks in control_update size calc
 2026-08-16  5:32 UTC 

[CVE-2026-68470][IMPORTANT] wifi: mac80211: validate extension-frame layout before RX
 2026-08-16  5:27 UTC 

[CVE-2026-72015][MODERATE REGULAR] fs/resctrl: Fix double-add of pseudo-locked region's RMID to free list [ Upstream
 2026-08-16  5:22 UTC 

[CVE-2026-72496][LOW] RDMA/bnxt_re: Proper rollback if the ioremap fails [ Upstream
 2026-08-16  5:19 UTC 

[CVE-2026-72378][MODERATE REGULAR] afs: Fix error code in afs_extract_vl_addrs() [ Upstream
 2026-08-16  5:16 UTC 

[CVE-2026-72413][MODERATE 7.0] sctp: fix err_chunk memory leaks in INIT handling [ Upstream
 2026-08-16  5:11 UTC 

[CVE-2026-72105][MODERATE REGULAR] dm-log: fix a bitset_size overflow on 32bit machines commit 9743132a41f4d9d0e54c5f2adcb821b04796bab1 upstream
 2026-08-16  5:09 UTC 

[CVE-2026-74366][MODERATE REGULAR] wifi: ath12k: fix NULL deref in change_sta_links for unready link [ Upstream
 2026-08-16  5:06 UTC 

[CVE-2026-72473][MODERATE 7.0] xprtrdma: Decouple req recycling from RPC completion [ Upstream
 2026-08-16  5:03 UTC 

[CVE-2026-72352][MODERATE 7.0] HID: bpf: Fix hid_bpf_get_data() range check [ Upstream
 2026-08-16  4:59 UTC 

[CVE-2026-72307][LOW] mlxsw: fix refcount leak in mlxsw_sp_vrs_lpm_tree_replace()
 2026-08-16  4:54 UTC 

[CVE-2026-74412][MODERATE 7.0] wifi: rtw88: fix wrong pci_get_drvdata type in AER handlers [ Upstream
 2026-08-16  4:51 UTC 

[CVE-2026-72176][MODERATE REGULAR] mm/damon/sysfs-schemes: put stats for scheme_add_dirs() internal error
 2026-08-16  4:47 UTC 

[CVE-2026-74401][MODERATE 7.0] dlm: fix add msg handle in send_queue ordered [ Upstream
 2026-08-16  4:44 UTC 

[CVE-2026-72297][MODERATE REGULAR] net: atm: reject out-of-range traffic classes in QoS validation
 2026-08-16  4:40 UTC 

[CVE-2026-72212][IMPORTANT] mm/memory_hotplug: fix incorrect altmap passing in error path
 2026-08-16  4:36 UTC 

[CVE-2026-74398][MODERATE 7.0] ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD [ Upstream
 2026-08-16  4:33 UTC 

[CVE-2026-74344][MODERATE 7.0] bpf: Clear rb node linkage when freeing bpf_rb_root [ Upstream
 2026-08-16  4:29 UTC 

[CVE-2026-72097][LOW] dm-verity: fix a possible NULL pointer dereference commit e72b793ae440f6900fb17a4b8518c707b5cd3e17 upstream
 2026-08-16  4:26 UTC 

[CVE-2026-74416][LOW] drm/radeon: fix memory leak in radeon_ring_restore() on lock failure [ Upstream
 2026-08-16  4:26 UTC 

[CVE-2026-74355][MODERATE 7.0] iommu/vt-d: Fix RB-tree corruption in probe error path [ Upstream
 2026-08-16  4:20 UTC 

[CVE-2026-72442][MODERATE 7.0] netfilter: flowtable: fix and simplify IP6IP6 tunnel handling [ Upstream
 2026-08-16  4:17 UTC 

[CVE-2026-72391][LOW] net: phy: sfp: free mii_bus in sfp_i2c_mdiobus_destroy [ Upstream
 2026-08-16  4:16 UTC 

[CVE-2026-72039][LOW] bnx2x: fix potential memory leak in bnx2x_alloc_mem_bp()
 2026-08-16  4:16 UTC 

[CVE-2026-74424][LOW] fbcon: fix NULL pointer dereference for a console without vc_data
 2026-08-16  4:12 UTC 

[CVE-2026-74342][MODERATE REGULAR] kernfs: link kn to its parent before the LSM init hook [ Upstream
 2026-08-16  4:09 UTC 

[CVE-2026-72257][LOW] ASoC: qcom: q6apm: fix NULL pointer dereference in graph_callback
 2026-08-16  4:08 UTC 

[CVE-2026-72397][MODERATE REGULAR] hwmon: (pmbus/core) honor vrm_version in pmbus_data2reg_vid() [ Upstream
 2026-08-16  4:08 UTC 

[CVE-2026-72405][MODERATE 7.0] net: udp_tunnel: prevent double queueing in udp_tunnel_nic_device_sync [ Upstream
 2026-08-16  4:05 UTC 

[CVE-2026-72113][MODERATE 7.0] can: bcm: add missing device refcount for CAN filter removal
 2026-08-16  4:01 UTC 

[CVE-2026-74374][LOW] md/raid1,raid10: fix error-path detection with md_cloned_bio() [ Upstream
 2026-08-16  3:57 UTC 

[CVE-2026-72063][LOW] gpio: tegra: do not call pinctrl for GPIO direction [ Upstream
 2026-08-16  3:54 UTC 

[CVE-2026-72389][MODERATE 7.0] bridge: stp: Fix a potential use-after-free when deleting a bridge [ Upstream
 2026-08-16  3:50 UTC 

[CVE-2026-72497][LOW] RDMA/bnxt_re: Add a max slot check for SQ [ Upstream
 2026-08-16  3:46 UTC 

[CVE-2026-72351][MODERATE 7.0] gue: validate REMCSUM private option length [ Upstream
 2026-08-16  3:43 UTC 

[CVE-2026-72152][LOW] tpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat()
 2026-08-16  3:43 UTC 

[CVE-2026-74404][MODERATE 7.0] crypto: ccp - Fix snp_filter_reserved_mem_regions() off-by-one [ Upstream
 2026-08-16  3:40 UTC 

[CVE-2026-72330][MODERATE REGULAR] net/tls: Consume empty data records in tls_sw_read_sock() [ Upstream
 2026-08-16  3:37 UTC 

[CVE-2026-74393][MODERATE REGULAR] drm/syncobj: Fix memory leak in drm_syncobj_find_fence() [ Upstream
 2026-08-16  3:33 UTC 

[CVE-2026-72027][MODERATE 7.0] mm/compaction: handle free_pages_prepare() properly in compaction_free() commit 7da7d599b8a83271c464adfd5ef160202b470570 upstream
 2026-08-16  3:32 UTC 

[CVE-2026-74335][MODERATE REGULAR] bpf: Fix NULL pointer dereference in bpf_task_from_vpid() [ Upstream
 2026-08-16  3:30 UTC 

[CVE-2026-72448][LOW] octeontx2-pf: Fix leak of SQ timestamp buffer on teardown [ Upstream
 2026-08-16  3:28 UTC 

[CVE-2026-72296][MODERATE REGULAR] net: ife: require ETH_HLEN to be pullable in ife_decode()
 2026-08-16  3:25 UTC 

[CVE-2026-74323][MODERATE REGULAR] wifi: mt76: mt7996: Fix possible token leak in mt7996_tx_prepare_skb() [ Upstream
 2026-08-16  3:25 UTC 

[CVE-2026-74304][LOW] Bluetooth: hci_qca: fix NULL pointer dereference in qca_setup() for non-serdev device [ Upstream
 2026-08-16  3:22 UTC 

[CVE-2026-74434][IMPORTANT] rxrpc: Don't move a peeked OOB message onto the pending queue
 2026-08-16  3:22 UTC 

[CVE-2026-72408][MODERATE 7.0] geneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint [ Upstream
 2026-08-16  3:20 UTC 

[CVE-2026-72265][LOW] fbdev: nvidia: fix potential memory leak in nvidiafb_probe()
 2026-08-16  3:19 UTC 

[CVE-2026-72396][LOW] hwmon: adm1275: Prevent reading uninitialized stack [ Upstream
 2026-08-16  3:15 UTC 

[CVE-2026-72010][LOW] cgroup/cpuset: rebind mm mempolicy to effective_mems, not mems_allowed
 2026-08-16  3:11 UTC 

[CVE-2026-72320][IMPORTANT] netfilter: nft_lookup: fix catchall element handling with inverted lookups [ Upstream
 2026-08-16  3:06 UTC 

[CVE-2026-74432][LOW] rxrpc: Fix leak of released call in recvmsg(MSG_PEEK)
 2026-08-16  3:03 UTC 

[CVE-2026-72317][MODERATE 7.0] SUNRPC: pin upper rpc_clnt across the TLS connect_worker [ Upstream
 2026-08-16  3:01 UTC 

[CVE-2026-74291][MODERATE REGULAR] ASoC: topology: Check PCM and DAI name strings before use [ Upstream
 2026-08-16  2:57 UTC 

[CVE-2026-72435][MODERATE REGULAR] netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() [ Upstream
 2026-08-16  2:55 UTC 

[CVE-2026-72289][IMPORTANT] KVM: arm64: vgic: Check the interrupt is still ours before migrating it
 2026-08-16  2:51 UTC 

[CVE-2026-72347][LOW] netfilter: xt_connmark: reject invalid shift parameters [ Upstream
 2026-08-16  2:45 UTC 

[CVE-2026-72007][LOW] pmdomain: imx: Fix i.MX8MP VC8000E power up sequence
 2026-08-16  2:41 UTC 

[CVE-2026-72374][MODERATE REGULAR] afs: Fix callback service message parsers to pass through -EAGAIN [ Upstream
 2026-08-16  2:38 UTC 

[CVE-2026-74371][MODERATE REGULAR] bpf: fix BPF_PROG_QUERY OOB write and cgroup backward compat [ Upstream
 2026-08-16  2:36 UTC 

[CVE-2026-72155][LOW] mtd: spi-nor: swp: Improve locking user experience
 2026-08-16  2:34 UTC 

[CVE-2026-72219][MODERATE 7.0] lockd: Plug nlm_file leak when nlm_do_fopen() fails
 2026-08-16  2:29 UTC 

[CVE-2026-72440][MODERATE REGULAR] md/raid1: fix writes_pending and barrier reference leaks on write failures [ Upstream
 2026-08-16  2:26 UTC 

[CVE-2026-72344][MODERATE REGULAR] net/mlx5e: TC, skip peer flow cleanup when LAG seq is unavailable [ Upstream
 2026-08-16  2:23 UTC 

[CVE-2026-72392][MODERATE REGULAR] ipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump [ Upstream
 2026-08-16  2:23 UTC 

[CVE-2026-72172][MODERATE 7.0] mm/mm_init: fix uninitialized struct pages for ZONE_DEVICE
 2026-08-16  2:19 UTC 

[CVE-2026-72500][MODERATE 7.0] RDMA/bnxt_re: Free SRQ toggle page after firmware teardown [ Upstream
 2026-08-16  2:16 UTC 

[CVE-2026-72115][MODERATE REGULAR] can: bcm: track a single source interface for ANYDEV timeout/throttle ops
 2026-08-16  2:13 UTC 

[CVE-2026-72121][MODERATE REGULAR] can: bcm: add locking when updating filter and timer values commit 749179c2e25b95d22499ed29096b3e02d6dfd2b4 upstream
 2026-08-16  2:09 UTC 

[CVE-2026-72415][MODERATE REGULAR] ASoC: SDCA: Validate written enum value in ge_put_enum_double() [ Upstream
 2026-08-16  2:07 UTC 

[CVE-2026-72056][LOW] net: ena: clean up XDP TX queues when regular TX setup fails
 2026-08-16  2:06 UTC 

[CVE-2026-72451][MODERATE 7.0] xfrm: Fix xfrm state cache insertion race [ Upstream
 2026-08-16  2:02 UTC 

[CVE-2026-74259][MODERATE 7.0] cifs: remove all cifs files before kill super [ Upstream
 2026-08-16  1:59 UTC 

[CVE-2026-72059][LOW] net: wwan: t7xx: destroy DMA pool on CLDMA late init failure commit 2bd6f26d4ce1e87de4d736b1e8896daf3acf1c0e upstream
 2026-08-16  1:57 UTC 

[CVE-2026-72314][LOW] regulator: core: regulator_lock_two() should test for EDEADLK not EDEADLOCK [ Upstream
 2026-08-16  1:57 UTC 

[CVE-2026-72285][MODERATE REGULAR] KVM: TDX: Reject concurrent change to CPUID entry count
 2026-08-16  1:53 UTC 

[CVE-2026-72399][MODERATE 7.0] net: enetc: check the number of BDs needed for xdp_frame [ Upstream
 2026-08-16  1:51 UTC 

[CVE-2026-72069][MODERATE 7.0] locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() [ Upstream
 2026-08-16  1:47 UTC 

[CVE-2026-72117][LOW] can: bcm: fix data race on rx_stamp/rx_ifindex in bcm_rx_handler()
 2026-08-16  1:44 UTC 

[CVE-2026-72108][MODERATE REGULAR] dm thin metadata: fix metadata snapshot consistency on commit failure
 2026-08-16  1:41 UTC 

[CVE-2026-72064][MODERATE REGULAR] net: mana: Sync page pool RX frags for CPU
 2026-08-16  1:37 UTC 

[CVE-2026-72055][MODERATE 7.0] net: ip6_vti: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-16  1:34 UTC 

[CVE-2026-72026][LOW] irqchip/irq-riscv-imsic-early: Fix fwnode leak on state setup failure commit 1358126fbed104e5657955d3ba029b283687ba02 upstream
 2026-08-16  1:30 UTC 

[CVE-2026-72403][LOW] ALSA: FCP: Fix NULL pointer dereference in interface lookup [ Upstream
 2026-08-16  1:28 UTC 

[CVE-2026-72151][MODERATE 7.0] tpm: tpm2-sessions: wait for async KPP completion in tpm_buf_append_salt
 2026-08-16  1:25 UTC 

[CVE-2026-74384][MODERATE 7.0] nvme-multipath: fix flex array size in struct nvme_ns_head [ Upstream
 2026-08-16  1:24 UTC 

[CVE-2026-72282][MODERATE 7.0] KVM: Move kvm_io_bus_get_dev() locking responsibilities to callers
 2026-08-16  1:19 UTC 

[CVE-2026-72146][MODERATE REGULAR] dmaengine: sh: rz-dmac: Move interrupt request after everything is set up
 2026-08-16  1:15 UTC 

[CVE-2026-72247][MODERATE 7.0] netfilter: nf_conncount: fix zone comparison in tuple dedup
 2026-08-16  1:15 UTC 

[CVE-2026-72336][MODERATE REGULAR] Bluetooth: 6lowpan: hold L2CAP conn across debugfs control [ Upstream
 2026-08-16  1:11 UTC 

[CVE-2026-72427][MODERATE 7.0] bpf: Fix effective prog array index with BPF_F_PREORDER [ Upstream
 2026-08-16  1:08 UTC 

[CVE-2026-72483][MODERATE REGULAR] usb: host: max3421: Fix shift-out-of-bounds in max3421_hub_control() [ Upstream commit cff06b03b530ae1fe8a13e93a7848f2130e00fb4 ]
 2026-08-16  1:04 UTC 

[CVE-2026-72221][IMPORTANT] sunrpc: wait for in-flight TLS handshake callback when cancel loses race
 2026-08-16  1:04 UTC 

[CVE-2026-72213][MODERATE REGULAR] mm/hugetlb: fix hugetlb cgroup rsvd charge/uncharge mismatch [ Upstream
 2026-08-16  1:00 UTC 

[CVE-2026-74437][MODERATE REGULAR] media: uvcvideo: Fix deadlock if uvc_status_stop is called from async_ctrl.work [ Upstream
 2026-08-16  0:57 UTC 

[CVE-2026-72368][MODERATE REGULAR] cachefiles: Fix double unlock in nomem_d_alloc error path [ Upstream
 2026-08-16  0:56 UTC 

[CVE-2026-72088][MODERATE REGULAR] scsi: hpsa: Fix DMA mapping leak on IOACCEL2 reset path
 2026-08-16  0:54 UTC 

[CVE-2026-72004][LOW] wifi: mac80211: fix memory leak in ieee80211_register_hw()
 2026-08-16  0:51 UTC 

[CVE-2026-72066][MODERATE 7.0] cpu: hotplug: Bound hotplug states sysfs output
 2026-08-16  0:47 UTC 

[CVE-2026-72361][MODERATE 7.0] drm/xe/hw_engine: Fix double-free of managed BO in error path [ Upstream commit 7ac3cae7a251d28e9079de07a991bd4eb2bb7fd8 ]
 2026-08-16  0:43 UTC 

[CVE-2026-72080][MODERATE 7.0] fs/resctrl: Fix use-after-free during unmount [ Upstream
 2026-08-16  0:41 UTC 

[CVE-2026-72278][LOW] KVM: arm64: nv: Re-translate VNCR before injecting abort
 2026-08-16  0:38 UTC 

[CVE-2026-74400][MODERATE REGULAR] bpf: fix crash in bpf_[set|remove]_dentry_xattr for negative dentries [ Upstream
 2026-08-16  0:36 UTC 

[CVE-2026-74310][IMPORTANT] vhost/net: complete zerocopy ubufs only once [ Upstream
 2026-08-16  0:35 UTC 

[CVE-2026-72364][MODERATE REGULAR] netfs: Fix writeback error handling [ Upstream
 2026-08-16  0:31 UTC 

[CVE-2026-74417][MODERATE 7.0] drm/radeon: fix integer overflow in radeon_align_pitch() [ Upstream
 2026-08-16  0:29 UTC 

[CVE-2026-74378][MODERATE 7.0] RDMA/rxe: Fix TOCTOU heap overflow in get_srq_wqe [ Upstream
 2026-08-16  0:25 UTC 

[CVE-2026-74383][MODERATE 7.0] nvme-pci: fix out-of-bounds access in nvme_setup_descriptor_pools [ Upstream
 2026-08-16  0:21 UTC 

[CVE-2026-74367][LOW] wifi: ath12k: fix inconsistent arvif state in vdev_create error paths [ Upstream
 2026-08-16  0:20 UTC 

[CVE-2026-74373][LOW] md/raid1,raid10: fix bio accounting for split md cloned bios [ Upstream
 2026-08-16  0:17 UTC 

[CVE-2026-72417][MODERATE 7.0] netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() [ Upstream
 2026-08-16  0:14 UTC 

[CVE-2026-72261][MODERATE 7.0] ASoC: SOF: ipc3-control: Validate size in snd_sof_update_control
 2026-08-16  0:12 UTC 

[CVE-2026-72390][MODERATE 7.0] net/sched: sch_teql: Introduce slaves_lock to avoid race condition and UAF [ Upstream
 2026-08-16  0:08 UTC 

[CVE-2026-74395][MODERATE 7.0] RDMA/mlx5: Fix devx subscribe-event unwind NULL dereference [ Upstream
 2026-08-16  0:05 UTC 

[CVE-2026-72067][LOW] cpu: hotplug: Preserve per instance callback errors
 2026-08-16  0:00 UTC 

[CVE-2026-74334][MODERATE 7.0] RDMA/nldev: Fix locking when accessing mr->pd [ Upstream
 2026-08-15 23:57 UTC 

[CVE-2026-72416][MODERATE REGULAR] netfilter: nft_compat: ebtables emulation must reject non-bridge targets [ Upstream
 2026-08-15 23:53 UTC 

[CVE-2026-72299][MODERATE 7.0] tipc: restrict socket queue dumps in enqueue tracepoints [ Upstream
 2026-08-15 23:50 UTC 

[CVE-2026-74419][LOW] accel/amdxdna: Adjust size for copy_to_user() [ Upstream
 2026-08-15 23:46 UTC 

[CVE-2026-72006][LOW] net/mlx5: free mlx5_st_idx_data on final dealloc commit df6134b527a88b3e65ba6ae5073664af091d5fd2 upstream
 2026-08-15 23:46 UTC 

[CVE-2026-72250][MODERATE REGULAR] netfilter: nf_conntrack_reasm: guard mac_header adjustment after IPv6 defrag
 2026-08-15 23:46 UTC 

[CVE-2026-72092][MODERATE REGULAR] accel/amdxdna: reject command submission on devices without a submit op [ Upstream commit 38953513d7313992676d4136cd425cdb70c6278e ]
 2026-08-15 23:41 UTC 

[CVE-2026-74352][MODERATE 7.0] of: reserved_mem: avoid post-init UAF when alloc_reserved_mem_array() fails
 2026-08-15 23:41 UTC 

[CVE-2026-72095][MODERATE 7.0] dma-fence: Make dma_fence_dedup_array() robust against 0-count input commit 77a9298741f8f9e8b963c977f5582ab21c6d3427 upstream
 2026-08-15 23:40 UTC 

[CVE-2026-72382][MODERATE 7.0] ksmbd: reject undersized DACLs before parsing ACEs [ Upstream
 2026-08-15 23:38 UTC 

[CVE-2026-72329][MODERATE 7.0] net/liquidio: drop cached VF pci_dev LUT [ Upstream
 2026-08-15 23:38 UTC 

[CVE-2026-72476][MODERATE 7.0] dmaengine: Fix possible use after free [ Upstream
 2026-08-15 23:35 UTC 

[CVE-2026-74284][LOW] net/sched: sch_hfsc: Don't make class passive twice [ Upstream
 2026-08-15 23:30 UTC 

[CVE-2026-74290][MODERATE 7.0] net/sched: cls_flow: Dont expose folded kernel pointers [ Upstream
 2026-08-15 23:24 UTC 

[CVE-2026-74407][MODERATE 7.0] wifi: ath11k: cancel SSR work items during PCI shutdown [ Upstream
 2026-08-15 23:20 UTC 

[CVE-2026-72342][MODERATE 7.0] net/mlx5e: Fix HV VHCA stats agent registration race [ Upstream
 2026-08-15 23:17 UTC 

[CVE-2026-74356][MODERATE 7.0] vhost: fix vhost_get_avail_idx for a non empty ring [ Upstream
 2026-08-15 23:17 UTC 

[CVE-2026-74306][MODERATE 7.0] vfio/qat: fix f_pos race in qat_vf_resume_write() [ Upstream
 2026-08-15 23:12 UTC 

[CVE-2026-74455][MODERATE REGULAR] can: peak_usb: validate uCAN receive record lengths
 2026-08-15 23:12 UTC 

[CVE-2026-74501][MODERATE 7.0] ALSA: usb-audio: fix use-after-free in ump_to_endpoint()
 2026-08-15 23:08 UTC 

[CVE-2026-74360][MODERATE 7.0] bpf: Reject exclusive maps for bpf_map_elem iterators [ Upstream
 2026-08-15 23:03 UTC 

[CVE-2026-74474][MODERATE 7.0] vxlan: use pskb_network_may_pull() for transmit path header pulls
 2026-08-15 23:01 UTC 

[CVE-2026-72252][MODERATE 7.0] netfilter: nft_set_pipapo: don't leak bad clone into future transaction [ Upstream
 2026-08-15 22:58 UTC 

[CVE-2026-74541][MODERATE 7.0] Bluetooth: ISO: clear iso_data always when detaching conn from hcon [ Upstream
 2026-08-15 22:54 UTC 

[CVE-2026-74515][LOW] KVM: s390: pci: Reject adapter interrupt forwarding if already enabled
 2026-08-15 22:50 UTC 

[CVE-2026-74531][MODERATE REGULAR] Bluetooth: hci_conn: hold conn reference in abort_conn_sync() [ Upstream
 2026-08-15 22:45 UTC 

[CVE-2026-74456][MODERATE 7.0] can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error
 2026-08-15 22:42 UTC 

[CVE-2026-72341][MODERATE REGULAR] net/mlx5e: Fix publication race for priv->channel_stats[] [ Upstream
 2026-08-15 22:38 UTC 

[CVE-2026-74497][MODERATE 7.0] ALSA: usb-audio: Clamp frame size in implicit-feedback mode
 2026-08-15 22:38 UTC 

[CVE-2026-74330][MODERATE 7.0] configfs: fix lockless traversals of ->s_children [ Upstream
 2026-08-15 22:34 UTC 

[CVE-2026-74476][IMPORTANT] veth: convert frag_list skbs before running XDP
 2026-08-15 22:30 UTC 

[CVE-2026-72136][MODERATE 7.0] xfrm: xfrm_interface: require CAP_NET_ADMIN in the device netns for changelink
 2026-08-15 22:26 UTC 

[CVE-2026-74484][MODERATE REGULAR] binfmt_misc: don't let an 'F' entry pin its own instance
 2026-08-15 22:22 UTC 

[CVE-2026-74565][MODERATE 7.0] netfilter: nf_tables: make nft_object rhltable per table [ Upstream
 2026-08-15 22:18 UTC 

[CVE-2026-72116][MODERATE REGULAR] can: bcm: fix stale rx/tx ops after device removal
 2026-08-15 22:14 UTC 

[CVE-2026-74568][MODERATE 7.0] KVM: arm64: vgic: Fix race between LPI release and re-registration [ Upstream
 2026-08-15 22:10 UTC 

[CVE-2026-72379][MODERATE 7.0] fs: refuse O_TMPFILE creation with an unmapped fsuid or fsgid [ Upstream
 2026-08-15 22:07 UTC 

[CVE-2026-74486][LOW] binfmt_misc: use exe_file_deny_write_access() for the interpreter clone
 2026-08-15 22:03 UTC 

[CVE-2026-72465][MODERATE 7.0] xprtrdma: Sanitize the reply credit grant after parsing [ Upstream
 2026-08-15 22:01 UTC 

[CVE-2026-74512][MODERATE 7.0] audit: fix potential use-after-free in audit_del_rule()
 2026-08-15 21:59 UTC 

[CVE-2026-72327][LOW] drm/v3d: Reject invalid indirect BO handle in indirect CSD setup [ Upstream commit 2f8b8593c7832fad655290cef9e99af05b1b52b3 ]
 2026-08-15 21:56 UTC 

[CVE-2026-74527][MODERATE 7.0] octeontx2-af: Block VFs from clobbering special CGX PKIND state [ Upstream
 2026-08-15 21:56 UTC 

[CVE-2026-74567][MODERATE REGULAR] keys: fix out-of-bounds read in keyring_get_key_chunk() [ Upstream
 2026-08-15 21:52 UTC 

[CVE-2026-74458][MODERATE 7.0] can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents
 2026-08-15 21:48 UTC 

[CVE-2026-72372][MODERATE 7.0] afs: Fix lack of locking around modifications of net->cells_dyn_ino [ Upstream
 2026-08-15 21:44 UTC 

[CVE-2026-74470][MODERATE 7.0] scsi: scsi_debug: Fix REPORT ZONES alloc_len underflow OOB write
 2026-08-15 21:43 UTC 

[CVE-2026-74441][MODERATE 7.0] usb: typec: ucsi: Fix race condition and ordering in port unregistration [ Upstream
 2026-08-15 21:37 UTC 

[CVE-2026-74316][MODERATE REGULAR] NFSD: Handle layout stid in nfsd4_drop_revoked_stid() [ Upstream
 2026-08-15 21:34 UTC 

[CVE-2026-74504][MODERATE REGULAR] ALSA: seq: Fix division by zero in initialize_timer()
 2026-08-15 21:31 UTC 

[CVE-2026-72292][MODERATE REGULAR] KVM: s390: Initialize KVM_S390_GET_CMMA_BITS memory
 2026-08-15 21:28 UTC 

[CVE-2026-74472][MODERATE 7.0] ublk: reset kernel-owned dev_info fields in ublk_ctrl_add_dev()
 2026-08-15 21:26 UTC 

[CVE-2026-74359][IMPORTANT] configfs_lookup(): don't leave ->s_dentry dangling on failure [ Upstream
 2026-08-15 21:24 UTC 

[CVE-2026-72137][IMPORTANT] xfrm: nat_keepalive: avoid double free on send error [ Upstream
 2026-08-15 21:20 UTC 

[CVE-2026-74503][IMPORTANT] ALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes commit c2744d5f3aea474513fd2298daecb94a952ce441 upstream
 2026-08-15 21:17 UTC 

[CVE-2026-72487][MODERATE REGULAR] PCI: Check ROM header and data structure addr before accessing [ Upstream
 2026-08-15 21:15 UTC 

[CVE-2026-74517][MODERATE 7.0] KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs
 2026-08-15 21:11 UTC 

[CVE-2026-74381][MODERATE REGULAR] gpu: host1x: Allow entries in BO caches to be freed [ Upstream
 2026-08-15 21:07 UTC 

[CVE-2026-74535][MODERATE 7.0] Bluetooth: ISO: avoid deadlocks in iso_sock_timeout [ Upstream
 2026-08-15 21:04 UTC 

[CVE-2026-74423][LOW] accel/amdxdna: Fix leak when pinning ubuf pages [ Upstream
 2026-08-15 21:01 UTC 

[CVE-2026-72277][MODERATE REGULAR] KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory commit 4bd7dbe0b2243e6aa735cae4d5e1ff988b30b2a6 upstream
 2026-08-15 21:01 UTC 

[CVE-2026-74485][MODERATE REGULAR] binfmt_misc: reject a flag character as the field delimiter
 2026-08-15 20:59 UTC 

[CVE-2026-74324][MODERATE REGULAR] wifi: mt76: mt7925: validate skb length in testmode query [ Upstream
 2026-08-15 20:55 UTC 

[CVE-2026-74574][IMPORTANT] dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() [ Upstream
 2026-08-15 20:55 UTC 

[CVE-2026-72216][LOW] remoteproc: qcom: Fix leak when custom dump_segments addition fails
 2026-08-15 20:52 UTC 

[CVE-2026-72276][LOW] fbdev: metronomefb: fix potential memory leak in metronomefb_probe()
 2026-08-15 20:48 UTC 

[CVE-2026-74315][MODERATE 7.0] lockd: Avoid hashing uninitialized bytes in nlm4svc_lookup_file() [ Upstream
 2026-08-15 20:48 UTC 

[CVE-2026-74507][MODERATE REGULAR] Bluetooth: HIDP: validate numbered report payloads
 2026-08-15 20:47 UTC 

[CVE-2026-74331][LOW] firmware_loader: Fix recursive lock in device_cache_fw_images() [ Upstream
 2026-08-15 20:43 UTC 

[CVE-2026-74552][MODERATE REGULAR] hwmon: (lm90) Only report alarms if driver is ready [ Upstream
 2026-08-15 20:40 UTC 

[CVE-2026-74278][MODERATE REGULAR] ALSA: seq: Fix kernel heap address leak in bounce_error_event() [ Upstream
 2026-08-15 20:37 UTC 

[CVE-2026-74571][LOW] btrfs: skip global block reserve accounting for rescue mounts [ Upstream
 2026-08-15 20:34 UTC 

[CVE-2026-72174][LOW] fs/proc/task_mmu: fix hugetlb self-deadlock in pagemap_scan_pte_hole()
 2026-08-15 20:32 UTC 

[CVE-2026-74540][MODERATE 7.0] Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp [ Upstream
 2026-08-15 20:30 UTC 

[CVE-2026-72498][MODERATE REGULAR] RDMA/bnxt_re: Avoid displaying the kernel pointer [ Upstream
 2026-08-15 20:27 UTC 

[CVE-2026-74471][MODERATE 7.0] tracing: Check return value of __register_event() in trace_module_add_events()
 2026-08-15 20:24 UTC 

[CVE-2026-68472][MODERATE 7.0] wifi: cfg80211: validate EHT MLE before MLD ID read
 2026-08-15 20:20 UTC 

[CVE-2026-74534][MODERATE 7.0] Bluetooth: ISO: fix refcounting of iso_conn [ Upstream
 2026-08-15 20:16 UTC 

[CVE-2026-74467][MODERATE 7.0] s390/qeth: Check CAP_NET_ADMIN for private ioctls
 2026-08-15 20:13 UTC 

page:  |  | latest

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox