org.kernel.vger.linux-cve-announce archive

599 archived articles, newest first (page 1 of 6). Latest articles →

CVE-2026-74714: bpf: tcp: Fix use-after-free in bpf_iter_tcp_established_batch()
Sat, 22 Aug 2026 17:33:18 +0200
Greg Kroah-Hartman <[email protected]> • #15527
CVE-2026-74723: btrfs: lzo: reject inline extents without valid headers
Sat, 22 Aug 2026 17:33:27 +0200
Greg Kroah-Hartman <[email protected]> • #15526
CVE-2026-74722: btrfs: fix memory leak in btrfs_do_encoded_write()
Sat, 22 Aug 2026 17:33:26 +0200
Greg Kroah-Hartman <[email protected]> • #15525
CVE-2026-74721: accel/amxdna: Fix page-insertion errors in amdxdna_insert_pages()
Sat, 22 Aug 2026 17:33:25 +0200
Greg Kroah-Hartman <[email protected]> • #15524
CVE-2026-74720: bpf: Preserve pointer state for commuted arithmetic
Sat, 22 Aug 2026 17:33:24 +0200
Greg Kroah-Hartman <[email protected]> • #15523
CVE-2026-74719: net/smc: fix qentry overwrite for CONFIRM_LINK and ADD_LINK_CONT in smc_llc_event_handler()
Sat, 22 Aug 2026 17:33:23 +0200
Greg Kroah-Hartman <[email protected]> • #15522
CVE-2026-74718: devlink: fix net namespace reference leak in reload
Sat, 22 Aug 2026 17:33:22 +0200
Greg Kroah-Hartman <[email protected]> • #15521
CVE-2026-74717: net/mlx5: fw_tracer, return NULL on create error
Sat, 22 Aug 2026 17:33:21 +0200
Greg Kroah-Hartman <[email protected]> • #15520
CVE-2026-74716: accel/amdxdna: Fix locally exploitable BUG_ON in amdxdna_insert_pages()
Sat, 22 Aug 2026 17:33:20 +0200
Greg Kroah-Hartman <[email protected]> • #15519
CVE-2026-74733: gpio: pca953x: fix pca953x_irq_bus_sync_unlock regmap lock
Sat, 22 Aug 2026 17:33:37 +0200
Greg Kroah-Hartman <[email protected]> • #15518
CVE-2026-74732: drm/amd/display: Check for tg ops in dce110_set_avmute
Sat, 22 Aug 2026 17:33:36 +0200
Greg Kroah-Hartman <[email protected]> • #15517
CVE-2026-74731: sched_ext: Skip sub-disable teardown for never-linked sub-schedulers
Sat, 22 Aug 2026 17:33:35 +0200
Greg Kroah-Hartman <[email protected]> • #15516
CVE-2026-74730: NFS: Pin the 'struct nfs_server' during a FREE_STATEID call
Sat, 22 Aug 2026 17:33:34 +0200
Greg Kroah-Hartman <[email protected]> • #15515
CVE-2026-74729: soc: aspeed: lpc-snoop: Fix usercopy overflow in snoop_file_read
Sat, 22 Aug 2026 17:33:33 +0200
Greg Kroah-Hartman <[email protected]> • #15514
CVE-2026-74728: xfs: handle NULL b_addr in xfs_buf_free
Sat, 22 Aug 2026 17:33:32 +0200
Greg Kroah-Hartman <[email protected]> • #15513
CVE-2026-74727: ovpn: skip rehash for peers already removed from by_id
Sat, 22 Aug 2026 17:33:31 +0200
Greg Kroah-Hartman <[email protected]> • #15512
CVE-2026-74726: bonding: alb: re-check primary_is_promisc under RTNL in bond_alb_monitor
Sat, 22 Aug 2026 17:33:30 +0200
Greg Kroah-Hartman <[email protected]> • #15511
CVE-2026-74725: enic: fix tx_hang_reset use-after-free on device removal
Sat, 22 Aug 2026 17:33:29 +0200
Greg Kroah-Hartman <[email protected]> • #15510
CVE-2026-74724: ipvs: avoid out-of-bounds write in ip_vs_nat_icmp
Sat, 22 Aug 2026 17:33:28 +0200
Greg Kroah-Hartman <[email protected]> • #15509
CVE-2026-74715: bpf: Fix netns reference imbalance in conntrack kfuncs
Sat, 22 Aug 2026 17:33:19 +0200
Greg Kroah-Hartman <[email protected]> • #15508
CVE-2026-74681: usb: misc: usbio: check ibuf_len against rxbuf_len in bulk msg
Sat, 22 Aug 2026 17:32:45 +0200
Greg Kroah-Hartman <[email protected]> • #15507
CVE-2026-74690: s390/ism: Fix UAF of sba and ieq during ism_dev_exit()
Sat, 22 Aug 2026 17:32:54 +0200
Greg Kroah-Hartman <[email protected]> • #15506
CVE-2026-74689: net/atm: fix slab-out-of-bounds read in vcc_setsockopt()
Sat, 22 Aug 2026 17:32:53 +0200
Greg Kroah-Hartman <[email protected]> • #15505
CVE-2026-74688: sctp: clear control chunk transport if it is being removed
Sat, 22 Aug 2026 17:32:52 +0200
Greg Kroah-Hartman <[email protected]> • #15504
CVE-2026-74687: watchdog: at91sam9_wdt: prevent timer rearm during teardown
Sat, 22 Aug 2026 17:32:51 +0200
Greg Kroah-Hartman <[email protected]> • #15503
CVE-2026-74686: rqspinlock: Reset tail when preserving queue on deadlock
Sat, 22 Aug 2026 17:32:50 +0200
Greg Kroah-Hartman <[email protected]> • #15502
CVE-2026-74685: hwmon: (ltc4282) Clamp negative current limits
Sat, 22 Aug 2026 17:32:49 +0200
Greg Kroah-Hartman <[email protected]> • #15501
CVE-2026-74713: vhost_iotlb: bound map allocation in add_range
Sat, 22 Aug 2026 17:33:17 +0200
Greg Kroah-Hartman <[email protected]> • #15500
CVE-2026-74712: vdpa/mlx5: Fix buffer length in create_direct_keys()
Sat, 22 Aug 2026 17:33:16 +0200
Greg Kroah-Hartman <[email protected]> • #15499
CVE-2026-74711: hwmon: (pmbus) Fix type confusion in notification logic
Sat, 22 Aug 2026 17:33:15 +0200
Greg Kroah-Hartman <[email protected]> • #15498
CVE-2026-74684: net: tap: set skb->dev before parsing virtio net header in tap_get_user_xdp()
Sat, 22 Aug 2026 17:32:48 +0200
Greg Kroah-Hartman <[email protected]> • #15497
CVE-2026-74710: xsk: require at least 16 bytes of TX metadata
Sat, 22 Aug 2026 17:33:14 +0200
Greg Kroah-Hartman <[email protected]> • #15496
CVE-2026-74709: xsk: clear metadata pointer when no timestamp is requested
Sat, 22 Aug 2026 17:33:13 +0200
Greg Kroah-Hartman <[email protected]> • #15495
CVE-2026-74708: xsk: validate launch-time metadata size
Sat, 22 Aug 2026 17:33:12 +0200
Greg Kroah-Hartman <[email protected]> • #15494
CVE-2026-74707: xsk: validate metadata when processing requests
Sat, 22 Aug 2026 17:33:11 +0200
Greg Kroah-Hartman <[email protected]> • #15493
CVE-2026-74706: bnge: Fix NULL pointer dereference in aux device release
Sat, 22 Aug 2026 17:33:10 +0200
Greg Kroah-Hartman <[email protected]> • #15492
CVE-2026-74705: udp: fix potential use-after-free in tunnel segmentation
Sat, 22 Aug 2026 17:33:09 +0200
Greg Kroah-Hartman <[email protected]> • #15491
CVE-2026-74704: net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter
Sat, 22 Aug 2026 17:33:08 +0200
Greg Kroah-Hartman <[email protected]> • #15490
CVE-2026-74703: vhost-scsi: Validate T10 PI scatterlist counts
Sat, 22 Aug 2026 17:33:07 +0200
Greg Kroah-Hartman <[email protected]> • #15489
CVE-2026-74702: vhost-scsi: reject feature changes after endpoint
Sat, 22 Aug 2026 17:33:06 +0200
Greg Kroah-Hartman <[email protected]> • #15488
CVE-2026-74701: net/openvswitch: check Ethernet header length in key_extract()
Sat, 22 Aug 2026 17:33:05 +0200
Greg Kroah-Hartman <[email protected]> • #15487
CVE-2026-74683: Input: evdev - sanitize event type index when fetching event masks
Sat, 22 Aug 2026 17:32:47 +0200
Greg Kroah-Hartman <[email protected]> • #15486
CVE-2026-74700: net/sched: cls_api: Always acquire rtnl_lock when destroying locked classifiers
Sat, 22 Aug 2026 17:33:04 +0200
Greg Kroah-Hartman <[email protected]> • #15485
CVE-2026-74699: drm/xe: Fix memory leak in exec_queue_set_hang_replay_state()
Sat, 22 Aug 2026 17:33:03 +0200
Greg Kroah-Hartman <[email protected]> • #15484
CVE-2026-74698: net/mlx5e: fix BQL reset on SQ re-activation
Sat, 22 Aug 2026 17:33:02 +0200
Greg Kroah-Hartman <[email protected]> • #15483
CVE-2026-74697: bnxt_en: Disable EOP for TPA on all chips to prevent data corruption
Sat, 22 Aug 2026 17:33:01 +0200
Greg Kroah-Hartman <[email protected]> • #15482
CVE-2026-74696: tcp: fix TFO max_qlen accounting across reuseport migration
Sat, 22 Aug 2026 17:33:00 +0200
Greg Kroah-Hartman <[email protected]> • #15481
CVE-2026-74695: netfilter: nf_flow_table: drop existing skb dst before skb_dst_set_noref()
Sat, 22 Aug 2026 17:32:59 +0200
Greg Kroah-Hartman <[email protected]> • #15480
CVE-2026-74694: net/ncsi: fix heap OOB read in NCSI_CMD_SEND_CMD payload length
Sat, 22 Aug 2026 17:32:58 +0200
Greg Kroah-Hartman <[email protected]> • #15479
CVE-2026-74693: net: prestera: validate firmware header length
Sat, 22 Aug 2026 17:32:57 +0200
Greg Kroah-Hartman <[email protected]> • #15478
CVE-2026-74692: net/smc: fix TOCTOU race between smc_listen_out() and listener close
Sat, 22 Aug 2026 17:32:56 +0200
Greg Kroah-Hartman <[email protected]> • #15477
CVE-2026-74691: net: thunderbolt: Tear down DMA paths before stopping the rings
Sat, 22 Aug 2026 17:32:55 +0200
Greg Kroah-Hartman <[email protected]> • #15476
CVE-2026-74682: ALSA: usb-audio: fix OOB write on Type II inbound URBs
Sat, 22 Aug 2026 17:32:46 +0200
Greg Kroah-Hartman <[email protected]> • #15475
CVE-2026-74649: staging: rtl8723bs: fix missing shared-key auth challenge length check
Sat, 22 Aug 2026 17:32:13 +0200
Greg Kroah-Hartman <[email protected]> • #15474
CVE-2026-74658: futex: Prevent robust futex exit race some more
Sat, 22 Aug 2026 17:32:22 +0200
Greg Kroah-Hartman <[email protected]> • #15473
CVE-2026-74657: ipv4: Fix fib_nlmsg_size() for RTA_VIA nexthops
Sat, 22 Aug 2026 17:32:21 +0200
Greg Kroah-Hartman <[email protected]> • #15472
CVE-2026-74656: ipv4: fix use-after-free in fib_nhc_update_mtu()
Sat, 22 Aug 2026 17:32:20 +0200
Greg Kroah-Hartman <[email protected]> • #15471
CVE-2026-74654: serial: 8250_dma: Clear stale RX state on shutdown
Sat, 22 Aug 2026 17:32:18 +0200
Greg Kroah-Hartman <[email protected]> • #15470
CVE-2026-74655: serial: qcom-geni: fix TX DMA buffer flush
Sat, 22 Aug 2026 17:32:19 +0200
Greg Kroah-Hartman <[email protected]> • #15469
CVE-2026-74653: serial: 8250_of: clear stuck empty-FIFO RX-timeout on LPC32xx
Sat, 22 Aug 2026 17:32:17 +0200
Greg Kroah-Hartman <[email protected]> • #15468
CVE-2026-74680: usb: atm: cxacru: properly kill rcv_urb on error in cxacru_cm()
Sat, 22 Aug 2026 17:32:44 +0200
Greg Kroah-Hartman <[email protected]> • #15467
CVE-2026-74583: net/sched: cls_route: fix fastmap use-after-free on filter
Fri, 21 Aug 2026 18:32:02 +0200
Greg Kroah-Hartman <[email protected]> • #15377
CVE-2026-74582: packet: use consistent hard_header_len in non-ring send paths
Fri, 21 Aug 2026 18:32:01 +0200
Greg Kroah-Hartman <[email protected]> • #15376
CVE-2026-74580: vhost: reset the vring metadata cache on vring reconfiguration
Fri, 21 Aug 2026 18:31:59 +0200
Greg Kroah-Hartman <[email protected]> • #15375
CVE-2026-74581: net: ipv6: clear suppressed fib6 rule result
Fri, 21 Aug 2026 18:32:00 +0200
Greg Kroah-Hartman <[email protected]> • #15374
REJECTED: CVE-2026-74511: Bluetooth: mgmt: fix pending command UAF in EIR updates
Wed, 19 Aug 2026 14:48:45 +0200
Greg Kroah-Hartman <[email protected]> • #15373
REJECTED: CVE-2026-64158: netfs: Fix write streaming disablement if fd open O_RDWR
Wed, 19 Aug 2026 08:56:37 +0200
Greg Kroah-Hartman <[email protected]> • #15372
REJECTED: CVE-2026-72044: ksmbd: fix stack buffer overflow in multichannel session-key copy
Mon, 17 Aug 2026 07:30:15 +0200
Greg Kroah-Hartman <[email protected]> • #15371
REJECTED: CVE-2026-72246: netfilter: flowtable: use correct direction to set up tunnel route
Mon, 17 Aug 2026 07:29:57 +0200
Greg Kroah-Hartman <[email protected]> • #15370
REJECTED: CVE-2026-68101: drm/amdgpu: fix check in amdgpu_hmm_invalidate_gfx
Mon, 17 Aug 2026 07:29:25 +0200
Greg Kroah-Hartman <[email protected]> • #15369
CVE-2026-74579: netfilter: nft_payload: fix mask build for partial field offload
Mon, 17 Aug 2026 07:26:58 +0200
Greg Kroah-Hartman <[email protected]> • #15368
CVE-2026-74578: crypto: algif_skcipher - force synchronous processing on trees without ctx->state
Sun, 16 Aug 2026 10:19:02 +0200
Greg Kroah-Hartman <[email protected]> • #15367
REJECTED: CVE-2022-48877: f2fs: let's avoid panic if extent_tree is not created
Sat, 15 Aug 2026 21:30:45 +0900
Greg Kroah-Hartman <[email protected]> • #15366
CVE-2026-74546: hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read
Sat, 15 Aug 2026 21:27:07 +0900
Greg Kroah-Hartman <[email protected]> • #15365
CVE-2026-74555: scsi: libsas: Fix HA resume deadlock and hisi_sas disk-wake race
Sat, 15 Aug 2026 21:27:16 +0900
Greg Kroah-Hartman <[email protected]> • #15364
CVE-2026-74554: wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup()
Sat, 15 Aug 2026 21:27:15 +0900
Greg Kroah-Hartman <[email protected]> • #15363
CVE-2026-74553: hwmon: (nct6775-core) Fix number of temperature registers for NCT6116
Sat, 15 Aug 2026 21:27:14 +0900
Greg Kroah-Hartman <[email protected]> • #15362
CVE-2026-74552: hwmon: (lm90) Only report alarms if driver is ready
Sat, 15 Aug 2026 21:27:13 +0900
Greg Kroah-Hartman <[email protected]> • #15361
CVE-2026-74551: hwmon: (nzxt-smart2) DMA-align output buffer
Sat, 15 Aug 2026 21:27:12 +0900
Greg Kroah-Hartman <[email protected]> • #15360
CVE-2026-74550: net: do not send ICMP/NDISC Redirects when peer allocation fails
Sat, 15 Aug 2026 21:27:11 +0900
Greg Kroah-Hartman <[email protected]> • #15359
CVE-2026-74577: net: mpls: initialize rtm_tos in mpls_getroute()
Sat, 15 Aug 2026 21:27:38 +0900
Greg Kroah-Hartman <[email protected]> • #15358
CVE-2026-74576: mm/slab: prevent unbounded recursion in free path with new kmalloc type
Sat, 15 Aug 2026 21:27:37 +0900
Greg Kroah-Hartman <[email protected]> • #15357
CVE-2026-74549: hwmon: (nct6775-core) Prevent access to unsupported weight registers
Sat, 15 Aug 2026 21:27:10 +0900
Greg Kroah-Hartman <[email protected]> • #15356
CVE-2026-74575: thunderbolt: Prevent XDomain delayed work use-after-free on disconnect
Sat, 15 Aug 2026 21:27:36 +0900
Greg Kroah-Hartman <[email protected]> • #15355
CVE-2026-74574: dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open()
Sat, 15 Aug 2026 21:27:35 +0900
Greg Kroah-Hartman <[email protected]> • #15354
CVE-2026-74573: iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE
Sat, 15 Aug 2026 21:27:34 +0900
Greg Kroah-Hartman <[email protected]> • #15353
CVE-2026-74572: btrfs: zoned: fix deadlock between metadata writeback and transaction commit
Sat, 15 Aug 2026 21:27:33 +0900
Greg Kroah-Hartman <[email protected]> • #15352
CVE-2026-74571: btrfs: skip global block reserve accounting for rescue mounts
Sat, 15 Aug 2026 21:27:32 +0900
Greg Kroah-Hartman <[email protected]> • #15351
CVE-2026-74570: ntfs: harden runlist realloc size calculations
Sat, 15 Aug 2026 21:27:31 +0900
Greg Kroah-Hartman <[email protected]> • #15350
CVE-2026-74569: netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp()
Sat, 15 Aug 2026 21:27:30 +0900
Greg Kroah-Hartman <[email protected]> • #15349
CVE-2026-74568: KVM: arm64: vgic: Fix race between LPI release and re-registration
Sat, 15 Aug 2026 21:27:29 +0900
Greg Kroah-Hartman <[email protected]> • #15348
CVE-2026-74567: keys: fix out-of-bounds read in keyring_get_key_chunk()
Sat, 15 Aug 2026 21:27:28 +0900
Greg Kroah-Hartman <[email protected]> • #15347
CVE-2026-74566: keys: make keyring key-chunk byte order agree with keyring_diff_objects()
Sat, 15 Aug 2026 21:27:27 +0900
Greg Kroah-Hartman <[email protected]> • #15346
CVE-2026-74548: forcedeth: fix UAF of txrx_stats in nv_remove
Sat, 15 Aug 2026 21:27:09 +0900
Greg Kroah-Hartman <[email protected]> • #15345
CVE-2026-74565: netfilter: nf_tables: make nft_object rhltable per table
Sat, 15 Aug 2026 21:27:26 +0900
Greg Kroah-Hartman <[email protected]> • #15344
CVE-2026-74564: netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH
Sat, 15 Aug 2026 21:27:25 +0900
Greg Kroah-Hartman <[email protected]> • #15343
CVE-2026-74563: rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check()
Sat, 15 Aug 2026 21:27:24 +0900
Greg Kroah-Hartman <[email protected]> • #15342
CVE-2026-74562: nexthop: take nh->lock for f6i_list walks in replace check and notify
Sat, 15 Aug 2026 21:27:23 +0900
Greg Kroah-Hartman <[email protected]> • #15341
CVE-2026-74561: nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush
Sat, 15 Aug 2026 21:27:22 +0900
Greg Kroah-Hartman <[email protected]> • #15340
CVE-2026-74560: xsk: fix buffer leak in xsk_drop_skb() for AF_XDP multi-buffer Tx
Sat, 15 Aug 2026 21:27:21 +0900
Greg Kroah-Hartman <[email protected]> • #15339
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.