org.kernel.vger.linux-cve-announce archive
604 archived articles, newest first (page 3 of 7). Latest articles →
CVE-2026-68390: Bluetooth: hci_sync: hold hdev->lock for hci_conn_params lookups
Mon, 10 Aug 2026 14:01:47 +0200CVE-2026-68389: Bluetooth: hci_qca: Clear memdump state on invalid dump size
Mon, 10 Aug 2026 14:01:46 +0200CVE-2026-68388: smb/client: handle overlapping allocated ranges in fallocate
Mon, 10 Aug 2026 14:01:45 +0200CVE-2026-68387: can: raw: add locking for raw flags bitfield
Mon, 10 Aug 2026 14:01:44 +0200CVE-2026-68386: bpf, sockmap: Reject unhashed UDP sockets on sockmap update
Mon, 10 Aug 2026 14:01:43 +0200CVE-2026-68385: s390/checksum: Fix csum_partial() without vector facility
Mon, 10 Aug 2026 14:01:42 +0200CVE-2026-68384: drm/xe/vf: Fix VF CCS attach/detach race with in-flight BO moves
Mon, 10 Aug 2026 14:01:41 +0200CVE-2026-68357: watchdog: pretimeout: Fix UAF in watchdog_unregister_governor()
Mon, 10 Aug 2026 14:01:14 +0200CVE-2026-68081: KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state
Sat, 8 Aug 2026 11:17:33 +0200CVE-2026-68082: libceph: fix two unsafe bare decodes in decode_lockers()
Sat, 8 Aug 2026 11:17:34 +0200CVE-2026-68480: x86/bugs: Make Safe-RET robust against interrupt injection
Thu, 6 Aug 2026 19:36:32 +0200CVE-2026-64597: smb: client: fix double-free in SMB2_close() replay
Thu, 6 Aug 2026 09:14:00 +0200CVE-2026-64596: libfs: set SB_I_NOEXEC and SB_I_NODEV by default in init_pseudo()
Thu, 6 Aug 2026 09:13:59 +0200CVE-2026-64595: HID: hid-lenovo-go: cancel cfg_setup work in hid_go_cfg_remove()
Thu, 6 Aug 2026 09:13:58 +0200CVE-2026-64594: usb: gadget: f_fs: initialize reset_work at allocation time
Thu, 6 Aug 2026 09:13:57 +0200CVE-2026-64593: btrfs: do not trim a device which is not writeable
Thu, 6 Aug 2026 09:13:56 +0200CVE-2026-64592: riscv: mm: Unconditionally sfence.vma for spurious fault
Thu, 6 Aug 2026 09:13:55 +0200CVE-2026-64591: iommu/vt-d: Avoid WARNING in sva unbind path
Thu, 6 Aug 2026 09:13:54 +0200CVE-2026-64604: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode
Thu, 6 Aug 2026 09:14:06 +0200CVE-2026-64603: platform/x86: intel-hid: Protect ACPI notify handler against recursion
Thu, 6 Aug 2026 09:14:05 +0200CVE-2026-64602: iio: adc: spear: Initialize completion before requesting IRQ
Thu, 6 Aug 2026 09:14:04 +0200CVE-2026-64601: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on each resubmission
Thu, 6 Aug 2026 09:14:03 +0200CVE-2026-64599: crypto: amlogic - avoid double cleanup in meson_crypto_probe()
Thu, 6 Aug 2026 09:14:02 +0200CVE-2026-64598: smb/client: Fix error code in smb2_aead_req_alloc()
Thu, 6 Aug 2026 09:14:01 +0200CVE-2026-64588: fuse-uring: fix data races on ring->ready
Thu, 6 Aug 2026 09:13:51 +0200CVE-2026-64590: dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning
Thu, 6 Aug 2026 09:13:53 +0200CVE-2026-64589: i2c: core: fix NULL-deref on adapter registration failure
Thu, 6 Aug 2026 09:13:52 +0200CVE-2026-64587: net: ethernet: arc: emac: quiesce interrupts before requesting IRQ
Thu, 6 Aug 2026 09:06:20 +0200CVE-2026-64586: wifi: brcmfmac: drain bus_reset work on device removal
Thu, 6 Aug 2026 09:06:19 +0200CVE-2026-64585: can: esd_usb: kill anchored URBs before freeing netdevs
Thu, 6 Aug 2026 09:06:18 +0200CVE-2026-64583: usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown
Thu, 6 Aug 2026 09:06:16 +0200CVE-2026-64584: usb: gadget: f_midi: cancel pending IN work before freeing the midi object
Thu, 6 Aug 2026 09:06:17 +0200CVE-2026-64582: RDMA/rxe: Fix a use-after-free problem in rxe_mmap
Wed, 5 Aug 2026 13:25:18 +0200CVE-2026-64581: xfrm: fix sk_dst_cache double-free in xfrm_user_policy()
Wed, 5 Aug 2026 10:09:30 +0200CVE-2026-64580: xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst()
Wed, 5 Aug 2026 10:09:29 +0200CVE-2026-64578: ksmbd: validate compound request size before reading StructureSize2
Wed, 5 Aug 2026 10:09:27 +0200CVE-2026-64577: gtp: check skb_pull_data() return in gtp1u_send_echo_resp()
Wed, 5 Aug 2026 10:09:26 +0200CVE-2026-64579: xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert
Wed, 5 Aug 2026 10:09:28 +0200CVE-2026-64575: bpf: tcp: fix double sock release on batch realloc
Wed, 5 Aug 2026 10:09:24 +0200CVE-2026-64576: nexthop: initialize extack in nh_res_bucket_migrate()
Wed, 5 Aug 2026 10:09:25 +0200CVE-2026-64574: wifi: mac80211: tear down new links on vif update error path
Wed, 5 Aug 2026 10:08:06 +0200CVE-2026-64572: ipv4: fib: free fib_alias with kfree_rcu() on insert error path
Wed, 5 Aug 2026 10:08:04 +0200CVE-2026-64571: wifi: p54: validate RX frame length in p54_rx_eeprom_readback()
Wed, 5 Aug 2026 10:08:03 +0200CVE-2026-64573: Bluetooth: qca: fix NVM tag length underflow in TLV parser
Wed, 5 Aug 2026 10:08:05 +0200CVE-2026-64569: mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n
Wed, 5 Aug 2026 10:08:01 +0200CVE-2026-64568: wifi: mac80211: fix unsol_bcast_probe_resp double free on alloc failure
Wed, 5 Aug 2026 10:08:00 +0200CVE-2026-64570: wifi: mac80211: fix fils_discovery double free on alloc failure
Wed, 5 Aug 2026 10:08:02 +0200CVE-2026-64567: btrfs: reject free space cache with more entries than pages
Wed, 5 Aug 2026 10:07:59 +0200CVE-2026-64566: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in iptfs_skb_add_frags()
Wed, 5 Aug 2026 10:06:07 +0200CVE-2026-64565: Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data()
Tue, 4 Aug 2026 08:22:06 +0200CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing
Tue, 4 Aug 2026 08:22:05 +0200CVE-2026-64563: rhashtable: clear stale iter->p on table restart
Tue, 4 Aug 2026 08:22:04 +0200CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
Tue, 4 Aug 2026 08:22:02 +0200CVE-2026-64562: KVM: nVMX: Hide shadow VMCS right after VMCLEAR
Tue, 4 Aug 2026 08:22:03 +0200CVE-2022-4994: KVM: x86: wean fast IN from emulator_pio_in
Thu, 30 Jul 2026 11:17:59 +0200CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race
Wed, 29 Jul 2026 18:47:09 +0200CVE-2026-64558: s390/pkey: Check length in pkey_pckmo handler implementation
Wed, 29 Jul 2026 18:31:13 +0200CVE-2026-64559: s390/pkey: Check length in PKEY_VERIFYPROTK ioctl
Wed, 29 Jul 2026 18:31:14 +0200CVE-2026-64556: perf/core: Detach event groups during remove_on_exec
Wed, 29 Jul 2026 10:01:40 +0200CVE-2026-64557: Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_new_connection_cb()
Wed, 29 Jul 2026 10:01:41 +0200CVE-2026-64546: drm/edid: fix OOB read in drm_parse_tiled_block()
Mon, 27 Jul 2026 22:10:44 +0200CVE-2026-64545: net, bpf: check master for NULL in xdp_master_redirect()
Mon, 27 Jul 2026 22:10:43 +0200CVE-2026-64544: crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents
Mon, 27 Jul 2026 22:10:42 +0200CVE-2026-64543: tipc: fix use-after-free of the discoverer in tipc_disc_rcv()
Mon, 27 Jul 2026 22:10:41 +0200CVE-2026-64542: ipv6: ndisc: fix NULL deref in accept_untracked_na()
Mon, 27 Jul 2026 22:10:40 +0200CVE-2026-64541: net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket
Mon, 27 Jul 2026 22:10:39 +0200CVE-2026-64540: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup()
Mon, 27 Jul 2026 22:10:38 +0200CVE-2026-64539: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD
Mon, 27 Jul 2026 22:10:37 +0200CVE-2026-64555: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops()
Mon, 27 Jul 2026 22:10:53 +0200CVE-2026-64554: netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment()
Mon, 27 Jul 2026 22:10:52 +0200CVE-2026-64553: net: psample: fix info leak in PSAMPLE_ATTR_DATA
Mon, 27 Jul 2026 22:10:51 +0200CVE-2026-64552: virtio-net: fix len check in receive_big()
Mon, 27 Jul 2026 22:10:50 +0200CVE-2026-64551: sctp: validate STALE_COOKIE cause length before reading staleness
Mon, 27 Jul 2026 22:10:49 +0200CVE-2026-64550: net: qualcomm: rmnet: validate MAP frame length before ingress parsing
Mon, 27 Jul 2026 22:10:48 +0200CVE-2026-64549: Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup()
Mon, 27 Jul 2026 22:10:47 +0200CVE-2026-64548: bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data()
Mon, 27 Jul 2026 22:10:46 +0200CVE-2026-64547: net: usb: net1080: validate packet_len before pad-byte access in rx_fixup
Mon, 27 Jul 2026 22:10:45 +0200CVE-2026-64537: bridge: cfm: reject invalid CCM interval at configuration time
Mon, 27 Jul 2026 22:10:35 +0200CVE-2026-64538: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change().
Mon, 27 Jul 2026 22:10:36 +0200CVE-2026-64536: staging: rtl8723bs: fix OOB reads in is_ap_in_tkip() IE loop
Mon, 27 Jul 2026 08:35:58 +0200CVE-2026-64535: nvmet-tcp: Fix potential UAF when ddgst mismatch
Mon, 27 Jul 2026 08:32:34 +0200CVE-2026-64534: nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path
Mon, 27 Jul 2026 08:32:33 +0200CVE-2026-64533: fs/ntfs3: validate lcns_follow in log_replay conversion
Mon, 27 Jul 2026 08:32:32 +0200CVE-2026-64531: net: openvswitch: reject oversized nested action attrs
Mon, 27 Jul 2026 08:32:30 +0200CVE-2026-64532: fs/ntfs3: bound NTFS_DE view.data_off in UpdateRecordData{Root,Allocation}
Mon, 27 Jul 2026 08:32:31 +0200CVE-2024-14040: net: nexthop: Increase weight to u16
Sun, 26 Jul 2026 08:28:59 +0200CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle
Sun, 26 Jul 2026 08:27:25 +0200CVE-2026-64529: crypto: qat - remove unused character device and IOCTLs
Sat, 25 Jul 2026 11:23:00 +0200CVE-2026-64528: tty: serial: samsung: Remove redundant port lock acquisition in rx helpers
Sat, 25 Jul 2026 11:19:38 +0200CVE-2026-64527: drm/hyperv: validate VMBus packet size in receive callback
Sat, 25 Jul 2026 11:19:37 +0200CVE-2026-64526: ethtool: tsconfig: fix missing ethnl_ops_complete()
Sat, 25 Jul 2026 11:19:36 +0200CVE-2026-64525: xfrm: move policy_bydst RCU sync from per-netns .exit to .pre_exit
Sat, 25 Jul 2026 11:19:35 +0200CVE-2026-64523: net/handshake: Take a long-lived file reference at submit
Sat, 25 Jul 2026 11:19:33 +0200CVE-2026-64524: drm/hyperv: validate resolution_count and fix WIN8 fallback
Sat, 25 Jul 2026 11:19:34 +0200CVE-2026-64515: wifi: mac80211: fix MLE defragmentation
Sat, 25 Jul 2026 11:13:36 +0200CVE-2026-64522: net/mlx5e: Fix eswitch mode block underflow on IPsec acquire SA
Sat, 25 Jul 2026 11:13:43 +0200CVE-2026-64521: pinctrl: meson: amlogic-a4: fix deadlock issue
Sat, 25 Jul 2026 11:13:42 +0200CVE-2026-64520: firmware: arm_ffa: Bound PARTITION_INFO_GET_REGS copies
Sat, 25 Jul 2026 11:13:41 +0200CVE-2026-64519: NFSD: Fix infinite loop in layout state revocation
Sat, 25 Jul 2026 11:13:40 +0200CVE-2026-64518: tcp: Fix out-of-bounds access for twsk in tcp_ao_established_key().
Sat, 25 Jul 2026 11:13:39 +0200
lmpx.com only provides a reader for public news (NNTP) servers. It is not
affiliated with the servers or forums shown here and is not responsible for
the content of articles, which is written by their respective authors.