org.kernel.vger.linux-cve-announce archive

604 archived articles, newest first (page 3 of 7). Latest articles →

CVE-2026-68390: Bluetooth: hci_sync: hold hdev->lock for hci_conn_params lookups
Mon, 10 Aug 2026 14:01:47 +0200
Greg Kroah-Hartman <[email protected]> • #14441
CVE-2026-68389: Bluetooth: hci_qca: Clear memdump state on invalid dump size
Mon, 10 Aug 2026 14:01:46 +0200
Greg Kroah-Hartman <[email protected]> • #14440
CVE-2026-68388: smb/client: handle overlapping allocated ranges in fallocate
Mon, 10 Aug 2026 14:01:45 +0200
Greg Kroah-Hartman <[email protected]> • #14439
CVE-2026-68387: can: raw: add locking for raw flags bitfield
Mon, 10 Aug 2026 14:01:44 +0200
Greg Kroah-Hartman <[email protected]> • #14438
CVE-2026-68386: bpf, sockmap: Reject unhashed UDP sockets on sockmap update
Mon, 10 Aug 2026 14:01:43 +0200
Greg Kroah-Hartman <[email protected]> • #14437
CVE-2026-68385: s390/checksum: Fix csum_partial() without vector facility
Mon, 10 Aug 2026 14:01:42 +0200
Greg Kroah-Hartman <[email protected]> • #14436
CVE-2026-68384: drm/xe/vf: Fix VF CCS attach/detach race with in-flight BO moves
Mon, 10 Aug 2026 14:01:41 +0200
Greg Kroah-Hartman <[email protected]> • #14435
CVE-2026-68357: watchdog: pretimeout: Fix UAF in watchdog_unregister_governor()
Mon, 10 Aug 2026 14:01:14 +0200
Greg Kroah-Hartman <[email protected]> • #14434
CVE-2026-68081: KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state
Sat, 8 Aug 2026 11:17:33 +0200
Greg Kroah-Hartman <[email protected]> • #14140
CVE-2026-68082: libceph: fix two unsafe bare decodes in decode_lockers()
Sat, 8 Aug 2026 11:17:34 +0200
Greg Kroah-Hartman <[email protected]> • #14139
CVE-2026-68480: x86/bugs: Make Safe-RET robust against interrupt injection
Thu, 6 Aug 2026 19:36:32 +0200
Greg Kroah-Hartman <[email protected]> • #14138
CVE-2026-64597: smb: client: fix double-free in SMB2_close() replay
Thu, 6 Aug 2026 09:14:00 +0200
Greg Kroah-Hartman <[email protected]> • #14137
CVE-2026-64596: libfs: set SB_I_NOEXEC and SB_I_NODEV by default in init_pseudo()
Thu, 6 Aug 2026 09:13:59 +0200
Greg Kroah-Hartman <[email protected]> • #14136
CVE-2026-64595: HID: hid-lenovo-go: cancel cfg_setup work in hid_go_cfg_remove()
Thu, 6 Aug 2026 09:13:58 +0200
Greg Kroah-Hartman <[email protected]> • #14135
CVE-2026-64594: usb: gadget: f_fs: initialize reset_work at allocation time
Thu, 6 Aug 2026 09:13:57 +0200
Greg Kroah-Hartman <[email protected]> • #14134
CVE-2026-64593: btrfs: do not trim a device which is not writeable
Thu, 6 Aug 2026 09:13:56 +0200
Greg Kroah-Hartman <[email protected]> • #14133
CVE-2026-64592: riscv: mm: Unconditionally sfence.vma for spurious fault
Thu, 6 Aug 2026 09:13:55 +0200
Greg Kroah-Hartman <[email protected]> • #14132
CVE-2026-64591: iommu/vt-d: Avoid WARNING in sva unbind path
Thu, 6 Aug 2026 09:13:54 +0200
Greg Kroah-Hartman <[email protected]> • #14131
CVE-2026-64604: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode
Thu, 6 Aug 2026 09:14:06 +0200
Greg Kroah-Hartman <[email protected]> • #14130
CVE-2026-64603: platform/x86: intel-hid: Protect ACPI notify handler against recursion
Thu, 6 Aug 2026 09:14:05 +0200
Greg Kroah-Hartman <[email protected]> • #14129
CVE-2026-64602: iio: adc: spear: Initialize completion before requesting IRQ
Thu, 6 Aug 2026 09:14:04 +0200
Greg Kroah-Hartman <[email protected]> • #14128
CVE-2026-64601: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on each resubmission
Thu, 6 Aug 2026 09:14:03 +0200
Greg Kroah-Hartman <[email protected]> • #14127
CVE-2026-64599: crypto: amlogic - avoid double cleanup in meson_crypto_probe()
Thu, 6 Aug 2026 09:14:02 +0200
Greg Kroah-Hartman <[email protected]> • #14126
CVE-2026-64598: smb/client: Fix error code in smb2_aead_req_alloc()
Thu, 6 Aug 2026 09:14:01 +0200
Greg Kroah-Hartman <[email protected]> • #14125
CVE-2026-64588: fuse-uring: fix data races on ring->ready
Thu, 6 Aug 2026 09:13:51 +0200
Greg Kroah-Hartman <[email protected]> • #14124
CVE-2026-64590: dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning
Thu, 6 Aug 2026 09:13:53 +0200
Greg Kroah-Hartman <[email protected]> • #14123
CVE-2026-64589: i2c: core: fix NULL-deref on adapter registration failure
Thu, 6 Aug 2026 09:13:52 +0200
Greg Kroah-Hartman <[email protected]> • #14122
CVE-2026-64587: net: ethernet: arc: emac: quiesce interrupts before requesting IRQ
Thu, 6 Aug 2026 09:06:20 +0200
Greg Kroah-Hartman <[email protected]> • #14121
CVE-2026-64586: wifi: brcmfmac: drain bus_reset work on device removal
Thu, 6 Aug 2026 09:06:19 +0200
Greg Kroah-Hartman <[email protected]> • #14120
CVE-2026-64585: can: esd_usb: kill anchored URBs before freeing netdevs
Thu, 6 Aug 2026 09:06:18 +0200
Greg Kroah-Hartman <[email protected]> • #14119
CVE-2026-64583: usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown
Thu, 6 Aug 2026 09:06:16 +0200
Greg Kroah-Hartman <[email protected]> • #14118
CVE-2026-64584: usb: gadget: f_midi: cancel pending IN work before freeing the midi object
Thu, 6 Aug 2026 09:06:17 +0200
Greg Kroah-Hartman <[email protected]> • #14117
CVE-2026-64582: RDMA/rxe: Fix a use-after-free problem in rxe_mmap
Wed, 5 Aug 2026 13:25:18 +0200
Greg Kroah-Hartman <[email protected]> • #14116
CVE-2026-64581: xfrm: fix sk_dst_cache double-free in xfrm_user_policy()
Wed, 5 Aug 2026 10:09:30 +0200
Greg Kroah-Hartman <[email protected]> • #14115
CVE-2026-64580: xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst()
Wed, 5 Aug 2026 10:09:29 +0200
Greg Kroah-Hartman <[email protected]> • #14114
CVE-2026-64578: ksmbd: validate compound request size before reading StructureSize2
Wed, 5 Aug 2026 10:09:27 +0200
Greg Kroah-Hartman <[email protected]> • #14113
CVE-2026-64577: gtp: check skb_pull_data() return in gtp1u_send_echo_resp()
Wed, 5 Aug 2026 10:09:26 +0200
Greg Kroah-Hartman <[email protected]> • #14112
CVE-2026-64579: xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert
Wed, 5 Aug 2026 10:09:28 +0200
Greg Kroah-Hartman <[email protected]> • #14111
CVE-2026-64575: bpf: tcp: fix double sock release on batch realloc
Wed, 5 Aug 2026 10:09:24 +0200
Greg Kroah-Hartman <[email protected]> • #14110
CVE-2026-64576: nexthop: initialize extack in nh_res_bucket_migrate()
Wed, 5 Aug 2026 10:09:25 +0200
Greg Kroah-Hartman <[email protected]> • #14109
CVE-2026-64574: wifi: mac80211: tear down new links on vif update error path
Wed, 5 Aug 2026 10:08:06 +0200
Greg Kroah-Hartman <[email protected]> • #14108
CVE-2026-64572: ipv4: fib: free fib_alias with kfree_rcu() on insert error path
Wed, 5 Aug 2026 10:08:04 +0200
Greg Kroah-Hartman <[email protected]> • #14107
CVE-2026-64571: wifi: p54: validate RX frame length in p54_rx_eeprom_readback()
Wed, 5 Aug 2026 10:08:03 +0200
Greg Kroah-Hartman <[email protected]> • #14106
CVE-2026-64573: Bluetooth: qca: fix NVM tag length underflow in TLV parser
Wed, 5 Aug 2026 10:08:05 +0200
Greg Kroah-Hartman <[email protected]> • #14105
CVE-2026-64569: mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n
Wed, 5 Aug 2026 10:08:01 +0200
Greg Kroah-Hartman <[email protected]> • #14104
CVE-2026-64568: wifi: mac80211: fix unsol_bcast_probe_resp double free on alloc failure
Wed, 5 Aug 2026 10:08:00 +0200
Greg Kroah-Hartman <[email protected]> • #14103
CVE-2026-64570: wifi: mac80211: fix fils_discovery double free on alloc failure
Wed, 5 Aug 2026 10:08:02 +0200
Greg Kroah-Hartman <[email protected]> • #14102
CVE-2026-64567: btrfs: reject free space cache with more entries than pages
Wed, 5 Aug 2026 10:07:59 +0200
Greg Kroah-Hartman <[email protected]> • #14101
CVE-2026-64566: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in iptfs_skb_add_frags()
Wed, 5 Aug 2026 10:06:07 +0200
Greg Kroah-Hartman <[email protected]> • #14100
CVE-2026-64565: Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data()
Tue, 4 Aug 2026 08:22:06 +0200
Greg Kroah-Hartman <[email protected]> • #14099
CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing
Tue, 4 Aug 2026 08:22:05 +0200
Greg Kroah-Hartman <[email protected]> • #14098
CVE-2026-64563: rhashtable: clear stale iter->p on table restart
Tue, 4 Aug 2026 08:22:04 +0200
Greg Kroah-Hartman <[email protected]> • #14097
CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
Tue, 4 Aug 2026 08:22:02 +0200
Greg Kroah-Hartman <[email protected]> • #14096
CVE-2026-64562: KVM: nVMX: Hide shadow VMCS right after VMCLEAR
Tue, 4 Aug 2026 08:22:03 +0200
Greg Kroah-Hartman <[email protected]> • #14095
CVE-2022-4994: KVM: x86: wean fast IN from emulator_pio_in
Thu, 30 Jul 2026 11:17:59 +0200
Greg Kroah-Hartman <[email protected]> • #14094
CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race
Wed, 29 Jul 2026 18:47:09 +0200
Greg Kroah-Hartman <[email protected]> • #14093
CVE-2026-64558: s390/pkey: Check length in pkey_pckmo handler implementation
Wed, 29 Jul 2026 18:31:13 +0200
Greg Kroah-Hartman <[email protected]> • #14092
CVE-2026-64559: s390/pkey: Check length in PKEY_VERIFYPROTK ioctl
Wed, 29 Jul 2026 18:31:14 +0200
Greg Kroah-Hartman <[email protected]> • #14091
CVE-2026-64556: perf/core: Detach event groups during remove_on_exec
Wed, 29 Jul 2026 10:01:40 +0200
Greg Kroah-Hartman <[email protected]> • #14090
CVE-2026-64557: Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_new_connection_cb()
Wed, 29 Jul 2026 10:01:41 +0200
Greg Kroah-Hartman <[email protected]> • #14089
CVE-2026-64546: drm/edid: fix OOB read in drm_parse_tiled_block()
Mon, 27 Jul 2026 22:10:44 +0200
Greg Kroah-Hartman <[email protected]> • #14088
CVE-2026-64545: net, bpf: check master for NULL in xdp_master_redirect()
Mon, 27 Jul 2026 22:10:43 +0200
Greg Kroah-Hartman <[email protected]> • #14087
CVE-2026-64544: crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents
Mon, 27 Jul 2026 22:10:42 +0200
Greg Kroah-Hartman <[email protected]> • #14086
CVE-2026-64543: tipc: fix use-after-free of the discoverer in tipc_disc_rcv()
Mon, 27 Jul 2026 22:10:41 +0200
Greg Kroah-Hartman <[email protected]> • #14085
CVE-2026-64542: ipv6: ndisc: fix NULL deref in accept_untracked_na()
Mon, 27 Jul 2026 22:10:40 +0200
Greg Kroah-Hartman <[email protected]> • #14084
CVE-2026-64541: net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket
Mon, 27 Jul 2026 22:10:39 +0200
Greg Kroah-Hartman <[email protected]> • #14083
CVE-2026-64540: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup()
Mon, 27 Jul 2026 22:10:38 +0200
Greg Kroah-Hartman <[email protected]> • #14082
CVE-2026-64539: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD
Mon, 27 Jul 2026 22:10:37 +0200
Greg Kroah-Hartman <[email protected]> • #14081
CVE-2026-64555: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops()
Mon, 27 Jul 2026 22:10:53 +0200
Greg Kroah-Hartman <[email protected]> • #14080
CVE-2026-64554: netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment()
Mon, 27 Jul 2026 22:10:52 +0200
Greg Kroah-Hartman <[email protected]> • #14079
CVE-2026-64553: net: psample: fix info leak in PSAMPLE_ATTR_DATA
Mon, 27 Jul 2026 22:10:51 +0200
Greg Kroah-Hartman <[email protected]> • #14078
CVE-2026-64552: virtio-net: fix len check in receive_big()
Mon, 27 Jul 2026 22:10:50 +0200
Greg Kroah-Hartman <[email protected]> • #14077
CVE-2026-64551: sctp: validate STALE_COOKIE cause length before reading staleness
Mon, 27 Jul 2026 22:10:49 +0200
Greg Kroah-Hartman <[email protected]> • #14076
CVE-2026-64550: net: qualcomm: rmnet: validate MAP frame length before ingress parsing
Mon, 27 Jul 2026 22:10:48 +0200
Greg Kroah-Hartman <[email protected]> • #14075
CVE-2026-64549: Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup()
Mon, 27 Jul 2026 22:10:47 +0200
Greg Kroah-Hartman <[email protected]> • #14074
CVE-2026-64548: bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data()
Mon, 27 Jul 2026 22:10:46 +0200
Greg Kroah-Hartman <[email protected]> • #14073
CVE-2026-64547: net: usb: net1080: validate packet_len before pad-byte access in rx_fixup
Mon, 27 Jul 2026 22:10:45 +0200
Greg Kroah-Hartman <[email protected]> • #14072
CVE-2026-64537: bridge: cfm: reject invalid CCM interval at configuration time
Mon, 27 Jul 2026 22:10:35 +0200
Greg Kroah-Hartman <[email protected]> • #14071
CVE-2026-64538: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change().
Mon, 27 Jul 2026 22:10:36 +0200
Greg Kroah-Hartman <[email protected]> • #14070
CVE-2026-64536: staging: rtl8723bs: fix OOB reads in is_ap_in_tkip() IE loop
Mon, 27 Jul 2026 08:35:58 +0200
Greg Kroah-Hartman <[email protected]> • #14069
CVE-2026-64535: nvmet-tcp: Fix potential UAF when ddgst mismatch
Mon, 27 Jul 2026 08:32:34 +0200
Greg Kroah-Hartman <[email protected]> • #14068
CVE-2026-64534: nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path
Mon, 27 Jul 2026 08:32:33 +0200
Greg Kroah-Hartman <[email protected]> • #14067
CVE-2026-64533: fs/ntfs3: validate lcns_follow in log_replay conversion
Mon, 27 Jul 2026 08:32:32 +0200
Greg Kroah-Hartman <[email protected]> • #14066
CVE-2026-64531: net: openvswitch: reject oversized nested action attrs
Mon, 27 Jul 2026 08:32:30 +0200
Greg Kroah-Hartman <[email protected]> • #14065
CVE-2026-64532: fs/ntfs3: bound NTFS_DE view.data_off in UpdateRecordData{Root,Allocation}
Mon, 27 Jul 2026 08:32:31 +0200
Greg Kroah-Hartman <[email protected]> • #14064
CVE-2024-14040: net: nexthop: Increase weight to u16
Sun, 26 Jul 2026 08:28:59 +0200
Greg Kroah-Hartman <[email protected]> • #14063
CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle
Sun, 26 Jul 2026 08:27:25 +0200
Greg Kroah-Hartman <[email protected]> • #14062
CVE-2026-64529: crypto: qat - remove unused character device and IOCTLs
Sat, 25 Jul 2026 11:23:00 +0200
Greg Kroah-Hartman <[email protected]> • #14061
CVE-2026-64528: tty: serial: samsung: Remove redundant port lock acquisition in rx helpers
Sat, 25 Jul 2026 11:19:38 +0200
Greg Kroah-Hartman <[email protected]> • #14060
CVE-2026-64527: drm/hyperv: validate VMBus packet size in receive callback
Sat, 25 Jul 2026 11:19:37 +0200
Greg Kroah-Hartman <[email protected]> • #14059
CVE-2026-64526: ethtool: tsconfig: fix missing ethnl_ops_complete()
Sat, 25 Jul 2026 11:19:36 +0200
Greg Kroah-Hartman <[email protected]> • #14058
CVE-2026-64525: xfrm: move policy_bydst RCU sync from per-netns .exit to .pre_exit
Sat, 25 Jul 2026 11:19:35 +0200
Greg Kroah-Hartman <[email protected]> • #14057
CVE-2026-64523: net/handshake: Take a long-lived file reference at submit
Sat, 25 Jul 2026 11:19:33 +0200
Greg Kroah-Hartman <[email protected]> • #14056
CVE-2026-64524: drm/hyperv: validate resolution_count and fix WIN8 fallback
Sat, 25 Jul 2026 11:19:34 +0200
Greg Kroah-Hartman <[email protected]> • #14055
CVE-2026-64515: wifi: mac80211: fix MLE defragmentation
Sat, 25 Jul 2026 11:13:36 +0200
Greg Kroah-Hartman <[email protected]> • #14054
CVE-2026-64522: net/mlx5e: Fix eswitch mode block underflow on IPsec acquire SA
Sat, 25 Jul 2026 11:13:43 +0200
Greg Kroah-Hartman <[email protected]> • #14053
CVE-2026-64521: pinctrl: meson: amlogic-a4: fix deadlock issue
Sat, 25 Jul 2026 11:13:42 +0200
Greg Kroah-Hartman <[email protected]> • #14052
CVE-2026-64520: firmware: arm_ffa: Bound PARTITION_INFO_GET_REGS copies
Sat, 25 Jul 2026 11:13:41 +0200
Greg Kroah-Hartman <[email protected]> • #14051
CVE-2026-64519: NFSD: Fix infinite loop in layout state revocation
Sat, 25 Jul 2026 11:13:40 +0200
Greg Kroah-Hartman <[email protected]> • #14050
CVE-2026-64518: tcp: Fix out-of-bounds access for twsk in tcp_ao_established_key().
Sat, 25 Jul 2026 11:13:39 +0200
Greg Kroah-Hartman <[email protected]> • #14049
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.