org.kernel.vger.linux-cve-announce archive

613 archived articles, newest first (page 5 of 7). Latest articles →

CVE-2026-64430: NTB: epf: Avoid calling pci_irq_vector() from hardirq context
Sat, 25 Jul 2026 10:50:47 +0200
Greg Kroah-Hartman <[email protected]> • #13955
CVE-2026-64429: gpio: eic-sprd: use raw_spinlock_t in the irq startup path
Sat, 25 Jul 2026 10:50:46 +0200
Greg Kroah-Hartman <[email protected]> • #13954
CVE-2026-64428: gpio: sch: use raw_spinlock_t in the irq startup path
Sat, 25 Jul 2026 10:50:45 +0200
Greg Kroah-Hartman <[email protected]> • #13953
CVE-2026-64427: HID: logitech-dj: Fix maxfield check in DJ short report validation
Sat, 25 Jul 2026 10:50:44 +0200
Greg Kroah-Hartman <[email protected]> • #13952
CVE-2026-64426: io_uring/nop: fix file reference leak with IOSQE_FIXED_FILE
Sat, 25 Jul 2026 10:50:43 +0200
Greg Kroah-Hartman <[email protected]> • #13951
CVE-2026-64425: io_uring/io-wq: re-check IO_WQ_BIT_EXIT for each linked work item
Sat, 25 Jul 2026 10:50:42 +0200
Greg Kroah-Hartman <[email protected]> • #13950
CVE-2026-64424: netpoll: fix a use-after-free on shutdown path
Sat, 25 Jul 2026 10:50:41 +0200
Greg Kroah-Hartman <[email protected]> • #13949
CVE-2026-64423: ipv4: igmp: remove multicast group from hash table on device destruction
Sat, 25 Jul 2026 10:50:40 +0200
Greg Kroah-Hartman <[email protected]> • #13948
CVE-2026-64422: net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes
Sat, 25 Jul 2026 10:50:39 +0200
Greg Kroah-Hartman <[email protected]> • #13947
CVE-2026-64395: ksmbd: require source read access for duplicate extents
Sat, 25 Jul 2026 10:50:12 +0200
Greg Kroah-Hartman <[email protected]> • #13946
CVE-2026-64421: media: nxp: imx8-isi: Fix use-after-free on remove
Sat, 25 Jul 2026 10:50:38 +0200
Greg Kroah-Hartman <[email protected]> • #13945
CVE-2026-64420: mfd: cros_ec: Delay dev_set_drvdata() until probe success
Sat, 25 Jul 2026 10:50:37 +0200
Greg Kroah-Hartman <[email protected]> • #13944
CVE-2026-64419: mm/shrinker: do not hold RCU lock in shrinker_debugfs_count_show()
Sat, 25 Jul 2026 10:50:36 +0200
Greg Kroah-Hartman <[email protected]> • #13943
CVE-2026-64418: mm: shrinker: fix shrinker_info teardown race with expansion
Sat, 25 Jul 2026 10:50:35 +0200
Greg Kroah-Hartman <[email protected]> • #13942
CVE-2026-64417: mm: shrinker: fix NULL pointer dereference in debugfs
Sat, 25 Jul 2026 10:50:34 +0200
Greg Kroah-Hartman <[email protected]> • #13941
CVE-2026-64416: mm: swap_cgroup: fix NULL deref in lookup_swap_cgroup_id on swapless host
Sat, 25 Jul 2026 10:50:33 +0200
Greg Kroah-Hartman <[email protected]> • #13940
CVE-2026-64415: mm/swap: add cond_resched() in swap_reclaim_full_clusters to prevent softlockup
Sat, 25 Jul 2026 10:50:32 +0200
Greg Kroah-Hartman <[email protected]> • #13939
CVE-2026-64414: netfilter: handle unreadable frags
Sat, 25 Jul 2026 10:50:31 +0200
Greg Kroah-Hartman <[email protected]> • #13938
CVE-2026-64413: netfilter: ebtables: zero chainstack array
Sat, 25 Jul 2026 10:50:30 +0200
Greg Kroah-Hartman <[email protected]> • #13937
CVE-2026-64412: netfilter: ebtables: module names must be null-terminated
Sat, 25 Jul 2026 10:50:29 +0200
Greg Kroah-Hartman <[email protected]> • #13936
CVE-2026-64394: ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY
Sat, 25 Jul 2026 10:50:11 +0200
Greg Kroah-Hartman <[email protected]> • #13935
CVE-2026-64411: netfilter: ebtables: terminate table name before find_table_lock()
Sat, 25 Jul 2026 10:50:28 +0200
Greg Kroah-Hartman <[email protected]> • #13934
CVE-2026-64410: netfilter: flowtable: IPIP tunnel hardware offload is not yet support
Sat, 25 Jul 2026 10:50:27 +0200
Greg Kroah-Hartman <[email protected]> • #13933
CVE-2026-64409: Bluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work()
Sat, 25 Jul 2026 10:50:26 +0200
Greg Kroah-Hartman <[email protected]> • #13932
CVE-2026-64408: Bluetooth: bnep: pin L2CAP connection during netdev registration
Sat, 25 Jul 2026 10:50:25 +0200
Greg Kroah-Hartman <[email protected]> • #13931
CVE-2026-64407: Bluetooth: btnxpuart: Fix out-of-bounds firmware read in nxp_recv_fw_req_v3()
Sat, 25 Jul 2026 10:50:24 +0200
Greg Kroah-Hartman <[email protected]> • #13930
CVE-2026-64406: Bluetooth: fix UAF in bt_accept_dequeue()
Sat, 25 Jul 2026 10:50:23 +0200
Greg Kroah-Hartman <[email protected]> • #13929
CVE-2026-64405: Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn()
Sat, 25 Jul 2026 10:50:22 +0200
Greg Kroah-Hartman <[email protected]> • #13928
CVE-2026-64404: Bluetooth: ISO: avoid NULL deref of conn in iso_conn_big_sync()
Sat, 25 Jul 2026 10:50:21 +0200
Greg Kroah-Hartman <[email protected]> • #13927
CVE-2026-64403: Bluetooth: L2CAP: validate option length before reading conf opt value
Sat, 25 Jul 2026 10:50:20 +0200
Greg Kroah-Hartman <[email protected]> • #13926
CVE-2026-64402: coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer()
Sat, 25 Jul 2026 10:50:19 +0200
Greg Kroah-Hartman <[email protected]> • #13925
CVE-2026-64393: ksmbd: run set info with opener credentials
Sat, 25 Jul 2026 10:50:10 +0200
Greg Kroah-Hartman <[email protected]> • #13924
CVE-2026-64351: net: usb: kalmia: bound RX frame length in kalmia_rx_fixup()
Sat, 25 Jul 2026 10:49:28 +0200
Greg Kroah-Hartman <[email protected]> • #13923
CVE-2026-64360: hfs/hfsplus: zero-initialize buffer in hfs_bnode_read
Sat, 25 Jul 2026 10:49:37 +0200
Greg Kroah-Hartman <[email protected]> • #13922
CVE-2026-64359: nilfs2: reject CLEAN_SEGMENTS ioctl with out-of-range segment numbers
Sat, 25 Jul 2026 10:49:36 +0200
Greg Kroah-Hartman <[email protected]> • #13921
CVE-2026-64358: media: mtk-jpeg: cancel workqueue on release for supported platforms only
Sat, 25 Jul 2026 10:49:35 +0200
Greg Kroah-Hartman <[email protected]> • #13920
CVE-2026-64357: xfs: fix exchmaps reservation limit check
Sat, 25 Jul 2026 10:49:34 +0200
Greg Kroah-Hartman <[email protected]> • #13919
CVE-2026-64356: xfs: fix memory leak in xfs_dqinode_metadir_create()
Sat, 25 Jul 2026 10:49:33 +0200
Greg Kroah-Hartman <[email protected]> • #13918
CVE-2026-64391: ksmbd: use opener credentials for ADS I/O
Sat, 25 Jul 2026 10:50:08 +0200
Greg Kroah-Hartman <[email protected]> • #13917
CVE-2026-64355: bpf: Reject fragmented frames in devmap
Sat, 25 Jul 2026 10:49:32 +0200
Greg Kroah-Hartman <[email protected]> • #13916
CVE-2026-64390: ksmbd: track the connection owning a byte-range lock
Sat, 25 Jul 2026 10:50:07 +0200
Greg Kroah-Hartman <[email protected]> • #13915
CVE-2026-64389: ksmbd: validate NTLMv2 response before updating session key
Sat, 25 Jul 2026 10:50:06 +0200
Greg Kroah-Hartman <[email protected]> • #13914
CVE-2026-64388: smb/client: fix chown/chgrp with SMB3 POSIX Extensions
Sat, 25 Jul 2026 10:50:05 +0200
Greg Kroah-Hartman <[email protected]> • #13913
CVE-2026-64387: smb: client: fix query directory replay double-free
Sat, 25 Jul 2026 10:50:04 +0200
Greg Kroah-Hartman <[email protected]> • #13912
CVE-2026-64386: smb: client: fix query_info() replay double-free
Sat, 25 Jul 2026 10:50:03 +0200
Greg Kroah-Hartman <[email protected]> • #13911
CVE-2026-64385: smb: client: fix double-free in SMB2_ioctl() replay
Sat, 25 Jul 2026 10:50:02 +0200
Greg Kroah-Hartman <[email protected]> • #13910
CVE-2026-64384: smb: client: fix change notify replay double-free
Sat, 25 Jul 2026 10:50:01 +0200
Greg Kroah-Hartman <[email protected]> • #13909
CVE-2026-64383: smb: client: fix double-free in SMB2_flush() replay
Sat, 25 Jul 2026 10:50:00 +0200
Greg Kroah-Hartman <[email protected]> • #13908
CVE-2026-64382: smb: client: fix double-free in SMB2_open() replay
Sat, 25 Jul 2026 10:49:59 +0200
Greg Kroah-Hartman <[email protected]> • #13907
CVE-2026-64381: smb: client: Fix next buffer leak in receive_encrypted_standard()
Sat, 25 Jul 2026 10:49:58 +0200
Greg Kroah-Hartman <[email protected]> • #13906
CVE-2026-64354: bpf: Validate BTF repeated field counts before expansion
Sat, 25 Jul 2026 10:49:31 +0200
Greg Kroah-Hartman <[email protected]> • #13905
CVE-2026-64380: smb: client: harden POSIX SID length parsing
Sat, 25 Jul 2026 10:49:57 +0200
Greg Kroah-Hartman <[email protected]> • #13904
CVE-2026-64379: smb: client: mask server-provided mode to 07777 in modefromsid
Sat, 25 Jul 2026 10:49:56 +0200
Greg Kroah-Hartman <[email protected]> • #13903
CVE-2026-64378: writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs()
Sat, 25 Jul 2026 10:49:55 +0200
Greg Kroah-Hartman <[email protected]> • #13902
CVE-2026-64377: cpufreq: qcom-cpufreq-hw: Fix possible double free
Sat, 25 Jul 2026 10:49:54 +0200
Greg Kroah-Hartman <[email protected]> • #13901
CVE-2026-64376: firmware_loader: fix device reference leak in firmware_upload_register()
Sat, 25 Jul 2026 10:49:53 +0200
Greg Kroah-Hartman <[email protected]> • #13900
CVE-2026-64375: proc: protect ptrace_may_access() with exec_update_lock (FD links)
Sat, 25 Jul 2026 10:49:52 +0200
Greg Kroah-Hartman <[email protected]> • #13899
CVE-2026-64374: sched/rt: Have RT_PUSH_IPI be default off for non PREEMPT_RT
Sat, 25 Jul 2026 10:49:51 +0200
Greg Kroah-Hartman <[email protected]> • #13898
CVE-2026-64373: cpufreq: Fix hotplug-suspend race during reboot
Sat, 25 Jul 2026 10:49:50 +0200
Greg Kroah-Hartman <[email protected]> • #13897
CVE-2026-64372: cpufreq: pcc: fix use-after-free and double free in _OSC evaluation
Sat, 25 Jul 2026 10:49:49 +0200
Greg Kroah-Hartman <[email protected]> • #13896
CVE-2026-64371: proc: protect ptrace_may_access() with exec_update_lock (part 1)
Sat, 25 Jul 2026 10:49:48 +0200
Greg Kroah-Hartman <[email protected]> • #13895
CVE-2026-64353: bpf: Keep dynamic inner array lookups nullable
Sat, 25 Jul 2026 10:49:30 +0200
Greg Kroah-Hartman <[email protected]> • #13894
CVE-2026-64370: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path
Sat, 25 Jul 2026 10:49:47 +0200
Greg Kroah-Hartman <[email protected]> • #13893
CVE-2026-64369: s390: Revert support for DCACHE_WORD_ACCESS
Sat, 25 Jul 2026 10:49:46 +0200
Greg Kroah-Hartman <[email protected]> • #13892
CVE-2026-64368: mm/slab: do not limit zeroing to orig_size when only red zoning is enabled
Sat, 25 Jul 2026 10:49:45 +0200
Greg Kroah-Hartman <[email protected]> • #13891
CVE-2026-64367: HID: hid-goodix-spi: validate report size to prevent stack buffer overflow
Sat, 25 Jul 2026 10:49:44 +0200
Greg Kroah-Hartman <[email protected]> • #13890
CVE-2026-64366: HID: wacom: fix slab-out-of-bounds write in wacom_wac_queue_insert
Sat, 25 Jul 2026 10:49:43 +0200
Greg Kroah-Hartman <[email protected]> • #13889
CVE-2026-64365: HID: letsketch: fix UAF on inrange_timer at driver unbind
Sat, 25 Jul 2026 10:49:42 +0200
Greg Kroah-Hartman <[email protected]> • #13888
CVE-2026-64364: HID: multitouch: fix out-of-bounds bit access on mt_io_flags
Sat, 25 Jul 2026 10:49:41 +0200
Greg Kroah-Hartman <[email protected]> • #13887
CVE-2026-64363: HID: appleir: fix UAF on pending key_up_timer in remove()
Sat, 25 Jul 2026 10:49:40 +0200
Greg Kroah-Hartman <[email protected]> • #13886
CVE-2026-64362: HID: lg-g15: cancel pending work on remove to fix a use-after-free
Sat, 25 Jul 2026 10:49:39 +0200
Greg Kroah-Hartman <[email protected]> • #13885
CVE-2026-64361: hfs/hfsplus: fix u32 overflow in check_and_correct_requested_length
Sat, 25 Jul 2026 10:49:38 +0200
Greg Kroah-Hartman <[email protected]> • #13884
CVE-2026-64322: udf: validate sparing table length as an entry count, not a byte count
Sat, 25 Jul 2026 10:48:59 +0200
Greg Kroah-Hartman <[email protected]> • #13883
CVE-2026-64352: bpf: Allow LPM map access from sleepable BPF programs
Sat, 25 Jul 2026 10:49:29 +0200
Greg Kroah-Hartman <[email protected]> • #13882
CVE-2026-64313: crypto: ecc - Fix carry overflow in vli multiplication
Sat, 25 Jul 2026 10:48:50 +0200
Greg Kroah-Hartman <[email protected]> • #13881
CVE-2026-64319: nvmet-auth: validate reply message payload bounds against transfer length
Sat, 25 Jul 2026 10:48:56 +0200
Greg Kroah-Hartman <[email protected]> • #13880
CVE-2026-64320: nvmet: fix pre-auth out-of-bounds heap read in Discovery Get Log Page
Sat, 25 Jul 2026 10:48:57 +0200
Greg Kroah-Hartman <[email protected]> • #13879
CVE-2026-64321: nvme: target: rdma: fix ndev refcount leak on queue connect
Sat, 25 Jul 2026 10:48:58 +0200
Greg Kroah-Hartman <[email protected]> • #13878
CVE-2026-64318: partitions: aix: bound the pp_count scan to the ppe array
Sat, 25 Jul 2026 10:48:55 +0200
Greg Kroah-Hartman <[email protected]> • #13877
CVE-2026-64317: isofs: bound Rock Ridge symlink components to the SL record
Sat, 25 Jul 2026 10:48:54 +0200
Greg Kroah-Hartman <[email protected]> • #13876
CVE-2026-64350: usb: cdnsp: fix stream context array leak in cdnsp_alloc_stream_info()
Sat, 25 Jul 2026 10:49:27 +0200
Greg Kroah-Hartman <[email protected]> • #13875
CVE-2026-64349: usb: dwc3: fix dwc3_readl() and dwc3_writel() calls in dwc3_ulpi_setup()
Sat, 25 Jul 2026 10:49:26 +0200
Greg Kroah-Hartman <[email protected]> • #13874
CVE-2026-64348: usb: free iso schedules on failed submit
Sat, 25 Jul 2026 10:49:25 +0200
Greg Kroah-Hartman <[email protected]> • #13873
CVE-2026-64347: usb: gadget: composite: fix dead empty check in the USB_DT_OTG handler
Sat, 25 Jul 2026 10:49:24 +0200
Greg Kroah-Hartman <[email protected]> • #13872
CVE-2026-64346: usb: gadget: udc: Fix use-after-free in gadget_match_driver
Sat, 25 Jul 2026 10:49:23 +0200
Greg Kroah-Hartman <[email protected]> • #13871
CVE-2026-64345: usb: gadget: f_printer: take kref only for successful open
Sat, 25 Jul 2026 10:49:22 +0200
Greg Kroah-Hartman <[email protected]> • #13870
CVE-2026-64344: USB: idmouse: fix use-after-free on disconnect race
Sat, 25 Jul 2026 10:49:21 +0200
Greg Kroah-Hartman <[email protected]> • #13869
CVE-2026-64343: USB: ldusb: fix use-after-free on disconnect race
Sat, 25 Jul 2026 10:49:20 +0200
Greg Kroah-Hartman <[email protected]> • #13868
CVE-2026-64316: crypto: caam - use print_hex_dump_devel to guard key hex dumps
Sat, 25 Jul 2026 10:48:53 +0200
Greg Kroah-Hartman <[email protected]> • #13867
CVE-2026-64342: USB: iowarrior: fix use-after-free on disconnect
Sat, 25 Jul 2026 10:49:19 +0200
Greg Kroah-Hartman <[email protected]> • #13866
CVE-2026-64341: USB: iowarrior: fix use-after-free on disconnect race
Sat, 25 Jul 2026 10:49:18 +0200
Greg Kroah-Hartman <[email protected]> • #13865
CVE-2026-64340: USB: legousbtower: fix use-after-free on disconnect race
Sat, 25 Jul 2026 10:49:17 +0200
Greg Kroah-Hartman <[email protected]> • #13864
CVE-2026-64339: usb: misc: usbio: bound bulk IN response length to the received transfer
Sat, 25 Jul 2026 10:49:16 +0200
Greg Kroah-Hartman <[email protected]> • #13863
CVE-2026-64338: USB: misc: uss720: unregister parport on probe failure
Sat, 25 Jul 2026 10:49:15 +0200
Greg Kroah-Hartman <[email protected]> • #13862
CVE-2026-64337: usb: mtu3: unmap request DMA on queue failure
Sat, 25 Jul 2026 10:49:14 +0200
Greg Kroah-Hartman <[email protected]> • #13861
CVE-2026-64336: USB: serial: keyspan_pda: fix information leak
Sat, 25 Jul 2026 10:49:13 +0200
Greg Kroah-Hartman <[email protected]> • #13860
CVE-2026-64335: USB: serial: digi_acceleport: fix broken rx after throttle
Sat, 25 Jul 2026 10:49:12 +0200
Greg Kroah-Hartman <[email protected]> • #13859
CVE-2026-64334: USB: serial: digi_acceleport: fix hard lockup on disconnect
Sat, 25 Jul 2026 10:49:11 +0200
Greg Kroah-Hartman <[email protected]> • #13858
CVE-2026-64333: USB: serial: digi_acceleport: fix write buffer corruption
Sat, 25 Jul 2026 10:49:10 +0200
Greg Kroah-Hartman <[email protected]> • #13857
CVE-2026-64315: crypto: caam - use print_hex_dump_devel to guard key hex dumps
Sat, 25 Jul 2026 10:48:52 +0200
Greg Kroah-Hartman <[email protected]> • #13856
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.