org.kernel.vger.linux-cve-announce archive

613 archived articles, newest first (page 6 of 7). Latest articles →

CVE-2026-64332: USB: ulpi: fix memory leak on registration failure
Sat, 25 Jul 2026 10:49:09 +0200
Greg Kroah-Hartman <[email protected]> • #13855
CVE-2026-64331: usbip: vudc: fix NULL deref in vep_dequeue()
Sat, 25 Jul 2026 10:49:08 +0200
Greg Kroah-Hartman <[email protected]> • #13854
CVE-2026-64330: usb: typec: tcpm: Validate SVID index in svdm_consume_modes()
Sat, 25 Jul 2026 10:49:07 +0200
Greg Kroah-Hartman <[email protected]> • #13853
CVE-2026-64329: usb: typec: ucsi: ccg: Fix use-after-free of ucsi on remove
Sat, 25 Jul 2026 10:49:06 +0200
Greg Kroah-Hartman <[email protected]> • #13852
CVE-2026-64328: usb: gadget: f_fs: Fix DMA fence leak
Sat, 25 Jul 2026 10:49:05 +0200
Greg Kroah-Hartman <[email protected]> • #13851
CVE-2026-64327: usb: gadget: f_fs: Initialize epfile->in early to fix endpoint direction checks
Sat, 25 Jul 2026 10:49:04 +0200
Greg Kroah-Hartman <[email protected]> • #13850
CVE-2026-64326: block: skip sync_blockdev() on surprise removal in bdev_mark_dead()
Sat, 25 Jul 2026 10:49:03 +0200
Greg Kroah-Hartman <[email protected]> • #13849
CVE-2026-64325: wifi: mt76: mt7921/mt7925: fix NULL dereference in CSA beacon
Sat, 25 Jul 2026 10:49:02 +0200
Greg Kroah-Hartman <[email protected]> • #13848
CVE-2026-64324: udf: validate free block extents against the partition length
Sat, 25 Jul 2026 10:49:01 +0200
Greg Kroah-Hartman <[email protected]> • #13847
CVE-2026-64323: udf: validate VAT header length against the VAT inode size
Sat, 25 Jul 2026 10:49:00 +0200
Greg Kroah-Hartman <[email protected]> • #13846
CVE-2026-64314: crypto: chacha20poly1305 - validate poly1305 template argument
Sat, 25 Jul 2026 10:48:51 +0200
Greg Kroah-Hartman <[email protected]> • #13845
CVE-2026-64280: fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region()
Sat, 25 Jul 2026 10:48:17 +0200
Greg Kroah-Hartman <[email protected]> • #13844
CVE-2026-64289: iommufd: Set upper bounds on cache invalidation entry_num and entry_len
Sat, 25 Jul 2026 10:48:26 +0200
Greg Kroah-Hartman <[email protected]> • #13843
CVE-2026-64288: KVM: arm64: nv: Avoid dereferencing NULL VNCR pseudo-TLB
Sat, 25 Jul 2026 10:48:25 +0200
Greg Kroah-Hartman <[email protected]> • #13842
CVE-2026-64287: KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU
Sat, 25 Jul 2026 10:48:24 +0200
Greg Kroah-Hartman <[email protected]> • #13841
CVE-2026-64286: KVM: arm64: Clear __hyp_running_vcpu when flushing the pKVM hyp vCPU
Sat, 25 Jul 2026 10:48:23 +0200
Greg Kroah-Hartman <[email protected]> • #13840
CVE-2026-64285: KVM: SEV: Pin source page for write when adding CPUID data for SNP guest
Sat, 25 Jul 2026 10:48:22 +0200
Greg Kroah-Hartman <[email protected]> • #13839
CVE-2026-64284: KVM: x86: Ensure vendor's exit handler runs before fastpath userspace exits
Sat, 25 Jul 2026 10:48:21 +0200
Greg Kroah-Hartman <[email protected]> • #13838
CVE-2026-64312: crypto: pcrypt - restore callback for non-parallel fallback
Sat, 25 Jul 2026 10:48:49 +0200
Greg Kroah-Hartman <[email protected]> • #13837
CVE-2026-64311: crypto: loongson - Remove broken and unused loongson-rng
Sat, 25 Jul 2026 10:48:48 +0200
Greg Kroah-Hartman <[email protected]> • #13836
CVE-2026-64310: crypto: ccp - Do not initialize SNP for SEV ioctls
Sat, 25 Jul 2026 10:48:47 +0200
Greg Kroah-Hartman <[email protected]> • #13835
CVE-2026-64283: KVM: guest_memfd: Treat memslot binding offset+size as unsigned values
Sat, 25 Jul 2026 10:48:20 +0200
Greg Kroah-Hartman <[email protected]> • #13834
CVE-2026-64309: crypto: ccp - Do not initialize SNP for ioctl(SNP_COMMIT)
Sat, 25 Jul 2026 10:48:46 +0200
Greg Kroah-Hartman <[email protected]> • #13833
CVE-2026-64308: crypto: ccp - Do not initialize SNP for ioctl(SNP_VLEK_LOAD)
Sat, 25 Jul 2026 10:48:45 +0200
Greg Kroah-Hartman <[email protected]> • #13832
CVE-2026-64307: crypto: ccp - Do not initialize SNP for ioctl(SNP_CONFIG)
Sat, 25 Jul 2026 10:48:44 +0200
Greg Kroah-Hartman <[email protected]> • #13831
CVE-2026-64306: crypto: drbg - Fix returning success on failure in CTR_DRBG
Sat, 25 Jul 2026 10:48:43 +0200
Greg Kroah-Hartman <[email protected]> • #13830
CVE-2026-64305: crypto: qat - protect service table iterations with service_lock
Sat, 25 Jul 2026 10:48:42 +0200
Greg Kroah-Hartman <[email protected]> • #13829
CVE-2026-64304: crypto: qat - validate RSA CRT component lengths
Sat, 25 Jul 2026 10:48:41 +0200
Greg Kroah-Hartman <[email protected]> • #13828
CVE-2026-64303: spi: fsl-lpspi: terminate the RX channel on TX prepare failure path
Sat, 25 Jul 2026 10:48:40 +0200
Greg Kroah-Hartman <[email protected]> • #13827
CVE-2026-64302: x86/mm: Fix freeing of PMD-sized vmemmap pages
Sat, 25 Jul 2026 10:48:39 +0200
Greg Kroah-Hartman <[email protected]> • #13826
CVE-2026-64301: regulator: scmi: fix of_node refcount leak in scmi_regulator_probe()
Sat, 25 Jul 2026 10:48:38 +0200
Greg Kroah-Hartman <[email protected]> • #13825
CVE-2026-64300: perf/aux: Fix page UAF in map_range()
Sat, 25 Jul 2026 10:48:37 +0200
Greg Kroah-Hartman <[email protected]> • #13824
CVE-2026-64282: KVM: arm64: Don't leak PFN when kvm_translate_vncr() races MMU notifier
Sat, 25 Jul 2026 10:48:19 +0200
Greg Kroah-Hartman <[email protected]> • #13823
CVE-2026-64299: tracing: Prevent out-of-bounds read in glob matching
Sat, 25 Jul 2026 10:48:36 +0200
Greg Kroah-Hartman <[email protected]> • #13822
CVE-2026-64298: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC
Sat, 25 Jul 2026 10:48:35 +0200
Greg Kroah-Hartman <[email protected]> • #13821
CVE-2026-64297: module: decompress: check return value of module_extend_max_pages()
Sat, 25 Jul 2026 10:48:34 +0200
Greg Kroah-Hartman <[email protected]> • #13820
CVE-2026-64296: exfat: bound uniname advance in exfat_find_dir_entry()
Sat, 25 Jul 2026 10:48:33 +0200
Greg Kroah-Hartman <[email protected]> • #13819
CVE-2026-64295: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access
Sat, 25 Jul 2026 10:48:32 +0200
Greg Kroah-Hartman <[email protected]> • #13818
CVE-2026-64294: mm: do file ownership checks with the proper mount idmap
Sat, 25 Jul 2026 10:48:31 +0200
Greg Kroah-Hartman <[email protected]> • #13817
CVE-2026-64293: iommufd: Use sizeof(*hdr) instead of sizeof(hdr) in veventq read
Sat, 25 Jul 2026 10:48:30 +0200
Greg Kroah-Hartman <[email protected]> • #13816
CVE-2026-64292: iommufd: Move vevent memory allocation outside spinlock
Sat, 25 Jul 2026 10:48:29 +0200
Greg Kroah-Hartman <[email protected]> • #13815
CVE-2026-64291: iommufd: Set veventq_depth upper bound
Sat, 25 Jul 2026 10:48:28 +0200
Greg Kroah-Hartman <[email protected]> • #13814
CVE-2026-64290: iommufd: Break the loop on failure in iommufd_fault_fops_read()
Sat, 25 Jul 2026 10:48:27 +0200
Greg Kroah-Hartman <[email protected]> • #13813
CVE-2026-64281: svcrdma: wake sq waiters when the transport closes
Sat, 25 Jul 2026 10:48:18 +0200
Greg Kroah-Hartman <[email protected]> • #13812
CVE-2026-64256: xfs: don't wrap around quota ids in dqiterate
Sat, 25 Jul 2026 10:47:53 +0200
Greg Kroah-Hartman <[email protected]> • #13811
CVE-2026-64265: fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req
Sat, 25 Jul 2026 10:48:02 +0200
Greg Kroah-Hartman <[email protected]> • #13810
CVE-2026-64264: fuse-uring: fix EFAULT clobber in fuse_uring_commit
Sat, 25 Jul 2026 10:48:01 +0200
Greg Kroah-Hartman <[email protected]> • #13809
CVE-2026-64263: fuse-uring: fix moving cancelled entry to ent_in_userspace list
Sat, 25 Jul 2026 10:48:00 +0200
Greg Kroah-Hartman <[email protected]> • #13808
CVE-2026-64262: fuse-uring: end fuse_req on io-uring cancel task work
Sat, 25 Jul 2026 10:47:59 +0200
Greg Kroah-Hartman <[email protected]> • #13807
CVE-2026-64261: fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues
Sat, 25 Jul 2026 10:47:58 +0200
Greg Kroah-Hartman <[email protected]> • #13806
CVE-2026-64260: fuse-uring: Avoid queue->stopped races and set/read that value under lock
Sat, 25 Jul 2026 10:47:57 +0200
Greg Kroah-Hartman <[email protected]> • #13805
CVE-2026-64259: fuse-uring: make a fuse_req on SQE commit only findable after memcpy
Sat, 25 Jul 2026 10:47:56 +0200
Greg Kroah-Hartman <[email protected]> • #13804
CVE-2026-64279: i2c: core: fix adapter deregistration race
Sat, 25 Jul 2026 10:48:16 +0200
Greg Kroah-Hartman <[email protected]> • #13803
CVE-2026-64278: i2c: imx-lpi2c: mark I2C adapter when hardware is powered down
Sat, 25 Jul 2026 10:48:15 +0200
Greg Kroah-Hartman <[email protected]> • #13802
CVE-2026-64277: Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count
Sat, 25 Jul 2026 10:48:14 +0200
Greg Kroah-Hartman <[email protected]> • #13801
CVE-2026-64276: Input: synaptics-rmi4 - bound the F30 keymap to the GPIO/LED count
Sat, 25 Jul 2026 10:48:13 +0200
Greg Kroah-Hartman <[email protected]> • #13800
CVE-2026-64258: fuse-uring: remove request-less entries from ent_w_req_queue to fix NULL deref
Sat, 25 Jul 2026 10:47:55 +0200
Greg Kroah-Hartman <[email protected]> • #13799
CVE-2026-64275: Input: elan_i2c - prevent division by zero and arithmetic underflow
Sat, 25 Jul 2026 10:48:12 +0200
Greg Kroah-Hartman <[email protected]> • #13798
CVE-2026-64274: Input: goodix - clamp the device-reported contact count
Sat, 25 Jul 2026 10:48:11 +0200
Greg Kroah-Hartman <[email protected]> • #13797
CVE-2026-64273: Input: iforce - bound the device-reported force-feedback effect index
Sat, 25 Jul 2026 10:48:10 +0200
Greg Kroah-Hartman <[email protected]> • #13796
CVE-2026-64272: Input: mms114 - fix touch indexing for MMS134S and MMS136
Sat, 25 Jul 2026 10:48:09 +0200
Greg Kroah-Hartman <[email protected]> • #13795
CVE-2026-64271: Input: touchwin - reset the packet index on every complete packet
Sat, 25 Jul 2026 10:48:08 +0200
Greg Kroah-Hartman <[email protected]> • #13794
CVE-2026-64270: Input: mms114 - reject an oversized device packet size
Sat, 25 Jul 2026 10:48:07 +0200
Greg Kroah-Hartman <[email protected]> • #13793
CVE-2026-64269: RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg
Sat, 25 Jul 2026 10:48:06 +0200
Greg Kroah-Hartman <[email protected]> • #13792
CVE-2026-64268: RDMA/siw: bound Read Response placement to the RREAD length
Sat, 25 Jul 2026 10:48:05 +0200
Greg Kroah-Hartman <[email protected]> • #13791
CVE-2026-64267: fuse: avoid 32-bit prune notification count wrap
Sat, 25 Jul 2026 10:48:04 +0200
Greg Kroah-Hartman <[email protected]> • #13790
CVE-2026-64266: fuse: re-lock request before returning from fuse_ref_folio()
Sat, 25 Jul 2026 10:48:03 +0200
Greg Kroah-Hartman <[email protected]> • #13789
CVE-2026-64257: smb: client: reject overlapping data areas in SMB2 responses
Sat, 25 Jul 2026 10:47:54 +0200
Greg Kroah-Hartman <[email protected]> • #13788
CVE-2026-64254: NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR
Fri, 24 Jul 2026 17:31:28 +0200
Greg Kroah-Hartman <[email protected]> • #13787
CVE-2026-64253: kernel/fork: clear PF_BLOCK_TS in copy_process()
Fri, 24 Jul 2026 17:31:27 +0200
Greg Kroah-Hartman <[email protected]> • #13786
CVE-2026-64252: MIPS: DEC: Prevent initial console buffer from landing in XKPHYS
Fri, 24 Jul 2026 17:31:26 +0200
Greg Kroah-Hartman <[email protected]> • #13785
CVE-2026-64251: pwrseq: core: fix use-after-free in pwrseq_debugfs_seq_next()
Fri, 24 Jul 2026 17:31:25 +0200
Greg Kroah-Hartman <[email protected]> • #13784
CVE-2026-64250: LoongArch: Report dying CPU to RCU in stop_this_cpu()
Fri, 24 Jul 2026 17:31:24 +0200
Greg Kroah-Hartman <[email protected]> • #13783
CVE-2026-64249: fpga: region: fix use-after-free in child_regions_with_firmware()
Fri, 24 Jul 2026 17:31:23 +0200
Greg Kroah-Hartman <[email protected]> • #13782
CVE-2026-64248: MIPS: smp: report dying CPU to RCU in stop_this_cpu()
Fri, 24 Jul 2026 17:31:22 +0200
Greg Kroah-Hartman <[email protected]> • #13781
CVE-2026-64247: KVM: x86: hyper-v: Bound the bank index when querying sparse banks
Fri, 24 Jul 2026 17:31:21 +0200
Greg Kroah-Hartman <[email protected]> • #13780
CVE-2026-64255: wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers
Fri, 24 Jul 2026 17:31:29 +0200
Greg Kroah-Hartman <[email protected]> • #13779
CVE-2026-64245: fbdev: modedb: fix a possible UAF in fb_find_mode()
Fri, 24 Jul 2026 17:31:19 +0200
Greg Kroah-Hartman <[email protected]> • #13778
CVE-2026-64246: power: reset: linkstation-poweroff: fix use-after-free in the linkstation_poweroff_init()
Fri, 24 Jul 2026 17:31:20 +0200
Greg Kroah-Hartman <[email protected]> • #13777
CVE-2026-64244: drivers/base/memory: set mem->altmap after successful device registration
Fri, 24 Jul 2026 17:29:54 +0200
Greg Kroah-Hartman <[email protected]> • #13776
CVE-2026-64242: usb: gadget: net2280: Fix double free in probe error path
Fri, 24 Jul 2026 17:27:49 +0200
Greg Kroah-Hartman <[email protected]> • #13775
CVE-2026-64241: gpio: rockchip: teardown bugs and resource leaks
Fri, 24 Jul 2026 17:27:48 +0200
Greg Kroah-Hartman <[email protected]> • #13774
CVE-2026-64240: media: rc: igorplugusb: fix control request setup packet
Fri, 24 Jul 2026 17:27:47 +0200
Greg Kroah-Hartman <[email protected]> • #13773
CVE-2026-64239: mm/damon/sysfs-schemes: delete tried region in regions_rmdirs()
Fri, 24 Jul 2026 17:27:46 +0200
Greg Kroah-Hartman <[email protected]> • #13772
CVE-2026-64238: gpio: shared: fix deadlock on shared proxy's parent removal
Fri, 24 Jul 2026 17:27:45 +0200
Greg Kroah-Hartman <[email protected]> • #13771
CVE-2026-64237: Input: elan_i2c - validate firmware size before use
Fri, 24 Jul 2026 17:27:44 +0200
Greg Kroah-Hartman <[email protected]> • #13770
CVE-2026-64236: i2c: davinci: fix division by zero on missing clock-frequency
Fri, 24 Jul 2026 17:27:43 +0200
Greg Kroah-Hartman <[email protected]> • #13769
CVE-2026-64235: x86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines
Fri, 24 Jul 2026 17:27:42 +0200
Greg Kroah-Hartman <[email protected]> • #13768
CVE-2026-64243: ASoC: codecs: simple-mux: Fix enum control bounds check
Fri, 24 Jul 2026 17:27:50 +0200
Greg Kroah-Hartman <[email protected]> • #13767
CVE-2026-64233: usb: gadget: uvc: hold opts->lock across XU walks in uvc_function_bind
Fri, 24 Jul 2026 17:27:40 +0200
Greg Kroah-Hartman <[email protected]> • #13766
CVE-2026-64234: tty: serial: pch_uart: add check for dma_alloc_coherent()
Fri, 24 Jul 2026 17:27:41 +0200
Greg Kroah-Hartman <[email protected]> • #13765
CVE-2026-64217: netfs: Fix overrun check in netfs_extract_user_iter()
Fri, 24 Jul 2026 17:23:20 +0200
Greg Kroah-Hartman <[email protected]> • #13764
CVE-2026-64216: netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages()
Fri, 24 Jul 2026 17:23:19 +0200
Greg Kroah-Hartman <[email protected]> • #13763
CVE-2026-64215: drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send_perf_table
Fri, 24 Jul 2026 17:23:18 +0200
Greg Kroah-Hartman <[email protected]> • #13762
CVE-2026-64214: powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_work_raise()
Fri, 24 Jul 2026 17:23:17 +0200
Greg Kroah-Hartman <[email protected]> • #13761
CVE-2026-64213: hwmon: (lm90) Add lock protection to lm90_alert
Fri, 24 Jul 2026 17:23:16 +0200
Greg Kroah-Hartman <[email protected]> • #13760
CVE-2026-64212: wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it
Fri, 24 Jul 2026 17:23:15 +0200
Greg Kroah-Hartman <[email protected]> • #13759
CVE-2026-64211: srcu: Don't queue workqueue handlers to never-online CPUs
Fri, 24 Jul 2026 17:23:14 +0200
Greg Kroah-Hartman <[email protected]> • #13758
CVE-2026-64232: block: recompute nr_integrity_segments in blk_insert_cloned_request
Fri, 24 Jul 2026 17:23:35 +0200
Greg Kroah-Hartman <[email protected]> • #13757
CVE-2026-64231: drm/msm/dsi: don't dump registers past the mapped region
Fri, 24 Jul 2026 17:23:34 +0200
Greg Kroah-Hartman <[email protected]> • #13756
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.