org.kernel.vger.linux-cve-announce archive
613 archived articles, newest first (page 6 of 7). Latest articles →
CVE-2026-64332: USB: ulpi: fix memory leak on registration failure
Sat, 25 Jul 2026 10:49:09 +0200CVE-2026-64331: usbip: vudc: fix NULL deref in vep_dequeue()
Sat, 25 Jul 2026 10:49:08 +0200CVE-2026-64330: usb: typec: tcpm: Validate SVID index in svdm_consume_modes()
Sat, 25 Jul 2026 10:49:07 +0200CVE-2026-64329: usb: typec: ucsi: ccg: Fix use-after-free of ucsi on remove
Sat, 25 Jul 2026 10:49:06 +0200CVE-2026-64328: usb: gadget: f_fs: Fix DMA fence leak
Sat, 25 Jul 2026 10:49:05 +0200CVE-2026-64327: usb: gadget: f_fs: Initialize epfile->in early to fix endpoint direction checks
Sat, 25 Jul 2026 10:49:04 +0200CVE-2026-64326: block: skip sync_blockdev() on surprise removal in bdev_mark_dead()
Sat, 25 Jul 2026 10:49:03 +0200CVE-2026-64325: wifi: mt76: mt7921/mt7925: fix NULL dereference in CSA beacon
Sat, 25 Jul 2026 10:49:02 +0200CVE-2026-64324: udf: validate free block extents against the partition length
Sat, 25 Jul 2026 10:49:01 +0200CVE-2026-64323: udf: validate VAT header length against the VAT inode size
Sat, 25 Jul 2026 10:49:00 +0200CVE-2026-64314: crypto: chacha20poly1305 - validate poly1305 template argument
Sat, 25 Jul 2026 10:48:51 +0200CVE-2026-64280: fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region()
Sat, 25 Jul 2026 10:48:17 +0200CVE-2026-64289: iommufd: Set upper bounds on cache invalidation entry_num and entry_len
Sat, 25 Jul 2026 10:48:26 +0200CVE-2026-64288: KVM: arm64: nv: Avoid dereferencing NULL VNCR pseudo-TLB
Sat, 25 Jul 2026 10:48:25 +0200CVE-2026-64287: KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU
Sat, 25 Jul 2026 10:48:24 +0200CVE-2026-64286: KVM: arm64: Clear __hyp_running_vcpu when flushing the pKVM hyp vCPU
Sat, 25 Jul 2026 10:48:23 +0200CVE-2026-64285: KVM: SEV: Pin source page for write when adding CPUID data for SNP guest
Sat, 25 Jul 2026 10:48:22 +0200CVE-2026-64284: KVM: x86: Ensure vendor's exit handler runs before fastpath userspace exits
Sat, 25 Jul 2026 10:48:21 +0200CVE-2026-64312: crypto: pcrypt - restore callback for non-parallel fallback
Sat, 25 Jul 2026 10:48:49 +0200CVE-2026-64311: crypto: loongson - Remove broken and unused loongson-rng
Sat, 25 Jul 2026 10:48:48 +0200CVE-2026-64310: crypto: ccp - Do not initialize SNP for SEV ioctls
Sat, 25 Jul 2026 10:48:47 +0200CVE-2026-64283: KVM: guest_memfd: Treat memslot binding offset+size as unsigned values
Sat, 25 Jul 2026 10:48:20 +0200CVE-2026-64309: crypto: ccp - Do not initialize SNP for ioctl(SNP_COMMIT)
Sat, 25 Jul 2026 10:48:46 +0200CVE-2026-64308: crypto: ccp - Do not initialize SNP for ioctl(SNP_VLEK_LOAD)
Sat, 25 Jul 2026 10:48:45 +0200CVE-2026-64307: crypto: ccp - Do not initialize SNP for ioctl(SNP_CONFIG)
Sat, 25 Jul 2026 10:48:44 +0200CVE-2026-64306: crypto: drbg - Fix returning success on failure in CTR_DRBG
Sat, 25 Jul 2026 10:48:43 +0200CVE-2026-64305: crypto: qat - protect service table iterations with service_lock
Sat, 25 Jul 2026 10:48:42 +0200CVE-2026-64304: crypto: qat - validate RSA CRT component lengths
Sat, 25 Jul 2026 10:48:41 +0200CVE-2026-64303: spi: fsl-lpspi: terminate the RX channel on TX prepare failure path
Sat, 25 Jul 2026 10:48:40 +0200CVE-2026-64302: x86/mm: Fix freeing of PMD-sized vmemmap pages
Sat, 25 Jul 2026 10:48:39 +0200CVE-2026-64301: regulator: scmi: fix of_node refcount leak in scmi_regulator_probe()
Sat, 25 Jul 2026 10:48:38 +0200CVE-2026-64300: perf/aux: Fix page UAF in map_range()
Sat, 25 Jul 2026 10:48:37 +0200CVE-2026-64282: KVM: arm64: Don't leak PFN when kvm_translate_vncr() races MMU notifier
Sat, 25 Jul 2026 10:48:19 +0200CVE-2026-64299: tracing: Prevent out-of-bounds read in glob matching
Sat, 25 Jul 2026 10:48:36 +0200CVE-2026-64298: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC
Sat, 25 Jul 2026 10:48:35 +0200CVE-2026-64297: module: decompress: check return value of module_extend_max_pages()
Sat, 25 Jul 2026 10:48:34 +0200CVE-2026-64296: exfat: bound uniname advance in exfat_find_dir_entry()
Sat, 25 Jul 2026 10:48:33 +0200CVE-2026-64295: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access
Sat, 25 Jul 2026 10:48:32 +0200CVE-2026-64294: mm: do file ownership checks with the proper mount idmap
Sat, 25 Jul 2026 10:48:31 +0200CVE-2026-64293: iommufd: Use sizeof(*hdr) instead of sizeof(hdr) in veventq read
Sat, 25 Jul 2026 10:48:30 +0200CVE-2026-64292: iommufd: Move vevent memory allocation outside spinlock
Sat, 25 Jul 2026 10:48:29 +0200CVE-2026-64291: iommufd: Set veventq_depth upper bound
Sat, 25 Jul 2026 10:48:28 +0200CVE-2026-64290: iommufd: Break the loop on failure in iommufd_fault_fops_read()
Sat, 25 Jul 2026 10:48:27 +0200CVE-2026-64281: svcrdma: wake sq waiters when the transport closes
Sat, 25 Jul 2026 10:48:18 +0200CVE-2026-64256: xfs: don't wrap around quota ids in dqiterate
Sat, 25 Jul 2026 10:47:53 +0200CVE-2026-64265: fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req
Sat, 25 Jul 2026 10:48:02 +0200CVE-2026-64264: fuse-uring: fix EFAULT clobber in fuse_uring_commit
Sat, 25 Jul 2026 10:48:01 +0200CVE-2026-64263: fuse-uring: fix moving cancelled entry to ent_in_userspace list
Sat, 25 Jul 2026 10:48:00 +0200CVE-2026-64262: fuse-uring: end fuse_req on io-uring cancel task work
Sat, 25 Jul 2026 10:47:59 +0200CVE-2026-64261: fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues
Sat, 25 Jul 2026 10:47:58 +0200CVE-2026-64260: fuse-uring: Avoid queue->stopped races and set/read that value under lock
Sat, 25 Jul 2026 10:47:57 +0200CVE-2026-64259: fuse-uring: make a fuse_req on SQE commit only findable after memcpy
Sat, 25 Jul 2026 10:47:56 +0200CVE-2026-64279: i2c: core: fix adapter deregistration race
Sat, 25 Jul 2026 10:48:16 +0200CVE-2026-64278: i2c: imx-lpi2c: mark I2C adapter when hardware is powered down
Sat, 25 Jul 2026 10:48:15 +0200CVE-2026-64277: Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count
Sat, 25 Jul 2026 10:48:14 +0200CVE-2026-64276: Input: synaptics-rmi4 - bound the F30 keymap to the GPIO/LED count
Sat, 25 Jul 2026 10:48:13 +0200CVE-2026-64258: fuse-uring: remove request-less entries from ent_w_req_queue to fix NULL deref
Sat, 25 Jul 2026 10:47:55 +0200CVE-2026-64275: Input: elan_i2c - prevent division by zero and arithmetic underflow
Sat, 25 Jul 2026 10:48:12 +0200CVE-2026-64274: Input: goodix - clamp the device-reported contact count
Sat, 25 Jul 2026 10:48:11 +0200CVE-2026-64273: Input: iforce - bound the device-reported force-feedback effect index
Sat, 25 Jul 2026 10:48:10 +0200CVE-2026-64272: Input: mms114 - fix touch indexing for MMS134S and MMS136
Sat, 25 Jul 2026 10:48:09 +0200CVE-2026-64271: Input: touchwin - reset the packet index on every complete packet
Sat, 25 Jul 2026 10:48:08 +0200CVE-2026-64270: Input: mms114 - reject an oversized device packet size
Sat, 25 Jul 2026 10:48:07 +0200CVE-2026-64269: RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg
Sat, 25 Jul 2026 10:48:06 +0200CVE-2026-64268: RDMA/siw: bound Read Response placement to the RREAD length
Sat, 25 Jul 2026 10:48:05 +0200CVE-2026-64267: fuse: avoid 32-bit prune notification count wrap
Sat, 25 Jul 2026 10:48:04 +0200CVE-2026-64266: fuse: re-lock request before returning from fuse_ref_folio()
Sat, 25 Jul 2026 10:48:03 +0200CVE-2026-64257: smb: client: reject overlapping data areas in SMB2 responses
Sat, 25 Jul 2026 10:47:54 +0200CVE-2026-64254: NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR
Fri, 24 Jul 2026 17:31:28 +0200CVE-2026-64253: kernel/fork: clear PF_BLOCK_TS in copy_process()
Fri, 24 Jul 2026 17:31:27 +0200CVE-2026-64252: MIPS: DEC: Prevent initial console buffer from landing in XKPHYS
Fri, 24 Jul 2026 17:31:26 +0200CVE-2026-64251: pwrseq: core: fix use-after-free in pwrseq_debugfs_seq_next()
Fri, 24 Jul 2026 17:31:25 +0200CVE-2026-64250: LoongArch: Report dying CPU to RCU in stop_this_cpu()
Fri, 24 Jul 2026 17:31:24 +0200CVE-2026-64249: fpga: region: fix use-after-free in child_regions_with_firmware()
Fri, 24 Jul 2026 17:31:23 +0200CVE-2026-64248: MIPS: smp: report dying CPU to RCU in stop_this_cpu()
Fri, 24 Jul 2026 17:31:22 +0200CVE-2026-64247: KVM: x86: hyper-v: Bound the bank index when querying sparse banks
Fri, 24 Jul 2026 17:31:21 +0200CVE-2026-64255: wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers
Fri, 24 Jul 2026 17:31:29 +0200CVE-2026-64245: fbdev: modedb: fix a possible UAF in fb_find_mode()
Fri, 24 Jul 2026 17:31:19 +0200CVE-2026-64246: power: reset: linkstation-poweroff: fix use-after-free in the linkstation_poweroff_init()
Fri, 24 Jul 2026 17:31:20 +0200CVE-2026-64244: drivers/base/memory: set mem->altmap after successful device registration
Fri, 24 Jul 2026 17:29:54 +0200CVE-2026-64242: usb: gadget: net2280: Fix double free in probe error path
Fri, 24 Jul 2026 17:27:49 +0200CVE-2026-64241: gpio: rockchip: teardown bugs and resource leaks
Fri, 24 Jul 2026 17:27:48 +0200CVE-2026-64240: media: rc: igorplugusb: fix control request setup packet
Fri, 24 Jul 2026 17:27:47 +0200CVE-2026-64239: mm/damon/sysfs-schemes: delete tried region in regions_rmdirs()
Fri, 24 Jul 2026 17:27:46 +0200CVE-2026-64238: gpio: shared: fix deadlock on shared proxy's parent removal
Fri, 24 Jul 2026 17:27:45 +0200CVE-2026-64237: Input: elan_i2c - validate firmware size before use
Fri, 24 Jul 2026 17:27:44 +0200CVE-2026-64236: i2c: davinci: fix division by zero on missing clock-frequency
Fri, 24 Jul 2026 17:27:43 +0200CVE-2026-64235: x86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines
Fri, 24 Jul 2026 17:27:42 +0200CVE-2026-64243: ASoC: codecs: simple-mux: Fix enum control bounds check
Fri, 24 Jul 2026 17:27:50 +0200CVE-2026-64233: usb: gadget: uvc: hold opts->lock across XU walks in uvc_function_bind
Fri, 24 Jul 2026 17:27:40 +0200CVE-2026-64234: tty: serial: pch_uart: add check for dma_alloc_coherent()
Fri, 24 Jul 2026 17:27:41 +0200CVE-2026-64217: netfs: Fix overrun check in netfs_extract_user_iter()
Fri, 24 Jul 2026 17:23:20 +0200CVE-2026-64216: netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages()
Fri, 24 Jul 2026 17:23:19 +0200CVE-2026-64215: drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send_perf_table
Fri, 24 Jul 2026 17:23:18 +0200CVE-2026-64214: powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_work_raise()
Fri, 24 Jul 2026 17:23:17 +0200CVE-2026-64213: hwmon: (lm90) Add lock protection to lm90_alert
Fri, 24 Jul 2026 17:23:16 +0200CVE-2026-64212: wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it
Fri, 24 Jul 2026 17:23:15 +0200CVE-2026-64211: srcu: Don't queue workqueue handlers to never-online CPUs
Fri, 24 Jul 2026 17:23:14 +0200CVE-2026-64232: block: recompute nr_integrity_segments in blk_insert_cloned_request
Fri, 24 Jul 2026 17:23:35 +0200CVE-2026-64231: drm/msm/dsi: don't dump registers past the mapped region
Fri, 24 Jul 2026 17:23:34 +0200
lmpx.com only provides a reader for public news (NNTP) servers. It is not
affiliated with the servers or forums shown here and is not responsible for
the content of articles, which is written by their respective authors.