2026-08-15 12:30 REJECTED: CVE-2022-48877: f2fs: let's avoid panic if extent_tree is not created
2026-08-15 12:27 CVE-2026-74577: net: mpls: initialize rtm_tos in mpls_getroute()
2026-08-15 12:27 CVE-2026-74576: mm/slab: prevent unbounded recursion in free path with new kmalloc type
2026-08-15 12:27 CVE-2026-74575: thunderbolt: Prevent XDomain delayed work use-after-free on disconnect
2026-08-15 12:27 CVE-2026-74574: dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open()
2026-08-15 12:27 CVE-2026-74573: iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE
2026-08-15 12:27 CVE-2026-74572: btrfs: zoned: fix deadlock between metadata writeback and transaction commit
2026-08-15 12:27 CVE-2026-74571: btrfs: skip global block reserve accounting for rescue mounts
2026-08-15 12:27 CVE-2026-74570: ntfs: harden runlist realloc size calculations
2026-08-15 12:27 CVE-2026-74569: netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp()
2026-08-15 12:27 CVE-2026-74568: KVM: arm64: vgic: Fix race between LPI release and re-registration
2026-08-15 12:27 CVE-2026-74567: keys: fix out-of-bounds read in keyring_get_key_chunk()
2026-08-15 12:27 CVE-2026-74566: keys: make keyring key-chunk byte order agree with keyring_diff_objects()
2026-08-15 12:27 CVE-2026-74565: netfilter: nf_tables: make nft_object rhltable per table
2026-08-15 12:27 CVE-2026-74564: netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH
2026-08-15 12:27 CVE-2026-74563: rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check()
2026-08-15 12:27 CVE-2026-74562: nexthop: take nh->lock for f6i_list walks in replace check and notify
2026-08-15 12:27 CVE-2026-74561: nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush
2026-08-15 12:27 CVE-2026-74560: xsk: fix buffer leak in xsk_drop_skb() for AF_XDP multi-buffer Tx
2026-08-15 12:27 CVE-2026-74559: xsk: drain continuation descs after overflow in xsk_build_skb()
2026-08-15 12:27 CVE-2026-74558: xsk: reclaim invalid Tx descriptors in ZC batch path
2026-08-15 12:27 CVE-2026-74557: scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer
2026-08-15 12:27 CVE-2026-74556: scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer
2026-08-15 12:27 CVE-2026-74555: scsi: libsas: Fix HA resume deadlock and hisi_sas disk-wake race
2026-08-15 12:27 CVE-2026-74554: wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup()
2026-08-15 12:27 CVE-2026-74553: hwmon: (nct6775-core) Fix number of temperature registers for NCT6116
2026-08-15 12:27 CVE-2026-74552: hwmon: (lm90) Only report alarms if driver is ready
2026-08-15 12:27 CVE-2026-74551: hwmon: (nzxt-smart2) DMA-align output buffer
2026-08-15 12:27 CVE-2026-74550: net: do not send ICMP/NDISC Redirects when peer allocation fails
2026-08-15 12:27 CVE-2026-74549: hwmon: (nct6775-core) Prevent access to unsupported weight registers
2026-08-15 12:27 CVE-2026-74548: forcedeth: fix UAF of txrx_stats in nv_remove
2026-08-15 12:27 CVE-2026-74547: hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread
2026-08-15 12:27 CVE-2026-74546: hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read
2026-08-15 12:27 CVE-2026-74545: rtase: fix double free of multi-frag skb on DMA map failure
2026-08-15 12:27 CVE-2026-74544: net/sched: cls_u32: validate offshift to prevent shift-out-of-bounds
2026-08-15 12:27 CVE-2026-74543: net: udp_tunnel: fix memory leak in udp_tunnel_nic_unregister()
2026-08-15 12:27 CVE-2026-74542: netfs: Fix folio_queue ENOMEM in writeback by adding a mempool
2026-08-15 12:27 CVE-2026-74541: Bluetooth: ISO: clear iso_data always when detaching conn from hcon
2026-08-15 12:27 CVE-2026-74540: Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp
2026-08-15 12:27 CVE-2026-74539: Bluetooth: ISO: lock sk in iso_sock_getname
2026-08-15 12:26 CVE-2026-74538: Bluetooth: ISO: lock sk in iso_connect_ind
2026-08-15 12:26 CVE-2026-74537: Bluetooth: ISO: hold sk properly in iso_conn_ready
2026-08-15 12:26 CVE-2026-74536: Bluetooth: ISO: fix leaking sk after socket release
2026-08-15 12:26 CVE-2026-74535: Bluetooth: ISO: avoid deadlocks in iso_sock_timeout
2026-08-15 12:26 CVE-2026-74534: Bluetooth: ISO: fix refcounting of iso_conn
2026-08-15 12:26 CVE-2026-74533: Bluetooth: ISO: fix race of kfree vs kref_get_unless_zero
2026-08-15 12:26 CVE-2026-74532: Bluetooth: btintel: Validate length before parsing diagnostics TLV
2026-08-15 12:26 CVE-2026-74531: Bluetooth: hci_conn: hold conn reference in abort_conn_sync()
2026-08-15 12:26 CVE-2026-74530: Bluetooth: hci_sync: hold conn in hci_connect_big_sync() callback
2026-08-15 12:26 CVE-2026-74529: Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback
2026-08-15 12:26 CVE-2026-74528: Bluetooth: hci_sync: hold conn in hci_past_sync() callback
2026-08-15 12:26 CVE-2026-74527: octeontx2-af: Block VFs from clobbering special CGX PKIND state
2026-08-15 12:26 CVE-2026-74526: scsi: mpi3mr: Fix potential deadlock in mpi3mr_fault_uevent_emit
2026-08-15 12:26 CVE-2026-74525: net: sxgbe: free TX rings on RX allocation failure
2026-08-15 12:26 CVE-2026-74524: riscv: mm: Fix out-of-bounds page-table walk during memory hot-remove
2026-08-15 12:26 CVE-2026-74523: qede: sync udp_tunnel ports outside qede_lock in the recovery path
2026-08-15 12:26 CVE-2026-74522: ksmbd: fix use-after-free in __close_file_table_ids()
2026-08-15 12:26 CVE-2026-74521: ksmbd: use memcmp() to compare ClientGUIDs
2026-08-15 12:26 CVE-2026-74520: iommu/iommufd: Fix IOPF group ownership UAF
2026-08-15 12:26 CVE-2026-74519: pinctrl: devicetree: don't free uninitialized dev_name on error path
2026-08-15 12:26 CVE-2026-74518: mm/hugetlb: fix list corruption in allocate_file_region_entries()
2026-08-15 12:26 CVE-2026-74517: KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs
2026-08-15 12:26 CVE-2026-74516: KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active
2026-08-15 12:26 CVE-2026-74515: KVM: s390: pci: Reject adapter interrupt forwarding if already enabled
2026-08-15 12:26 CVE-2026-74514: KVM: s390: pci: Fix memory accounting for pinned/unpinned pages
2026-08-15 12:26 CVE-2026-74513: dibs: fix use-after-free of dmb_node in loopback attach/detach/unregister
2026-08-15 12:26 CVE-2026-74512: audit: fix potential use-after-free in audit_del_rule()
2026-08-15 12:26 CVE-2026-74511: Bluetooth: mgmt: fix pending command UAF in EIR updates
2026-08-15 12:26 CVE-2026-74510: Bluetooth: mgmt: fix UAF in pair command cancellation
2026-08-15 12:26 CVE-2026-74509: Bluetooth: hci_sync: Fix advertising data UAFs
2026-08-15 12:26 CVE-2026-74508: Bluetooth: HIDP: reject frames without a transaction header
2026-08-15 12:26 CVE-2026-74507: Bluetooth: HIDP: validate numbered report payloads
2026-08-15 12:26 CVE-2026-74506: afs: Fix UAF when sending a message
2026-08-15 12:26 CVE-2026-74505: ALSA: 6fire: Fix UAF at error handling during probe
2026-08-15 12:26 CVE-2026-74504: ALSA: seq: Fix division by zero in initialize_timer()
2026-08-15 12:26 CVE-2026-74503: ALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes
2026-08-15 12:26 CVE-2026-74502: ALSA: ump: fix double free of out_cvts on rawmidi error
2026-08-15 12:26 CVE-2026-74501: ALSA: usb-audio: fix use-after-free in ump_to_endpoint()
2026-08-15 12:26 CVE-2026-74500: ALSA: usb-audio: fix stack info leak in RME Digiface status
2026-08-15 12:26 CVE-2026-74499: ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output()
2026-08-15 12:26 CVE-2026-74498: ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set
2026-08-15 12:26 CVE-2026-74497: ALSA: usb-audio: Clamp frame size in implicit-feedback mode
2026-08-15 12:26 CVE-2026-74496: fou: Fix use-after-free in fou_create()
2026-08-15 12:26 CVE-2026-74495: igbvf: Fix leak in TX DMA error cleanup
2026-08-15 12:26 CVE-2026-74494: ksmbd: reject repeated SMB2 NEGOTIATE requests
2026-08-15 12:26 CVE-2026-74493: net/smc: fix socket use-after-free during link group termination
2026-08-15 12:26 CVE-2026-74492: netfilter: ipset: do not update comments from kernel-side hash adds
2026-08-15 12:26 CVE-2026-74491: of/address: Fix NULL bus dereference in of_pci_range_parser_one()
2026-08-15 12:26 CVE-2026-74490: tipc: avoid use-after-free in poll trace queue dumps
2026-08-15 12:26 CVE-2026-74489: wifi: mac80211: fix tid_tx use-after-free on BA session stop
2026-08-15 12:26 CVE-2026-74488: wifi: mwifiex: use the subframe length when parsing A-MSDU TDLS frames
2026-08-15 12:26 CVE-2026-74487: binfmt_misc: restore write access when removing an entry
2026-08-15 12:26 CVE-2026-74486: binfmt_misc: use exe_file_deny_write_access() for the interpreter clone
2026-08-15 12:26 CVE-2026-74485: binfmt_misc: reject a flag character as the field delimiter
2026-08-15 12:26 CVE-2026-74484: binfmt_misc: don't let an 'F' entry pin its own instance
2026-08-15 12:26 CVE-2026-74483: binfmt_misc: don't leak the user namespace when the mount fails
2026-08-15 12:26 CVE-2026-74482: mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios
2026-08-15 12:26 CVE-2026-74481: mm/page_reporting: use system_freezable_wq to fix UAF during suspend
2026-08-15 12:26 CVE-2026-74480: net: bridge: stop fast-leave after deleting a port group
2026-08-15 12:26 CVE-2026-74479: net: pktgen: fix proc entry use-after-free
2026-08-15 12:25 CVE-2026-74478: um: vector: fix use-after-free in vector_mmsg_rx()
2026-08-15 12:25 CVE-2026-74477: uprobes: Fix NULL pointer dereference in hprobe_expire()
2026-08-15 12:25 CVE-2026-74476: veth: convert frag_list skbs before running XDP
2026-08-15 12:25 CVE-2026-74475: vxlan: use neigh_ha_snapshot() in route_shortcircuit()
2026-08-15 12:25 CVE-2026-74474: vxlan: use pskb_network_may_pull() for transmit path header pulls
2026-08-15 12:25 CVE-2026-74473: vxlan: use pskb_network_may_pull() in route_shortcircuit()
2026-08-15 12:25 CVE-2026-74472: ublk: reset kernel-owned dev_info fields in ublk_ctrl_add_dev()
2026-08-15 12:25 CVE-2026-74471: tracing: Check return value of __register_event() in trace_module_add_events()
2026-08-15 12:25 CVE-2026-74470: scsi: scsi_debug: Fix REPORT ZONES alloc_len underflow OOB write
2026-08-15 12:25 CVE-2026-74469: sctp: prevent peer transport count overflow
2026-08-15 12:25 CVE-2026-74468: gpio: pch: use raw_spinlock_t for the register lock
2026-08-15 12:25 CVE-2026-74467: s390/qeth: Check CAP_NET_ADMIN for private ioctls
2026-08-15 12:25 CVE-2026-74466: s390/zcrypt: Close speculative mem read possibility
2026-08-15 12:25 CVE-2026-74465: net: openvswitch: fix potential UAF on meter attach failure
2026-08-15 12:25 CVE-2026-74464: net: openvswitch: fix skb leak on flow key update failure during ct
2026-08-15 12:25 CVE-2026-74463: i2c: jz4780: Cache host clock rate at probe to prevent CCF prepare_lock deadlock
2026-08-15 12:25 CVE-2026-74462: i2c: imx: mark I2C adapter when hardware is powered down
2026-08-15 12:25 CVE-2026-74461: i2c: imx: Cancel hrtimer before clearing slave pointer
2026-08-15 12:25 CVE-2026-74460: can: ems_usb: validate CPC message lengths
2026-08-15 12:25 CVE-2026-74459: can: etas_es58x: es58x_read_bulk_callback(): fix RX buffer leak on URB resubmit failure
2026-08-15 12:25 CVE-2026-74458: can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents
2026-08-15 12:25 CVE-2026-74457: can: peak_usb: add bounds check for USB channel index
2026-08-15 12:25 CVE-2026-74456: can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error
2026-08-15 12:25 CVE-2026-74455: can: peak_usb: validate uCAN receive record lengths
2026-08-15 12:25 CVE-2026-74454: drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size
2026-08-15 12:25 CVE-2026-74453: drm/vc4: Zero the tile state data array before each BIN job
2026-08-15 12:25 CVE-2026-74452: drm/panthor: reject firmware sections with oversized data
2026-08-15 12:25 CVE-2026-74451: drm/panthor: validate firmware interface structure sizes
2026-08-15 12:25 CVE-2026-74450: drm/amd/pm: fix pptable use-after-free
2026-08-15 12:25 CVE-2026-74449: drm/amd/display: Fix divide-by-zero in calculate_mcache_setting on zero viewport
2026-08-15 12:25 CVE-2026-74448: drm/amdkfd: fix QID bit leak in pqm_create_queue()
2026-08-15 12:25 CVE-2026-74447: drm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment
2026-08-15 12:25 CVE-2026-74446: drm/amdkfd: hold event_mutex while checkpointing CRIU events
2026-08-15 12:25 CVE-2026-74445: drm/vmwgfx: reject DX_BIND_QUERY without a DX context
2026-08-15 12:25 CVE-2026-74444: drm/vmwgfx: validate DRAW_PRIMITIVES header size before division
2026-08-15 12:25 CVE-2026-74443: drm/vmwgfx: bound DMA command body size against suffix pointer
2026-08-15 12:25 CVE-2026-74442: drm/vmwgfx: avoid destroy_workqueue(NULL) on vkms init failure
2026-08-15 12:25 CVE-2026-74441: usb: typec: ucsi: Fix race condition and ordering in port unregistration
2026-08-15 12:25 CVE-2026-74440: drm/xe: Wait on external BO kernel fences in exec IOCTL
2026-08-15 6:12 CVE-2026-74439: iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry
2026-08-15 6:12 CVE-2026-74438: crypto: sun4i-ss - Remove insecure and unused rng_alg
2026-08-15 6:12 CVE-2026-74437: media: uvcvideo: Fix deadlock if uvc_status_stop is called from async_ctrl.work
2026-08-15 6:12 CVE-2026-74436: rxrpc: serialize kernel accept preallocation with socket teardown
2026-08-15 6:12 CVE-2026-74435: rxrpc: rxrpc_verify_data ensure rx_dec_buffer alloc
2026-08-15 6:12 CVE-2026-74434: rxrpc: Don't move a peeked OOB message onto the pending queue
2026-08-15 6:12 CVE-2026-74433: rxrpc: Fix UAF in rxgk_issue_challenge()
2026-08-15 6:12 CVE-2026-74432: rxrpc: Fix leak of released call in recvmsg(MSG_PEEK)
2026-08-15 6:12 CVE-2026-74431: rxrpc: Fix potential infinite loop in rxrpc_recvmsg()
2026-08-15 6:12 CVE-2026-74430: rxrpc: Fix ACKALL packet handling
2026-08-15 6:12 CVE-2026-74429: rxrpc: Fix the reception of a reply packet before data transmission
2026-08-15 6:12 CVE-2026-74428: rxrpc: Fix double unlock in rxrpc_recvmsg()
2026-08-15 6:12 CVE-2026-74427: afs: Fix netns teardown to cancel the preallocation charger
2026-08-15 6:12 CVE-2026-74426: afs: fix NULL pointer dereference in afs_get_tree()
2026-08-15 6:12 CVE-2026-74425: afs: handle CB.InitCallBackState3 requests without a server record
2026-08-15 6:12 CVE-2026-74424: fbcon: fix NULL pointer dereference for a console without vc_data
2026-08-15 6:12 CVE-2026-74423: accel/amdxdna: Fix leak when pinning ubuf pages
2026-08-15 6:12 CVE-2026-74422: drm/rockchip: inno-hdmi: Switch to drmm_kzalloc()
2026-08-15 6:12 CVE-2026-74421: drm/rockchip: dw_dp: Switch to drmm_kzalloc()
2026-08-15 6:12 CVE-2026-74420: drm/gpusvm: Reject VMAs with VM_IO or VM_PFNMAP when creating SVM ranges
2026-08-15 6:12 CVE-2026-74419: accel/amdxdna: Adjust size for copy_to_user()
2026-08-15 6:12 CVE-2026-74418: dma-fence: Fix potential tracepoint null pointer dereferences
2026-08-15 6:12 CVE-2026-74417: drm/radeon: fix integer overflow in radeon_align_pitch()
2026-08-15 6:12 CVE-2026-74416: drm/radeon: fix memory leak in radeon_ring_restore() on lock failure
2026-08-15 6:12 CVE-2026-74415: spi: atcspi200: fix use-after-free when driver unbind
2026-08-15 6:12 CVE-2026-74414: hfsplus: Remove the duplicate attr inode dirty marking action
2026-08-15 6:12 CVE-2026-74413: wifi: rtw89: fix wrong pci_get_drvdata type in AER handlers
2026-08-15 6:12 CVE-2026-74412: wifi: rtw88: fix wrong pci_get_drvdata type in AER handlers
2026-08-15 6:12 CVE-2026-74411: wifi: rtw89: Correct data type for scan index to avoid infinite loop
2026-08-15 6:12 CVE-2026-74410: wifi: rtw88: fix OOB read from firmware RX descriptor exceeding DMA buffer
2026-08-15 6:12 CVE-2026-74409: wifi: rtw89: add bounds check on firmware mac_id in link lookup
2026-08-15 6:12 CVE-2026-74408: wifi: ath9k: fix OOB access from firmware tx status queue ID
2026-08-15 6:12 CVE-2026-74407: wifi: ath11k: cancel SSR work items during PCI shutdown
2026-08-15 6:12 CVE-2026-74406: vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive().
2026-08-15 6:12 CVE-2026-74405: OPP: Fix race between OPP addition and lookup
2026-08-15 6:12 CVE-2026-74404: crypto: ccp - Fix snp_filter_reserved_mem_regions() off-by-one
2026-08-15 6:12 CVE-2026-74403: crypto: ccp - Check for page allocation failure correctly in TIO
2026-08-15 6:12 CVE-2026-74402: crypto: atmel-sha204a - fix blocking and non-blocking rng logic
2026-08-15 6:12 CVE-2026-74401: dlm: fix add msg handle in send_queue ordered
2026-08-15 6:12 CVE-2026-74400: bpf: fix crash in bpf_[set|remove]_dentry_xattr for negative dentries
2026-08-15 6:12 CVE-2026-74399: evm: terminate and bound the evm_xattrs read buffer
2026-08-15 6:12 CVE-2026-74398: ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD
2026-08-15 6:12 CVE-2026-74397: IB/mlx5: Fix transport-domain rollback and initialize lb mutex earlier
2026-08-15 6:12 CVE-2026-74396: RDMA/mlx5: Fix UMR XLT cleanup on ODP populate failure
2026-08-15 6:12 CVE-2026-74395: RDMA/mlx5: Fix devx subscribe-event unwind NULL dereference
2026-08-15 6:12 CVE-2026-74394: RDMA/srpt: fix integer overflow in immediate data length check
2026-08-15 6:12 CVE-2026-74393: drm/syncobj: Fix memory leak in drm_syncobj_find_fence()
2026-08-15 6:11 CVE-2026-74392: dm: limit target bio polling to one shot
2026-08-15 6:11 CVE-2026-74391: tracing: Bound synthetic-field strings with seq_buf
2026-08-15 6:11 CVE-2026-74390: RDMA/irdma: Fix out-of-bounds write in irdma_copy_user_pgaddrs
2026-08-15 6:11 CVE-2026-74389: RDMA/hns: Fix log flood after cmd_mbox failure
2026-08-15 6:11 CVE-2026-74388: ALSA: seq: oss: Fix UAF at handling events with embedded SysEx data
2026-08-15 6:11 CVE-2026-74383: nvme-pci: fix out-of-bounds access in nvme_setup_descriptor_pools
2026-08-15 6:11 CVE-2026-74382: net/sched: cls_bpf: prevent unbounded recursion in offload rollback
2026-08-15 6:11 CVE-2026-74381: gpu: host1x: Allow entries in BO caches to be freed
2026-08-15 6:11 CVE-2026-74380: gpu: host1x: Fix iommu_map_sgtable() return value check
2026-08-15 6:11 CVE-2026-74379: dax/kmem: account for partial discontiguous resource upon removal
2026-08-15 6:11 CVE-2026-74378: RDMA/rxe: Fix TOCTOU heap overflow in get_srq_wqe
2026-08-15 6:11 CVE-2026-74377: RDMA/rxe: Copy WQE to local buffer in non-SRQ receive path
2026-08-15 6:11 CVE-2026-74376: md/raid10: reset read_slot when reusing r10bio for discard
2026-08-15 6:11 CVE-2026-74374: md/raid1,raid10: fix error-path detection with md_cloned_bio()
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).