569 Total CVEs
314 AI Analyzed
6 CISA KEV
80 Critical
All Vendors
Showing 1-569 of 569 CVEs
CVE-2026-9155
Analyzed
8.8
Linux InsightConnect Sed Plugin

OS Command Injection vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via th...

2026-06-25
CVE-2026-8449
Analyzed
8.8
Linux ksmbd contains

Linux ksmbd contains a remote memory corruption vulnerability in the ACL inheritance path that allows remote clients with directory creation permissio...

2026-05-13
CVE-2026-74576
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mm/slab: prevent unbounded recursion in free path with new kmalloc type Commit 2...

2026-08-17
CVE-2026-74575
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Prevent XDomain delayed work use-after-free on disconnect tb_xdp_ha...

2026-08-17
CVE-2026-74574
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() The failed_d...

2026-08-17
CVE-2026-74572
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix deadlock between metadata writeback and transaction commit Whe...

2026-08-17
CVE-2026-74565
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: make nft_object rhltable per table The nft_object rhltable...

2026-08-17
CVE-2026-74563
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check() rds_...

2026-08-17
CVE-2026-74562
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nexthop: take nh->lock for f6i_list walks in replace check and notify fib6_check...

2026-08-17
CVE-2026-74561
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush nh_rt_cache_flush() w...

2026-08-17
CVE-2026-74557
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer iscsi_scsi_cmd_rs...

2026-08-17
CVE-2026-74554
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup() ath12k...

2026-08-17
CVE-2026-74551
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: hwmon: (nzxt-smart2) DMA-align output buffer Sashiko reports: When send_output_...

2026-08-17
CVE-2026-74550
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: do not send ICMP/NDISC Redirects when peer allocation fails When inet_getpe...

2026-08-17
CVE-2026-74549
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775-core) Prevent access to unsupported weight registers Sashiko rep...

2026-08-17
CVE-2026-74548
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: forcedeth: fix UAF of txrx_stats in nv_remove nv_remove() frees the per-CPU txrx...

2026-08-17
CVE-2026-74544
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: validate offshift to prevent shift-out-of-bounds u32_change(...

2026-08-17
CVE-2026-74541
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: clear iso_data always when detaching conn from hcon When setting...

2026-08-17
CVE-2026-74540
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp l2cap_le_connect_rsp() obtains...

2026-08-17
CVE-2026-74539
Analyzed
8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: lock sk in iso_sock_getname Accessing iso_pi(sk)->conn requires...

2026-08-17
CVE-2026-74538
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: lock sk in iso_connect_ind Accessing iso_pi(sk)->conn requires l...

2026-08-17
CVE-2026-74537
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: hold sk properly in iso_conn_ready sk deref in iso_conn_ready mu...

2026-08-17
CVE-2026-74535
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: avoid deadlocks in iso_sock_timeout iso_sock_timeout() takes loc...

2026-08-17
CVE-2026-74534
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix refcounting of iso_conn iso_conn_del() and iso_chan_del() ha...

2026-08-17
CVE-2026-74533
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix race of kfree vs kref_get_unless_zero hci_conn::iso_data is...

2026-08-17
CVE-2026-74531
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: hold conn reference in abort_conn_sync() There is theoretic...

2026-08-17
CVE-2026-74530
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_connect_big_sync() callback There is theor...

2026-08-17
CVE-2026-74529
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback There is theore...

2026-08-17
CVE-2026-74528
Analyzed
8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn in hci_past_sync() callback Avoids giving freed p...

2026-08-17
CVE-2026-74527
Analyzed
8.8
Linux Kernel (octeontx2-af)

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Block VFs from clobbering special CGX PKIND state PF and VF NIX LF...

2026-08-17
CVE-2026-74523
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: qede: sync udp_tunnel ports outside qede_lock in the recovery path A TX timeout...

2026-08-17
CVE-2026-74522
Analyzed
8.8
Linux Kernel (ksmbd)

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __close_file_table_ids() A ksmbd_file can remain al...

2026-08-17
CVE-2026-74520
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: iommu/iommufd: Fix IOPF group ownership UAF iopf_group_alloc() links each last-p...

2026-08-17
CVE-2026-74519
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: pinctrl: devicetree: don't free uninitialized dev_name on error path dt_remember...

2026-08-17
CVE-2026-74518
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix list corruption in allocate_file_region_entries() allocate_file_...

2026-08-17
CVE-2026-74516
Analyzed
8.2
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active A...

2026-08-17
CVE-2026-74515
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Reject adapter interrupt forwarding if already enabled The MPCIF...

2026-08-17
CVE-2026-74513
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: dibs: fix use-after-free of dmb_node in loopback attach/detach/unregister dibs_l...

2026-08-17
CVE-2026-74512
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: audit: fix potential use-after-free in audit_del_rule() `audit_del_rule()` destr...

2026-08-17
CVE-2026-74511
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix pending command UAF in EIR updates MGMT_OP_SET_LOCAL_NAME i...

2026-08-17
CVE-2026-74510
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix UAF in pair command cancellation The pairing completion and...

2026-08-17
CVE-2026-74509
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix advertising data UAFs hci_find_adv_instance() returns a...

2026-08-17
CVE-2026-74508
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: reject frames without a transaction header hidp_recv_ctrl_frame...

2026-08-17
CVE-2026-74506
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: afs: Fix UAF when sending a message In afs_make_call(), there's a race with asyn...

2026-08-17
CVE-2026-74503
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes snd_timer_clos...

2026-08-17
CVE-2026-74497
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Clamp frame size in implicit-feedback mode snd_usb_handle_sync_...

2026-08-17
CVE-2026-74496
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: fou: Fix use-after-free in fou_create() fou_create() publishes struct fou throug...

2026-08-17
CVE-2026-74492
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: do not update comments from kernel-side hash adds mtype_resize...

2026-08-17
CVE-2026-74490
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tipc: avoid use-after-free in poll trace queue dumps TIPC socket tracepoints dum...

2026-08-17
CVE-2026-74489
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix tid_tx use-after-free on BA session stop ieee80211_stop_tx_b...

2026-08-17
CVE-2026-74488
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: use the subframe length when parsing A-MSDU TDLS frames mwifiex_1...

2026-08-17
CVE-2026-74482
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios __folio_...

2026-08-17
CVE-2026-74481
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mm/page_reporting: use system_freezable_wq to fix UAF during suspend During PM f...

2026-08-17
CVE-2026-74479
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: pktgen: fix proc entry use-after-free pktgen_change_name() replaces pkt_dev...

2026-08-17
CVE-2026-74471
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tracing: Check return value of __register_event() in trace_module_add_events() t...

2026-08-17
CVE-2026-74470
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: scsi: scsi_debug: Fix REPORT ZONES alloc_len underflow OOB write resp_report_zon...

2026-08-17
CVE-2026-74469
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: sctp: prevent peer transport count overflow sctp_assoc_add_peer() increments the...

2026-08-17
CVE-2026-74467
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: s390/qeth: Check CAP_NET_ADMIN for private ioctls Gate the SIOCDEVPRIVATE ioctl...

2026-08-17
CVE-2026-74465
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix potential UAF on meter attach failure While attaching a ne...

2026-08-17
CVE-2026-74461
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: i2c: imx: Cancel hrtimer before clearing slave pointer In i2c_imx_unreg_slave(),...

2026-08-17
CVE-2026-74456
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit...

2026-08-17
CVE-2026-74454
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size vc4_ov...

2026-08-17
CVE-2026-74453
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Zero the tile state data array before each BIN job The binner BO is a s...

2026-08-17
CVE-2026-74452
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: reject firmware sections with oversized data In panthor_fw_load_sec...

2026-08-17
CVE-2026-74451
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: validate firmware interface structure sizes iface_fw_to_cpu_addr()...

2026-08-17
CVE-2026-74444
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: validate DRAW_PRIMITIVES header size before division vmw_cmd_draw()...

2026-08-17
CVE-2026-74443
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: bound DMA command body size against suffix pointer vmw_cmd_dma() loc...

2026-08-17
CVE-2026-74440
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Wait on external BO kernel fences in exec IOCTL Before arming a user job...

2026-08-17
CVE-2026-6859
8.8
Linux Multiple Products

A flaw was found in InstructLab

2026-04-23
CVE-2026-68454
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Fix handling of AIF enable without AISB When a guest seeks to re...

2026-08-14
CVE-2026-68134
Analyzed
7.3
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ptp: ptp_s390: Add missing facility check Only register the physical clock when...

2026-08-20
CVE-2026-68131
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rbd: Reset positive result codes to zero in object map update path In a reply me...

2026-08-20
CVE-2026-68128
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ice: reject out-of-range ptype in ice_parser_profile_init set_bit(rslt->ptype, p...

2026-08-20
CVE-2026-68125
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mac802154: llsec: reject frames shorter than the authentication tag llsec_do_dec...

2026-08-20
CVE-2026-68124
Analyzed
9.6
Linux Kernel

A buffer overflow vulnerability in the Linux kernel MCTP serial driver allows local attackers to trigger arbitrary memory corruption via crafted zero-...

2026-08-20
CVE-2026-68121
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: pppoe: reload header pointer after dev_hard_header() pppoe_sendmsg() saves a poi...

2026-08-20
CVE-2026-68120
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rtase: Workaround for TX hang caused by hardware packet parsing The hardware per...

2026-08-20
CVE-2026-68118
Analyzed
8.2
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tcp: challenge ACK for non-exact RST in SYN-RECEIVED The SYN-RECEIVED request-so...

2026-08-20
CVE-2026-68116
Analyzed
7.9
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: vxlan: mdb: Fix source list corruption on a failed replace When replacing the so...

2026-08-20
CVE-2026-68100
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl set_ntacl_dacl()...

2026-08-19
CVE-2026-68098
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: bound DACL dedup walk to copied ACEs set_ntacl_dacl() can stop copying AC...

2026-08-19
CVE-2026-68097
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ACE size against SID sub-authorities set_ntacl_dacl() validates...

2026-08-19
CVE-2026-67436
Analyzed
8.3
Linux monitoring-plugins

Linuxfabrik monitoring-plugins provides Python monitoring plugins for Icinga, Nagios, and related monitoring systems

2026-07-30
CVE-2026-64600
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: xfs: resample the data fork mapping after cycling ILOCK xfs_reflink_fill_{cow_ho...

2026-08-09
CVE-2026-64564
Analyzed
9.8
Linux Kernel

A use-after-free vulnerability in the Linux kernel SCTP implementation, known as SCTPhantom, allows local privilege escalation and potential container...

2026-08-13
CVE-2026-64563
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rhashtable: clear stale iter->p on table restart rhashtable_walk_start_check() h...

2026-08-13
CVE-2026-64562
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Hide shadow VMCS right after VMCLEAR free_nested() frees the shadow V...

2026-08-13
CVE-2026-64561
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available Che...

2026-08-13
CVE-2026-64557
Analyzed
8.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_new_connection_cb() l2cap_soc...

2026-07-30
CVE-2026-64556
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: perf/core: Detach event groups during remove_on_exec perf_event_remove_on_exec()...

2026-08-03
CVE-2026-64555
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops() kvm_hyp_handle_mop...

2026-08-21
CVE-2026-64554
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment() br_ip6_fragmen...

2026-08-21
CVE-2026-64552
8.4
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix len check in receive_big() receive_big() bounds the device-annou...

2026-08-21
CVE-2026-64551
9.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: sctp: validate STALE_COOKIE cause length before reading staleness When an ERROR...

2026-08-21
CVE-2026-64547
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: usb: net1080: validate packet_len before pad-byte access in rx_fixup For an...

2026-08-03
CVE-2026-64540
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup() genelink_rx_fixup(...

2026-08-03
CVE-2026-64539
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD eir_create_adv_...

2026-08-03
CVE-2026-64532
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound NTFS_DE view.data_off in UpdateRecordData{Root,Allocation} In do...

2026-08-03
CVE-2026-64530
Analyzed
9.8
Linux Kernel

A use-after-free vulnerability in the Linux kernel network scheduler allows local attackers to trigger memory corruption via improper handling of TC_A...

2026-07-27
CVE-2026-64529
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - remove unused character device and IOCTLs The QAT driver exposes a...

2026-07-27
CVE-2026-64524
Analyzed
7.7
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/hyperv: validate resolution_count and fix WIN8 fallback A SYNTHVID_RESOLUTIO...

2026-07-27
CVE-2026-64523
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net/handshake: Take a long-lived file reference at submit handshake_nl_accept_do...

2026-08-06
CVE-2026-64522
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix eswitch mode block underflow on IPsec acquire SA mlx5e_xfrm_add_s...

2026-07-27
CVE-2026-64520
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Bound PARTITION_INFO_GET_REGS copies The register-based PARTI...

2026-07-27
CVE-2026-64515
Analyzed
8.3
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix MLE defragmentation If either reconf or EPCS multi-link elem...

2026-07-27
CVE-2026-64502
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad_sigma_delta: fix clear_pending_event for registerless devices ad_si...

2026-08-11
CVE-2026-64501
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad_sigma_delta: fix CS held asserted and state leaks In ad_sigma_delta...

2026-08-13
CVE-2026-64496
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iio: event: Fix event FIFO reset race `iio_event_getfd()` creates the event file...

2026-08-13
CVE-2026-64490
8.4
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ALSA: virtio: Validate control metadata from the device virtio-snd control handl...

2026-08-08
CVE-2026-64485
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ALSA: compress: Fix task creation error unwind snd_compr_task_new() allocates th...

2026-08-11
CVE-2026-64481
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/cs35l41: Fix firmware load work teardown cs35l41_hda creates ALSA cont...

2026-08-11
CVE-2026-64475
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Release the VGA arbiter client on register_device() failure The re-ord...

2026-08-14
CVE-2026-64468
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: binder: fix UAF in binder_free_transaction() In binder_free_transaction(), the t...

2026-08-11
CVE-2026-64467
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: rust_binder: use a u64 stride when cleaning up the offsets array Allocation's Dr...

2026-08-08
CVE-2026-64459
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: tcp: restore RCU grace period in tcp_ao_destroy_sock Commit 51e547e8c89c ("tcp:...

2026-08-07
CVE-2026-64456
7.7
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: hwrng: virtio: clamp device-reported used.len at copy_data() random_recv_done()...

2026-08-12
CVE-2026-64452
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: 6lowpan: fix NHC entry use-after-free on error path lowpan_nhc_do_uncompression(...

2026-08-13
CVE-2026-64450
9.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: tipc: fix out-of-bounds read in broadcast Gap ACK blocks A broadcast PROTOCOL/ST...

2026-08-16
CVE-2026-64449
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: vme_user: bound slave read/write to the kern_buf size The SLAVE-path he...

2026-08-11
CVE-2026-64448
8.2
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: restrict implied bcc[0] exemption to responses without data area sm...

2026-08-08
CVE-2026-64447
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: media: ipu7: fix double-free and use-after-free in error paths In both...

2026-08-11
CVE-2026-64445
Analyzed
8.8
Linux Kernel (rtl8723bs)

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix WEP length underflow and OOB read in OnAuth() OnAuth() h...

2026-08-03
CVE-2026-64444
8.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in OnAssocRsp() IE loop The IE parsing loop in...

2026-08-09
CVE-2026-64443
8.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in update_beacon_info() IE loop The IE parsing...

2026-08-09
CVE-2026-64442
8.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB reads in IE loops in issue_assocreq() and join_cmd_hd...

2026-08-09
CVE-2026-64441
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB reads in rtw_get_sec_ie(), rtw_get_wapi_ie(), and rtw...

2026-08-08
CVE-2026-64440
8.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB write in HT_caps_handler() HT_caps_handler() iterate...

2026-08-09
CVE-2026-64439
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: krb5 - filter out async aead implementations at alloc krb5_aead_encrypt(...

2026-08-07
CVE-2026-64438
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - fix VF2PF work teardown race in adf_disable_sriov() The VF2PF inte...

2026-08-08
CVE-2026-64436
Analyzed
7.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: af_key: initialize alg_key_len for IPComp states pfkey_msg2xfrm_state() han...

2026-08-03
CVE-2026-64434
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix UAF in channel timeout by holding conn ref l2cap_chan_time...

2026-08-08
CVE-2026-64432
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate Dirty Page Table capacity in log_replay copy_lcns In the anal...

2026-08-11
CVE-2026-64431
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ntfs: avoid calling post_write_mst_fixup() for invalid index_block ntfs_icx_ib_s...

2026-08-17
CVE-2026-64423
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ipv4: igmp: remove multicast group from hash table on device destruction When a...

2026-08-17
CVE-2026-64422
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes Reject invalid...

2026-08-13
CVE-2026-64420
7
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: mfd: cros_ec: Delay dev_set_drvdata() until probe success If ec_device_probe() f...

2026-08-18
CVE-2026-64414
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfilter: handle unreadable frags sashiko reports: When an skb with unreadable...

2026-08-12
CVE-2026-64412
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: module names must be null-terminated We need to explicitly...

2026-08-18
CVE-2026-64410
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: IPIP tunnel hardware offload is not yet support No driver...

2026-08-07
CVE-2026-64406
8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix UAF in bt_accept_dequeue() bt_accept_get() takes a temporary refe...

2026-08-14
CVE-2026-64403
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: validate option length before reading conf opt value l2cap_get...

2026-08-12
CVE-2026-64401
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: resolve SWN tcon from live registrations cifs_swn_notify() looks up...

2026-08-11
CVE-2026-64400
8.6
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent path traversal bypass by restricting caseless retry ksmbd_vfs_pat...

2026-08-17
CVE-2026-64399
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE The FSCTL_DUPLI...

2026-08-07
CVE-2026-64397
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize QUERY_DIRECTORY requests per file smb2_query_dir() stores a poi...

2026-08-06
CVE-2026-64396
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellation When...

2026-08-08
CVE-2026-64395
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: require source read access for duplicate extents FSCTL_DUPLICATE_EXTENTS_...

2026-08-15
CVE-2026-64392
9.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for delete-on-close Delete-on-close can be complet...

2026-08-07
CVE-2026-64391
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for ADS I/O Alternate data streams are stored as x...

2026-08-06
CVE-2026-64390
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: track the connection owning a byte-range lock SMB2_LOCK adds each granted...

2026-08-17
CVE-2026-64388
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb/client: fix chown/chgrp with SMB3 POSIX Extensions Ownership (chown) and gro...

2026-08-11
CVE-2026-64387
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix query directory replay double-free A response-bearing attempt c...

2026-08-06
CVE-2026-64386
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix query_info() replay double-free A response-bearing attempt can...

2026-08-06
CVE-2026-64384
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix change notify replay double-free A response-bearing attempt can...

2026-08-06
CVE-2026-64383
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_flush() replay SMB2_flush() keeps its respo...

2026-08-13
CVE-2026-64382
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_open() replay A response-bearing attempt ca...

2026-08-08
CVE-2026-64379
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: mask server-provided mode to 07777 in modefromsid When modefromsid...

2026-08-12
CVE-2026-64378
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs() Whe...

2026-08-11
CVE-2026-64374
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: sched/rt: Have RT_PUSH_IPI be default off for non PREEMPT_RT RT migration is don...

2026-08-18
CVE-2026-64372
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: cpufreq: pcc: fix use-after-free and double free in _OSC evaluation pcc_cpufreq_...

2026-08-10
CVE-2026-64368
8.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: mm/slab: do not limit zeroing to orig_size when only red zoning is enabled When...

2026-08-09
CVE-2026-64367
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: HID: hid-goodix-spi: validate report size to prevent stack buffer overflow goodi...

2026-08-10
CVE-2026-64366
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: HID: wacom: fix slab-out-of-bounds write in wacom_wac_queue_insert wacom_wac_que...

2026-08-14
CVE-2026-64355
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject fragmented frames in devmap Devmap broadcast redirects clone the pac...

2026-08-06
CVE-2026-64354
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: bpf: Validate BTF repeated field counts before expansion btf_parse_struct_metas(...

2026-08-10
CVE-2026-64333
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: USB: serial: digi_acceleport: fix write buffer corruption The digi_write_inb_com...

2026-08-10
CVE-2026-64324
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: udf: validate free block extents against the partition length udf_free_blocks()...

2026-08-10
CVE-2026-64322
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: udf: validate sparing table length as an entry count, not a byte count udf_load_...

2026-08-10
CVE-2026-64315
7
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - use print_hex_dump_devel to guard key hex dumps Use print_hex_dum...

2026-08-13
CVE-2026-64313
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: ecc - Fix carry overflow in vli multiplication The carry flag calculatio...

2026-08-07
CVE-2026-64312
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: pcrypt - restore callback for non-parallel fallback pcrypt installs pcry...

2026-08-12
CVE-2026-64311
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: loongson - Remove broken and unused loongson-rng The loongson-rng rng_al...

2026-08-10
CVE-2026-64304
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - validate RSA CRT component lengths The generic RSA key parser (rsa...

2026-08-10
CVE-2026-64303
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: spi: fsl-lpspi: terminate the RX channel on TX prepare failure path When dmaengi...

2026-08-06
CVE-2026-64298
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC POSIX requires writ...

2026-08-12
CVE-2026-64296
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: exfat: bound uniname advance in exfat_find_dir_entry() In exfat_find_dir_entry()...

2026-08-10
CVE-2026-64293
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iommufd: Use sizeof(*hdr) instead of sizeof(hdr) in veventq read The bound-check...

2026-08-15
CVE-2026-64284
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Ensure vendor's exit handler runs before fastpath userspace exits Move...

2026-08-15
CVE-2026-64276
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - bound the F30 keymap to the GPIO/LED count rmi_f30_map_g...

2026-08-10
CVE-2026-64269
9.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg When the s...

2026-08-14
CVE-2026-64266
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: fuse: re-lock request before returning from fuse_ref_folio() fuse_ref_folio() un...

2026-08-17
CVE-2026-64261
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues fuse_uring_asyn...

2026-08-09
CVE-2026-64259
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: fuse-uring: make a fuse_req on SQE commit only findable after memcpy Bad userspa...

2026-08-15
CVE-2026-64257
9.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: reject overlapping data areas in SMB2 responses Commit 53b7c271f06b...

2026-08-16
CVE-2026-64255
8.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers Three...

2026-08-07
CVE-2026-64251
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: pwrseq: core: fix use-after-free in pwrseq_debugfs_seq_next() pwrseq_debugfs_seq...

2026-08-15
CVE-2026-64247
8.4
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: hyper-v: Bound the bank index when querying sparse banks When checking...

2026-08-08
CVE-2026-64243
Analyzed
7.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: simple-mux: Fix enum control bounds check simple_mux_control_put()...

2026-08-02
CVE-2026-64235
8.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: x86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines With CONFI...

2026-08-08
CVE-2026-64232
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: block: recompute nr_integrity_segments in blk_insert_cloned_request blk_insert_c...

2026-08-06
CVE-2026-64226
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path In scx_root_e...

2026-08-09
CVE-2026-64223
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: consume only present negotiated TTLM maps ieee80211_tid_to_link_...

2026-08-02
CVE-2026-64222
Analyzed
7
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: avoid double free of pool->stack on AQ init failure otx2_pool_aq_i...

2026-08-02
CVE-2026-64221
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: spi: ti-qspi: fix use-after-free after DMA setup failure The driver falls back t...

2026-08-02
CVE-2026-64218
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: fix report_work leak on backbone_gw purge batadv_bla_purge_back...

2026-08-09
CVE-2026-64217
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix overrun check in netfs_extract_user_iter() Fix netfs_extract_user_ite...

2026-08-09
CVE-2026-64210
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: xsk: Fix unlocked writing to ICOSQ During napi poll, when the affinit...

2026-08-02
CVE-2026-64208
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks Change the...

2026-08-15
CVE-2026-64178
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bnep: Fix UAF read of dev->name bnep_add_connection() needs to keep h...

2026-07-21
CVE-2026-64176
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix driver-set TX rates on old devices On old devices such a...

2026-07-21
CVE-2026-64153
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix iommu_map_sgtable() return value check and avoid WARN Commit "iommu...

2026-07-21
CVE-2026-64151
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: iommupt: Check for missing PAGE_SIZE in the pgsize_bitmap Sashiko pointed out th...

2026-07-21
CVE-2026-64138
Analyzed
8.8
Linux Kernel (ksmbd)

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate SID in parent security descriptor during ACL inheritance Introdu...

2026-07-21
CVE-2026-64136
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked() Co...

2026-07-25
CVE-2026-64124
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: devmem: reject dma-buf bind with non-page-aligned size or SG length net_dev...

2026-07-21
CVE-2026-64118
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: qed: fix double free in qed_cxt_tables_alloc() If one of the later PF or VF CID...

2026-07-21
CVE-2026-64117
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb ieee80211_invoke...

2026-07-21
CVE-2026-64115
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: fix UAF when peer resets connection during handshake vmci_transport_...

2026-07-21
CVE-2026-64111
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: lsm: hold cred_guard_mutex for lsm_set_self_attr() Just as proc_pid_attr_write()...

2026-07-25
CVE-2026-64109
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix UAF read of tail->len in unix_stream_data_wait() unix_stream_data_w...

2026-07-21
CVE-2026-64108
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix busy dentry used after unmounting Since commit 340cea84f691c ("cifs: o...

2026-07-25
CVE-2026-64104
Analyzed
8.7
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: virt: sev-guest: Explicitly leak pages in unknown state When set_memory_{encrypt...

2026-07-21
CVE-2026-64102
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Reject MPA FPDU length underflow before signed receive math A maliciou...

2026-07-25
CVE-2026-64099
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Fix use-after-free of CPU job query arrays on error path The CPU job io...

2026-07-25
CVE-2026-64098
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: drm/virtio: use uninterruptible resv lock for plane updates virtio_gpu_cursor_pl...

2026-07-25
CVE-2026-64096
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: batman-adv: mcast: fix use-after-free in orig_node RCU release batadv_mcast_purg...

2026-07-21
CVE-2026-64095
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: avoid double decrement of bla.num_requests The bla.num_requests...

2026-07-25
CVE-2026-64093
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: batman-adv: tp_meter: directly shut down timer on cleanup batadv_tp_sender_clean...

2026-07-21
CVE-2026-64091
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: fix TOCTOU race for reported vlans The local TT based TVLV is ge...

2026-07-25
CVE-2026-64089
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: fix negative last_changeset_len batadv_piv_tt::last_changeset_le...

2026-07-25
CVE-2026-64088
Analyzed
8.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: fix negative tt_buff_len batadv_orig_node::tt_buff_len was decla...

2026-07-21
CVE-2026-64084
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/adm1266) cap PDIO scan in get_multiple at ADM1266_PDIO_NR adm1266_...

2026-07-25
CVE-2026-64081
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Validate framework notification message layout Framework noti...

2026-07-21
CVE-2026-64080
9.3
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Snapshot notifier callbacks under lock Both notification hand...

2026-07-25
CVE-2026-64078
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: add and use xtables_unregister_table_exit Previous change a...

2026-07-25
CVE-2026-64077
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: move to two-stage removal scheme Like previous patches for...

2026-07-25
CVE-2026-64074
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: fs/statmount: fix slab out-of-bounds write in statmount_mnt_idmap statmount_mnt_...

2026-07-25
CVE-2026-64073
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: irq_work: Fix use-after-free in irq_work_single() on PREEMPT_RT On PREEMPT_RT, n...

2026-07-25
CVE-2026-64069
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix cancellation of a DIO and single read subrequests When the preparatio...

2026-07-25
CVE-2026-64068
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix missing locking around retry adding new subreqs Fix netfs_retry_read_...

2026-07-25
CVE-2026-64067
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix missing barriers when accessing stream->subrequests locklessly The li...

2026-07-25
CVE-2026-64066
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix netfs_read_to_pagecache() to pause on subreq failure Fix netfs_read_t...

2026-07-25
CVE-2026-64061
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix early put of sink folio in netfs_read_gaps() Fix netfs_read_gaps() to...

2026-07-25
CVE-2026-64056
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Make RX SKB per-port The SKB used to assemble packets fr...

2026-07-25
CVE-2026-64055
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Carry over frag counter The gmac_rx() NAPI poll function...

2026-07-25
CVE-2026-64053
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: block: don't overwrite bip_vcnt in bio_integrity_copy_user() bio_integrity_add_p...

2026-07-25
CVE-2026-64051
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Add overflow check to remap_pfn_range during mmap The call to remap_...

2026-07-25
CVE-2026-64050
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: don't mix devm and drmm functions Mixing devm and drmm functions wi...

2026-07-25
CVE-2026-64048
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net/smc: reject CHID-0 ACCEPT that matches an empty ism_dev slot On the SMC-D cl...

2026-07-25
CVE-2026-64047
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring When an...

2026-07-25
CVE-2026-64046
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: tls: prevent chain-after-chain in plain text SG Sashiko points out that if...

2026-07-25
CVE-2026-64045
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ovpn: tcp - use cached peer pointer in ovpn_tcp_close() ovpn_tcp_close() loads t...

2026-07-21
CVE-2026-64044
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ovpn: respect peer refcount in CMD_NEW_PEER error path ovpn_nl_peer_new_doit()'s...

2026-07-25
CVE-2026-64042
Analyzed
8.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Check BAR resources before exporting a DMABUF A DMABUF exports access...

2026-07-21
CVE-2026-64039
7.7
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: drm/msm/snapshot: fix dumping of the unaligned regions The snapshotting code int...

2026-07-25
CVE-2026-64037
Analyzed
9.8
Linux Kernel

A flaw in the Linux kernel iwlwifi MLD driver causes a TSO segmentation explosion when AMSDU is disabled, potentially leading to system instability, m...

2026-07-23
CVE-2026-64036
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: cgroup/rstat: validate cpu before css_rstat_cpu() access css_rstat_updated() is...

2026-07-23
CVE-2026-64032
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: bridge: mcast: Fix a possible use-after-free when removing a bridge port When pe...

2026-07-25
CVE-2026-64030
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: bounds-check link_id in ieee80211_ml_epcs IEEE80211_MLE_STA_EPCS...

2026-07-21
CVE-2026-64029
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Serialize UMP output teardown with event_input seq_ump_process_event(...

2026-07-25
CVE-2026-64026
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix DATA decrypt vs splice() by copying data to buffer in recvmsg This im...

2026-07-25
CVE-2026-64025
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: bpf, skmsg: fix verdict sk_data_ready racing with ktls rx sk_psock_strp_data_rea...

2026-07-25
CVE-2026-64024
9.4
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: tcp: fix stale per-CPU tcp_tw_isn leak enabling ISN prediction Blamed commit mov...

2026-07-25
CVE-2026-64023
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: gpio: aggregator: fix a potential use-after-free On error we free aggr->lookups-...

2026-07-25
CVE-2026-64020
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix dma_vecs leak on p2p memory We don't unmap P2P memory, so we don't...

2026-07-25
CVE-2026-64018
9.3
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: mana: validate rx_req_idx to prevent out-of-bounds array access In mana_hwc...

2026-07-25
CVE-2026-64017
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: blk-mq: pop cached request if it is usable When submitting a bio to blk-mq, if t...

2026-07-25
CVE-2026-64015
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: security/keys: fix missed RCU read section on lookup Nicholas Carlini reports th...

2026-07-25
CVE-2026-64010
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: Fix use-after-free race in nfc_llcp_recv_cc() A race condition exists...

2026-07-21
CVE-2026-64004
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net/iucv: fix locking in .getsockopt Mirror iucv_sock_setsockopt() and wrap the...

2026-07-25
CVE-2026-63984
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() ipv6_rpl_srh_decompr...

2026-07-25
CVE-2026-63979
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net/handshake: hand off the pinned file reference to accept_doit handshake_req_n...

2026-07-25
CVE-2026-63978
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net/handshake: Drain pending requests at net namespace exit The arguments to lis...

2026-07-25
CVE-2026-63976
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: clear chan->ident on ECRED reconfiguration success l2cap_ecred...

2026-07-21
CVE-2026-63975
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp If dcid is received...

2026-07-21
CVE-2026-63974
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Set HCI_CMD_DRAIN_WORKQUEUE during device close Since hci_d...

2026-07-21
CVE-2026-63972
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: mana: Skip redundant detach on already-detached port When mana_per_port_que...

2026-07-25
CVE-2026-63971
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: sctp: fix race between sctp_wait_for_connect and peeloff sctp_wait_for_connect()...

2026-07-25
CVE-2026-63970
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: bind uarg before filling zerocopy skb virtio_transport_send_pkt_in...

2026-07-25
CVE-2026-63955
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: mm/vmalloc: do not trigger BUG() on BH disabled context __get_vm_area_node() cur...

2026-07-25
CVE-2026-63952
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: memfd: deny writeable mappings when implying SEAL_WRITE When SEAL_EXEC is added,...

2026-07-21
CVE-2026-63951
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: zram: fix use-after-free in zram_writeback_endio A crash was observed in zram_wr...

2026-07-25
CVE-2026-63947
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: fix missing length checks in hidp_input_report() hidp_input_rep...

2026-07-21
CVE-2026-63946
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix UAF in iso_recv_frame iso_recv_frame reads conn->sk under is...

2026-07-21
CVE-2026-63945
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock iso_sock_close()...

2026-07-25
CVE-2026-63944
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync hci_le_create_cis_sync()...

2026-07-21
CVE-2026-63942
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: parport: Fix race between port and client registration The parport subsystem reg...

2026-07-25
CVE-2026-63941
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Correctly cap ZCR_EL2 provided by a guest hypervisor ZCR_EL2 can be...

2026-07-21
CVE-2026-63940
9.3
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Ignore Port I/O requests of length '0' Explicitly ignore Port I/O requ...

2026-07-25
CVE-2026-63939
9.3
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Compute the correct max length of the in-GHCB scratch area When settin...

2026-07-25
CVE-2026-63938
9.3
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Check PSC request indices against the actual size of the buffer When p...

2026-07-25
CVE-2026-63937
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Use READ_ONCE() when reading entries/indices from PSC buffer Use READ_...

2026-07-21
CVE-2026-63930
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iio: buffer: hw-consumer: fix use-after-free in error path In the err_put_buffer...

2026-07-25
CVE-2026-63927
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: usb: dwc2: Fix use after free in debug code We're not allowed to dereference "ur...

2026-07-25
CVE-2026-63926
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: bpf: sockmap: fix tail fragment offset in bpf_msg_push_data When bpf_msg_push_da...

2026-07-21
CVE-2026-63925
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: macsec: fix replay protection at XPN lower-PN wrap In macsec_post_decrypt(), whe...

2026-07-21
CVE-2026-63924
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() ipv6_hop_jumbo() calls...

2026-07-25
CVE-2026-63923
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: validate body pcifunc in rvu_mbox_handler_rep_event_notify rvu_mbo...

2026-07-21
CVE-2026-63922
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ipv6: exthdrs: refresh nh after handling HAO option ip6_parse_tlv() caches skb_n...

2026-07-25
CVE-2026-63921
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ip6: vti: Use ip6_tnl

2026-07-21
CVE-2026-63920
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ipv6: validate extension header length before copying to cmsg ip6_datagram_recv_...

2026-07-25
CVE-2026-63919
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: xfrm: input: hold netns during deferred transport reinjection Transport-mode rei...

2026-07-21
CVE-2026-63918
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: l2tp: use refcount_inc_not_zero in l2tp_session_get_by_ifname A reader in l2tp_s...

2026-07-25
CVE-2026-63917
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ip6: vti: Use ip6_tnl

2026-07-21
CVE-2026-63916
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: HID: wacom: Fix OOB write in wacom_hid_set_device_mode() wacom_hid_set_device_mo...

2026-07-21
CVE-2026-63915
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nfc: hci: fix out-of-bounds read in HCP header parsing Both nfc_hci_recv_from_ll...

2026-07-21
CVE-2026-63914
7.3
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: xfrm: route MIGRATE notifications to caller's netns xfrm_send_migrate() in net/x...

2026-07-25
CVE-2026-63913
Analyzed
8.2
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: tcp: do not force CLOSE on invalid-seq RST without directio...

2026-07-21
CVE-2026-63912
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: restore combined single-frag length gate The ESP out-of-place fast pa...

2026-07-25
CVE-2026-63911
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: reset runtime state when cloning SAs iptfs_clone_state() clones the...

2026-07-25
CVE-2026-63910
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: dma-buf: fix UAF in dma_buf_fd() tracepoint Once FD_ADD() returns, the fd is liv...

2026-07-25
CVE-2026-63909
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: OOB read regression in smb_check_perm_dacl() ACE-walk loops Commit d07b26...

2026-07-21
CVE-2026-63906
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: usb: musb: omap2430: Fix use-after-free in omap2430_probe() In omap2430_probe(),...

2026-07-21
CVE-2026-63893
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: property: Reject u32 wrap in tb_property_entry_valid() entry->value...

2026-07-21
CVE-2026-63889
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: scsi: scsi_transport_fc: Widen FPIN pname walker counter to u32 An adjacent Fibr...

2026-07-21
CVE-2026-63886
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Validate CHAP_R length before base64 decode chap_server_com...

2026-07-25
CVE-2026-63885
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/gem: fix race between change_handle and handle_delete drm_gem_change_handle_...

2026-07-21
CVE-2026-63874
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: net: mctp: usb: fix race between urb completion and rx_retry cancellation It's p...

2026-07-25
CVE-2026-63870
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ieee802154: 6lowpan: only accept IPv6 packets in lowpan_xmit() The aoe driver (o...

2026-07-25
CVE-2026-63867
Analyzed
8.2
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mptcp: close TOCTOU race while computing rcv_wnd The MPTCP output path access lo...

2026-07-21
CVE-2026-63866
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Clear wcid pointer in mt7996_mac_sta_deinit_link() Clear WCI...

2026-07-21
CVE-2026-63865
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: bpf: Drop task_to_inode and inet_conn_established from lsm sleepable hooks bpf_l...

2026-07-21
CVE-2026-63863
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/gpusvm: Fix unbalanced unlock in drm_gpusvm_scan_mm() There is a unbalanced...

2026-07-21
CVE-2026-63860
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Prefer NLA_NUL_STRING These attributes are evaluated as c-string (pas...

2026-07-21
CVE-2026-63832
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: add wcid publish check in mt76_sta_add Since mt7925_mac_sta_add publ...

2026-07-21
CVE-2026-63831
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mac802154: llsec: add skb_cow_data() before in-place crypto llsec_do_encrypt_una...

2026-07-21
CVE-2026-63829
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink A tunnel c...

2026-07-21
CVE-2026-63828
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: apparmor: mediate the implicit connect of TCP fast open sendmsg sendmsg()/sendto...

2026-07-21
CVE-2026-63825
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: gcov: use atomic counter updates to fix concurrent access crashes GCC's GCOV ins...

2026-07-25
CVE-2026-63823
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: keys: Pin request_key_auth payload in instantiate paths A: request_key() B...

2026-07-25
CVE-2026-63819
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on f2fs_get_node_folio_ra() kernel BUG at fs/f2fs/f...

2026-07-25
CVE-2026-63818
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: f2fs: validate orphan inode entry count f2fs_recover_orphan_inodes() trusts the...

2026-07-21
CVE-2026-63817
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: validate compress cache inode only when enabled F2FS_COMPRESS_INO() uses N...

2026-07-25
CVE-2026-63816
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: atomic: fix UAF issue on f2fs_inode_info.atomic_inode - ioctl(F2FS_IOC_GAR...

2026-07-25
CVE-2026-63815
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: f2fs: bound i_inline_xattr_size for non-inline-xattr inodes When the flexible_in...

2026-07-21
CVE-2026-63814
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: validate ACL entry sizes in f2fs_acl_from_disk() f2fs_acl_count() only val...

2026-07-25
CVE-2026-63813
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Revert "f2fs: remove non-uptodate folio from the page cache in move_data_block"...

2026-07-25
CVE-2026-63812
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix incorrect FI_NO_EXTENT handling in __destroy_extent_node() When __dest...

2026-07-25
CVE-2026-63809
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: bpf: use kvfree() for replaced sysctl write buffer proc_sys_call_handler() alloc...

2026-07-25
CVE-2026-63808
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: exfat: fix potential use-after-free in exfat_find_dir_entry() In exfat_find_dir_...

2026-07-25
CVE-2026-63807
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level Wh...

2026-07-21
CVE-2026-63806
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned...

2026-07-25
CVE-2026-63805
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: nx - fix nx_crypto_ctx_exit argument nx_crypto_ctx_shash_exit calls nx_c...

2026-07-25
CVE-2026-63802
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix UAF in __blkcg_rstat_flush() When multiple blkgs in the same blk...

2026-07-25
CVE-2026-63801
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tipc: fix slab-use-after-free Read in tipc_aead_decrypt_done tipc_aead_decrypt()...

2026-07-21
CVE-2026-63800
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: pNFS: Fix use-after-free in pnfs_update_layout() When hitting the NFS_LAYOUT_RET...

2026-07-25
CVE-2026-63797
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rpmsg: char: Fix use-after-free on probe error path rpmsg_chrdev_probe() stores...

2026-07-21
CVE-2026-63796
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject oversized group bitmap descriptors ocfs2_validate_gd_parent() only...

2026-07-21
CVE-2026-58302
Analyzed
8.4
Linux LinuxCNC

rtapi_app in linuxcnc-uspace in LinuxCNC before 2

2026-06-30
CVE-2026-56002
Analyzed
8.5
Linux libXfont2

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2

2026-07-09
CVE-2026-55999
Analyzed
8.5
Linux xorg-server

Local attackers with a X connection able to provide PCX fonts to the X server xorg-server before 21

2026-07-08
CVE-2026-54420
KEV Analyzed
8.5
Linux cPanel plugin

LiteSpeed cPanel plugin before 2

2026-06-14
CVE-2026-53853
Analyzed
8.3
Linux OpenClaw (Linux/macOS)

OpenClaw before 2026

2026-06-17
CVE-2026-53396
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix posix_acl leak and ignored error in nfsd4_create_file nfsd4_create_fil...

2026-07-25
CVE-2026-53395
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix dead ACL conflict guard in nfsd4_create nfsd4_create() steals create->...

2026-07-25
CVE-2026-53394
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nfsd: avoid leaking pre-allocated openowner on unconfirmed retry race When find_...

2026-07-25
CVE-2026-53390
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds read in smb_check_perm_dacl() The permission-check ACE...

2026-07-21
CVE-2026-53386
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: add bounds check to pga_settings index ads1298_pga_setting...

2026-07-25
CVE-2026-53384
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails dw8250_pr...

2026-07-25
CVE-2026-53383
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: reject non-VALID session in compound request branch smb2_check_user_sessi...

2026-07-25
CVE-2026-53381
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: virtiofs: fix UAF on submount umount iput() called from fuse_release_end() can O...

2026-07-25
CVE-2026-53373
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: mm/vma: do not try to unmap a VMA if mmap_prepare() invoked from mmap() The mmap...

2026-07-25
CVE-2026-53369
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: udf: reject descriptors with oversized CRC length udf_read_tagged() skips CRC ve...

2026-07-21
CVE-2026-53366
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ipv4: account for fraggap on the paged allocation path In __ip_append_data(), wh...

2026-07-20
CVE-2026-53362
Analyzed
7.1
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation path In __ip6_append_data(), w...

2026-07-09
CVE-2026-53357
Analyzed
7
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix UAF in l2cap_sock_cleanup_listen() vs l2cap_conn_del() bt_accept_...

2026-07-09
CVE-2026-53322
Analyzed
8.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Clean up DMABUFs before disabling function On device shutdown, make vf...

2026-06-28
CVE-2026-53300
Analyzed
7.8
Linux Linux Kernel (enetc driver)

In the Linux kernel, the following vulnerability has been resolved: net: enetc: fix NTMP DMA use-after-free issue The AI-generated review reported a...

2026-06-28
CVE-2026-53290
Analyzed
7.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/xe/eustall: Fix drm_dev_put called before stream disable in close In xe_eu_s...

2026-06-28
CVE-2026-53284
Analyzed
7.5
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: btrfs: only release the dirty pages io tree after successful writes [WARNING] Wi...

2026-06-28
CVE-2026-53281
Analyzed
8.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption Commit 60f030f...

2026-06-28
CVE-2026-52907
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rkcif: fix off by one bugs Change these comparisons from > vs >...

2026-06-15
CVE-2026-52906
Analyzed
7.7
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: 9p: fix access mode flags being ORed instead of replaced Since commit 1f3e4142c0...

2026-06-15
CVE-2026-52101
9.1
Linux Multiple Products

An issue in andreimarcu linux-server v.1.0 through v.2.3.8 allows a remote attacker to obtain sensitive information via the function uploadRemote func...

2026-07-20
CVE-2026-52100
7.5
Linux Multiple Products

Cross Site Request Forgery vulnerability in andreimarcu linux-server v.1.0 through v.2.3.8 allows a remote attacker to execute arbitrary code via the...

2026-07-20
CVE-2026-47140
Analyzed
10
Linux vm2

An incomplete denylist of Node.js builtins in vm2 allows unauthenticated attackers to escape the sandbox and execute code in the host process.

2026-06-13
CVE-2026-46332
Analyzed
8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: greybus: gb-beagleplay: bound bootloader receive buffering cc1352_bootloader_rx(...

2026-06-14
CVE-2026-46330
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Revert "net/smc: Introduce TCP ULP support" This reverts commit d7cd421da9da2cc7...

2026-06-15
CVE-2026-46328
Analyzed
7.3
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix rlimit for posix cpu timers Posix cpu timers requires an additiona...

2026-06-15
CVE-2026-46327
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: dm: fix unlocked test for dm_suspended_md The function dm_blk_report_zones tests...

2026-06-15
CVE-2026-46326
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: iio: pressure: mprls0025pa: fix spi_transfer struct initialisation Make sure tha...

2026-06-14
CVE-2026-46324
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: use list_del_rcu for netlink hooks nft_netdev_unregister_h...

2026-06-15
CVE-2026-46323
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags betw...

2026-06-15
CVE-2026-46322
Analyzed
7.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one() When build_skb() fails in t...

2026-06-15
CVE-2026-46321
Analyzed
7.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tun: free page on short-frame rejection in tun_xdp_one() tun_xdp_one() returns -...

2026-06-15
CVE-2026-46320
Analyzed
7.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tap: free page on error paths in tap_get_user_xdp() tap_get_user_xdp() rejects a...

2026-06-15
CVE-2026-46319
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_ft When looking up a flow...

2026-06-15
CVE-2026-46317
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Reassign nested_mmus array behind mmu_lock kvm->arch

2026-06-14
CVE-2026-46307
Analyzed
8.3
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: ath5k: do not access array OOB Vincent reports: > The ath5k driver seems t...

2026-06-14
CVE-2026-46306
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: flow_dissector: do not dissect PPPoE PFC frames RFC 2516 Section 7 states that P...

2026-06-15
CVE-2026-46304
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free nvmet_tcp_release_queue...

2026-06-15
CVE-2026-46303
Analyzed
8.2
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: isofs: validate Rock Ridge CE continuation extent against volume size rock_conti...

2026-06-14
CVE-2026-46300
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() ca...

2026-06-01
CVE-2026-46299
Analyzed
7
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix held lock freed on hfsplus_fill_super() hfsplus_fill_super() calls...

2026-06-15
CVE-2026-46288
Analyzed
8.4
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in of_unittest_changeset() The variable 'parent...

2026-06-14
CVE-2026-46280
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to avoid use-after-free Patch se...

2026-06-15
CVE-2026-46277
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: mm/zone_device: do not touch device folio after calling ->folio_free() The conte...

2026-06-15
CVE-2026-46275
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths Vulner...

2026-06-15
CVE-2026-46274
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_wq_remove_pending() io_wq_remo...

2026-06-15
CVE-2026-46264
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Fix sysfs initialization In case of devm_add_action_or_reset() failur...

2026-06-05
CVE-2026-46238
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop caching unowned originator pointers in BAT IV BAT IV keeps the...

2026-05-31
CVE-2026-46232
Analyzed
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: HID: playstation: Clamp num_touch_reports A device would never lie about the num...

2026-06-01
CVE-2026-46212
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: prevent use-after-free when deleting claims When batadv_bla_del...

2026-05-31
CVE-2026-46198
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix integer overflow on buff_pos Fixing an integer overflow present...

2026-05-31
CVE-2026-46166
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: use safe list iteration in radar detect work The call to ieee802...

2026-05-31
CVE-2026-46152
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: drop stray 'static' from fast-RX rx_result ieee80211_invoke_fast...

2026-05-31
CVE-2026-46138
Analyzed
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complet...

2026-06-01
CVE-2026-46125
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: remove station if connection prep fails If connection preparatio...

2026-05-31
CVE-2026-46113
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN The shadow MMU...

2026-05-31
CVE-2026-46107
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: dm-thin: fix metadata refcount underflow There's a bug in dm-thin in the functio...

2026-06-01
CVE-2026-46105
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Limit NVMe request size to 2 MiB The HBA firmware reports NVMe MD...

2026-06-01
CVE-2026-46100
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: fs: afs: revert mmap_prepare() change Partially reverts commit 9d5403b1036c ("fs...

2026-06-01
CVE-2026-46099
Analyzed
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels seg6_input_core() and rpl...

2026-06-01
CVE-2026-46093
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: mm/vmalloc: take vmap_purge_lock in shrinker decay_va_pool_node() can be invoked...

2026-06-01
CVE-2026-46090
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Fix peer runtime UAF during format-change stop loopback_check_forma...

2026-06-01
CVE-2026-46081
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - fix wrong pointer stored by acomp_save_req() acomp_save_req() st...

2026-06-01
CVE-2026-46076
Analyzed
7.9
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 Explicitly syn...

2026-06-01
CVE-2026-46065
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: fbdev: defio: Disconnect deferred I/O from the lifetime of struct fb_info Hold s...

2026-06-01
CVE-2026-46062
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ntfs3: fix integer overflow in run_unpack() volume boundary check The volume bou...

2026-06-01
CVE-2026-46058
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: media: amphion: Fix race between m2m job_abort and device_run Fix kernel panic c...

2026-06-01
CVE-2026-46056
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: fix potential UAF in SSP passkey handlers hci_conn lookup...

2026-05-31
CVE-2026-46053
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: rds: fix MR cleanup on copy error __rds_rdma_map() hands sg/pages ownership...

2026-06-01
CVE-2026-46037
Analyzed
8.2
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ipv4: icmp: validate reply type before using icmp_pointers Extended echo replies...

2026-06-01
CVE-2026-46036
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: vfio/cdx: Serialize VFIO_DEVICE_SET_IRQS with a per-device mutex vfio_cdx_set_ms...

2026-06-01
CVE-2026-46015
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: tcp: call sk_data_ready() after listener migration When inet_csk_listen_stop() m...

2026-06-01
CVE-2026-46011
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: media: mtk-jpeg: fix use-after-free in release path due to uncancelled work The...

2026-06-01
CVE-2026-46010
Analyzed
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix error handling in rxgk_extract_token() Fix a missing bit of error han...

2026-06-01
CVE-2026-46006
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix u32 overflow in pushbuf reloc bounds check nouveau_gem_pushbuf_...

2026-06-01
CVE-2026-45991
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: udf: fix partition descriptor append bookkeeping Mounting a crafted UDF image wi...

2026-06-01
CVE-2026-45984
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: gfs2: Fix use-after-free in iomap inline data write path The inline data buffer...

2026-06-01
CVE-2026-45970
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: bonding: alb: fix UAF in rlb_arp_recv during bond up/down The ALB RX path may ac...

2026-06-01
CVE-2026-45959
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix a crash due to incorrect cleanup usage of kfree Annotating a l...

2026-06-01
CVE-2026-45951
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix a potential use-after-free of BTF object Refcounting in the check_pseud...

2026-06-01
CVE-2026-45942
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ext4: fix e4b bitmap inconsistency reports A bitmap inconsistency issue was obse...

2026-06-01
CVE-2026-45935
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix slab-out-of-bounds read in DeleteIndexEntryRoot In the 'DeleteInde...

2026-06-01
CVE-2026-45933
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve id of register in sync_linked_regs() sync_linked_regs() copies the...

2026-06-01
CVE-2026-45929
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ovpn: fix possible use-after-free in ovpn_net_xmit When building the skb_list in...

2026-06-01
CVE-2026-45910
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix race condition in QP timer handlers I encontered the following war...

2026-06-01
CVE-2026-45909
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Drop __initconst from gates Since commit 8ceff24a754a ("clk: medi...

2026-06-01
CVE-2026-45862
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Flush cache for PASID table before using it When writing the address...

2026-06-01
CVE-2026-45861
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: gfs2: Fix slab-use-after-free in qd_put Commit a475c5dd16e5 ("gfs2: Free quota d...

2026-06-01
CVE-2026-45852
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix double free in rxe_srq_from_init In rxe_srq_from_init(), the queue...

2026-06-01
CVE-2026-45843
Analyzed
8.2
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: slip: bound decode() reads against the compressed packet length slhc_uncompress(...

2026-06-01
CVE-2026-44944
Analyzed
8.5
Linux open-iscsi

An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket

2026-07-30
CVE-2026-44932
Analyzed
8.8
Linux wicked dhcp client

Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0

2026-06-17
CVE-2026-44713
Analyzed
8.8
Linux using ordinary

pam_usb provides hardware authentication for Linux using ordinary removable media

2026-05-28
CVE-2026-44712
Analyzed
8.2
Linux using ordinary

pam_usb provides hardware authentication for Linux using ordinary removable media

2026-05-29
CVE-2026-43503
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: propagate shared-frag marker through frag-transfer helpers Two frag...

2026-05-31
CVE-2026-43502
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the message is queued A zerocopy se...

2026-06-01
CVE-2026-43500
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA-...

2026-05-12
CVE-2026-43499
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in remove_waiter() remove_waiter()...

2026-06-01
CVE-2026-43498
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM objects Prevent re-exporting of i...

2026-06-01
CVE-2026-43495
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg...

2026-05-31
CVE-2026-43494
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net/rds: reset op_nents when zerocopy page pin fails When iov_iter_get_pages2()...

2026-06-01
CVE-2026-43490
Analyzed
8.8
Linux Kernel (ksmbd)

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent dir...

2026-05-25
CVE-2026-43391
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nsfs: tighten permission checks for handle opening Even privileged services shou...

2026-05-27
CVE-2026-43284
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attac...

2026-05-09
CVE-2026-43113
Analyzed
8.8
Linux Kernel (wl1251 driver)

In the Linux kernel, the following vulnerability has been resolved: wifi: wl1251: validate packet IDs before indexing tx_frames wl1251_tx_packet_cb(...

2026-06-02
CVE-2026-43112
Analyzed
8.8
Linux Kernel (CIFS client)

In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath When cifs_sanitiz...

2026-06-02
CVE-2026-43110
Analyzed
8.8
Linux Kernel (brcmfmac driver)

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: validate bsscfg indices in IF events brcmf_fweh_handle_if_event(...

2026-06-02
CVE-2026-43057
7.5
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: correctly handle tunneled traffic on IPV6_CSUM GSO fallback NETIF_F_IPV6_CS...

2026-05-03
CVE-2026-43056
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: mana: fix use-after-free in add_adev() error path If auxiliary_device_add()...

2026-05-03
CVE-2026-43055
7.5
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: scsi: target: file: Use kzalloc_flex for aio_cmd The target_core_file doesn't in...

2026-05-03
CVE-2026-43051
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: HID: wacom: fix out-of-bounds read in wacom_intuos_bt_irq The wacom_intuos_bt_ir...

2026-05-03
CVE-2026-43048
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: HID: core: Mitigate potential OOB by removing bogus memset() The memset() in hid...

2026-05-03
CVE-2026-43047
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Check to ensure report responses match the request It is possib...

2026-05-03
CVE-2026-43044
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - fix DMA corruption on long hmac keys When a key longer than block...

2026-05-03
CVE-2026-43033
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption...

2026-05-03
CVE-2026-43031
7.5
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net: xilinx: axienet: Fix BQL accounting for multi-BD TX packets When a TX packe...

2026-05-03
CVE-2026-43030
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix regsafe() for pointers to packet In case rold->reg->range == BEYOND_PKT...

2026-05-03
CVE-2026-43029
7.5
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix soft lockup in mptcp_recvmsg() syzbot reported a soft lockup in mptcp...

2026-05-03
CVE-2026-43025
7.3
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: ignore explicit helper on new expectations Use the existin...

2026-05-03
CVE-2026-43023
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: fix race conditions in sco_sock_connect() sco_sock_connect() che...

2026-05-03
CVE-2026-43019
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix potential UAF in set_cig_params_sync hci_conn lookup an...

2026-05-03
CVE-2026-43018
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: fix potential UAF in hci_le_remote_conn_param_req_evt hci_...

2026-05-03
CVE-2026-43009
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix incorrect pruning due to atomic fetch precision tracking When backtrack...

2026-05-03
CVE-2026-42800
7.4
Linux on Linux

NULL pointer dereference vulnerability in ASR1903 in ASR Lapwing_Linux on Linux (ims_client modules) allows Pointer Manipulation

2026-05-01
CVE-2026-41501
Analyzed
9.8
Linux electerm

A command injection vulnerability exists in electerm prior to version 3.3.8, where remote version strings are unsafely passed to system commands.

2026-05-08
CVE-2026-41070
Analyzed
10
Linux Multiple Products

openvpn-auth-oauth2 is a plugin/management interface client for OpenVPN server to handle an OIDC based single sign-on (SSO) auth flows. From version 1...

2026-05-09
CVE-2026-41035
7.4
Linux platforms are

In rsync 3

2026-04-17
CVE-2026-40245
7.5
Linux Foundation project

Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks

2026-04-17
CVE-2026-39860
Analyzed
9
Linux and other

A symlink following vulnerability in the Nix package manager allows users to overwrite files and escalate privileges to root in multi-user installatio...

2026-04-09
CVE-2026-3888
7.8
Linux allows local

Local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's private /tmp directory when systemd-tm...

2026-03-18
CVE-2026-3587
Analyzed
10
Linux based OS

An unauthenticated remote attacker can escape a restricted CLI interface in certain Linux-based operating systems to gain root access.

2026-03-23
CVE-2026-35535
Analyzed
7.4
Linux Sudo

In Sudo through 1

2026-04-04
CVE-2026-33662
7.5
Linux kernel running

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone...

2026-04-25
CVE-2026-33396
Analyzed
9.9
Linux OneUptime

OneUptime versions prior to 10.0.35 allow low-privileged users to achieve remote code execution on the Probe container by escaping the Playwright sand...

2026-03-27
CVE-2026-33317
8.7
Linux kernel running

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone...

2026-04-24
CVE-2026-33150
7.8
Linux FUSE

libfuse is the reference implementation of the Linux FUSE

2026-03-21
CVE-2026-32973
Analyzed
9.8
Linux OpenClaw

An execution allowlist bypass in OpenClaw due to improper path normalization and glob matching allows attackers to execute unauthorized commands on th...

2026-03-30
CVE-2026-31886
Analyzed
9.1
Linux Dagu

A path traversal vulnerability in Dagu's workflow engine allows attackers to manipulate the dagRunId field to delete arbitrary directories, including...

2026-03-14
CVE-2026-31780
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: fix u8 overflow in SSID scan buffer size calculation The variabl...

2026-05-03
CVE-2026-31779
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix potential out-of-bounds read in iwl_mvm_nd_match_info_han...

2026-05-03
CVE-2026-31773
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SMP: derive legacy responder STK authentication from MITM state The l...

2026-05-03
CVE-2026-31772
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: fix stack buffer overflow in hci_le_big_create_sync hci_le_...

2026-05-03
CVE-2026-31771
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: move wake reason storage into validated event handlers hci...

2026-05-03
CVE-2026-31769
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: gpib: fix use-after-free in IO ioctl handlers The IBRD, IBWRT, IBCMD, and IBWAIT...

2026-05-03
CVE-2026-31768
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-adc161s626: use DMA-safe memory for spi_read() Add a DMA-safe buffe...

2026-05-03
CVE-2026-31761
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: iio: gyro: mpu3050: Move iio_device_register() to correct location iio_device_re...

2026-05-03
CVE-2026-31758
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: usb: usbtmc: Flush anchored URBs in usbtmc_release When calling usbtmc_release,...

2026-05-03
CVE-2026-31743
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy Buffer size used in dma a...

2026-05-03
CVE-2026-31742
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: vt: discard stale unicode buffer on alt screen exit after resize When enter_alt_...

2026-05-03
CVE-2026-31739
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: tegra - Add missing CRYPTO_ALG_ASYNC The tegra crypto driver failed to s...

2026-05-03
CVE-2026-31735
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: iommupt: Fix short gather if the unmap goes into a large mapping unmap has the o...

2026-05-03
CVE-2026-31719
7.5
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: krb5enc - fix async decrypt skipping hash verification krb5enc_dispatch_...

2026-05-03
CVE-2026-31717
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate owner of durable handle on reconnect Currently, ksmbd does not v...

2026-05-03
CVE-2026-31716
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate rec->used in journal-replay file record check check_file_reco...

2026-05-03
CVE-2026-31712
Analyzed
8.3
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: require minimum ACE size in smb_check_perm_dacl() Both ACE-walk loops in...

2026-05-03
CVE-2026-31711
7.5
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: smb: server: fix active_num_conn leak on transport allocation failure Commit 77f...

2026-05-03
CVE-2026-31709
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: smb: client: validate the whole DACL before rewriting it in cifsacl build_sec_de...

2026-05-03
CVE-2026-31708
Analyzed
8.1
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path smb2_ioctl_qu...

2026-05-03
CVE-2026-31706
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() smb_inherit_d...

2026-05-03
CVE-2026-31703
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: writeback: Fix use after free in inode_switch_wbs_work_fn() inode_switch_wbs_wor...

2026-05-03
CVE-2026-31700
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() In tpacket_snd()...

2026-05-03
CVE-2026-31695
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free Currently we exec...

2026-05-03
CVE-2026-31694
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_add_dirent_to_cache() computes...

2026-05-03
CVE-2026-31629
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: add missing return after LLCP_CLOSED checks In nfc_llcp_recv_hdlc() a...

2026-06-02
CVE-2026-31622
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: NFC: digital: Bounds check NFC-A cascade depth in SDD response handler The NFC-A...

2026-06-02
CVE-2026-31613
Analyzed
8.1
Linux Kernel (SMB Client)

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB reads parsing symlink error response When a CREATE returns...

2026-05-25
CVE-2026-31611
Analyzed
8.6
Linux Kernel (ksmbd)

In the Linux kernel, the following vulnerability has been resolved: ksmbd: require 3 sub-authorities before reading sub_auth[2] parse_dacl() compare...

2026-06-02
CVE-2026-31588
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Use scratch field in MMIO fragment to hold small write values When exi...

2026-06-02
CVE-2026-31432
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix OOB write in QUERY_INFO for compound requests When a compound request...

2026-06-20
CVE-2026-31431
KEV
9.5
Linux Kernel

Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability - Active in CISA KEV catalog.

2026-05-02
CVE-2026-31409
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: unset conn->binding on failed binding request When a multichannel SMB2_SE...

2026-06-02
CVE-2026-30976
8.6
Linux are unaffected

Sonarr is a PVR for Usenet and BitTorrent users

2026-03-26
CVE-2026-3012
Analyzed
8
Linux Samba

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling

2026-06-16
CVE-2026-28710
8.1
Linux Multiple Products

Sensitive information disclosure and manipulation due to improper authentication

2026-03-06
CVE-2026-27728
Analyzed
9.9
Linux OneUptime

An OS command injection vulnerability in OneUptime allows authenticated users to execute arbitrary commands on the Probe server via the monitor destin...

2026-02-26
CVE-2026-2751
Analyzed
8.3
Linux Multiple Products

Blind SQL Injection via unsanitized array keys in Service Dependencies deletion

2026-02-28
CVE-2026-2750
Analyzed
9.1
Linux Centreon Open Tickets Module

An improper input validation vulnerability in Centreon Open Tickets allows attackers to submit malicious data that could compromise the Central Server...

2026-02-28
CVE-2026-2749
Analyzed
9.9
Linux Centreon Open Tickets Module

The Centreon Open Tickets module on Central Server contains a critical vulnerability that could lead to unauthorized system access or compromise.

2026-02-28
CVE-2026-25702
7.3
Linux Enterprise Server

A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5 breaks nftables, causing firewall rules applied via...

2026-03-05
CVE-2026-24120
Analyzed
9.8
Linux vm2

An insufficient patch for a previous vm2 vulnerability allows attackers to bypass security measures and perform a sandbox breakout for arbitrary code...

2026-05-05
CVE-2026-23647
Analyzed
9.8
Linux system

Glory RBG-100 recycler systems use hardcoded OS credentials in the ISPK-08 software, allowing unauthenticated remote access and full system compromise...

2026-02-18
CVE-2026-23411
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix race between freeing data and fs accessing it AppArmor was putting...

2026-04-03
CVE-2026-23410
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix race on rawdata dereference There is a race condition that leads t...

2026-04-03
CVE-2026-23408
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix double free of ns_name in aa_replace_profiles() if ns_name is NULL...

2026-04-03
CVE-2026-23230
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open,...

2026-06-03
CVE-2026-22317
7.2
Linux OS with

A command injection vulnerability in the device’s Root CA certificate transfer workflow allows a high-privileged attacker to send crafted HTTP POST re...

2026-03-19
CVE-2026-20911
Analyzed
9.8
Linux LibRaw

A heap-based buffer overflow exists in LibRaw's `HuffTable::initval` functionality, which can be triggered by a malicious file.

2026-04-08
CVE-2026-16287
Analyzed
7.8
Linux pardus-update

Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TUBITAK BILGEM Software Technologies Resea...

2026-07-24
CVE-2025-8941
7.8
Linux Multiple Products

A flaw was found in linux-pam

2025-08-14
CVE-2025-8868
Analyzed
9.8
Linux Multiple Products

In Progress Chef Automate, versions earlier than 4.13.295, on Linux x86 platform, an authenticated attacker can gain access to Chef Automate restricte...

2025-09-29
CVE-2025-8613
Analyzed
7.2
Linux Multiple Products

Vacron Camera ping Command Injection Remote Code Execution Vulnerability

2025-09-02
CVE-2025-8611
Analyzed
9.8
Linux Multiple Products

AOMEI Cyber Backup Missing Authentication for Critical Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exe...

2025-08-20
CVE-2025-7003
Analyzed
7.8
Linux Antivirus

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-...

2026-06-14
CVE-2025-7002
Analyzed
7.8
Linux Antivirus

Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-...

2026-06-14
CVE-2025-68973
Analyzed
7.8
Linux Multiple Products

In GnuPG through 2

2025-12-29
CVE-2025-66314
Analyzed
7.5
Linux Multiple Products

Improper Privilege Management vulnerability in ZTE ElasticNet UME R32 on Linux allows Accessing Functionality Not Properly Constrained by ACLs

2025-11-28
CVE-2025-65530
Analyzed
8.8
Linux Multiple Products

An eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32

2025-12-13
CVE-2025-65199
7.8
Linux Multiple Products

A command injection vulnerability exists in Windscribe for Linux Desktop App that allows a local user who is a member of the windscribe group to execu...

2025-12-11
CVE-2025-62526
7.9
Linux Multiple Products

OpenWrt Project is a Linux operating system targeting embedded devices

2025-10-22
CVE-2025-62525
7.9
Linux Multiple Products

OpenWrt Project is a Linux operating system targeting embedded devices

2025-10-22
CVE-2025-6018
7.8
Linux Multiple Products

A Local Privilege Escalation (LPE) vulnerability has been discovered in pam-config within Linux Pluggable Authentication Modules (PAM)

2025-07-23
CVE-2025-58060
8
Linux Multiple Products

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems

2025-09-12
CVE-2025-54597
7.2
Linux Multiple Products

LinuxServer

2025-07-28
CVE-2025-54424
Analyzed
8.1
Linux Multiple Products

1Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server

2025-08-01
CVE-2025-53841
Analyzed
7.8
Linux Multiple Products

Akamai Guardicore Platform Agent before 52

2025-12-03
CVE-2025-53819
7.9
Linux Multiple Products

Nix is a package manager for Linux and other Unix systems

2025-07-14
CVE-2025-51986
7.5
Linux Multiple Products

An issue was discovered in the demo/LINUXTCP implementation of cwalter-at freemodbus v

2025-08-14
CVE-2025-51006
7.8
Linux Multiple Products

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the dlt_linuxsll2_cleanup() function in plugins/dlt_linuxsll2/linuxs...

2025-09-22
CVE-2025-50578
Analyzed
9.8
Linux Multiple Products

LinuxServer.io heimdall 2.6.3-ls307 contains a vulnerability in how it handles user-supplied HTTP headers, specifically `X-Forwarded-Host` and `Refere...

2025-07-30
CVE-2025-46733
7.9
Linux Multiple Products

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone...

2025-07-06
CVE-2025-38352
KEV
9.5
Linux Kernel

Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition Vulnerability - Active in CISA KEV catalog.

2025-09-04
CVE-2025-38250
Analyzed
7.8
Linux Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix use-after-free in vhci_flush() syzbot reported use-afte...

2026-06-21
CVE-2025-38129
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: page_pool: Fix use-after-free in page_pool_recycle_in_ring syzbot reported a uaf...

2026-06-21
CVE-2025-21863
Analyzed
7.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: io_uring: prevent opcode speculation sqe->opcode is used for different tables, m...

2026-06-21
CVE-2025-13735
7.4
Linux Multiple Products

Out-of-bounds Read vulnerability in ASR1903、ASR3901 in ASR Lapwing_Linux on Linux (nr_fw modules)

2025-11-27
CVE-2025-12779
Analyzed
8.8
Linux Multiple Products

Improper handling of the authentication token in the Amazon WorkSpaces client for Linux, versions 2023

2025-11-06
CVE-2025-1272
7.7
Linux Kernel lockdown

The Linux Kernel lockdown mode for kernel versions starting on 6

2026-02-19
CVE-2025-11561
8.8
Linux Multiple Products

A flaw was found in the integration of Active Directory and the System Security Services Daemon (SSSD) on Linux systems

2025-10-09
CVE-2023-32256
7.5
Linux Multiple Products

A flaw was found in the Linux kernel's ksmbd component

2025-08-01
CVE-2022-50691
Analyzed
9.8
Linux Multiple Products

MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through...

2025-12-31
CVE-2022-0492
KEV Analyzed
9.5
Linux Kernel

A privilege escalation vulnerability in the Linux Kernel cgroup_release_agent_write function allows unprivileged users to escape container environment...

2026-06-03
CVE-2021-47796
Analyzed
9.8
Linux Multiple Products

Denver SHC-150 Smart Wifi Camera contains a hardcoded telnet credential vulnerability that allows unauthenticated attackers to access a Linux shell. A...

2026-01-16
CVE-2021-22555
KEV
9.5
Linux Kernel

Linux Kernel Heap Out-of-Bounds Write Vulnerability - Active in CISA KEV catalog.

2025-10-06
CVE-2019-25299
7.1
Linux AhadPOS

RimbaLinux AhadPOS 1

2026-02-07
CVE-2018-14634
KEV
9.5
Linux Kernal

Linux Kernel Integer Overflow Vulnerability - Active in CISA KEV catalog.

2026-01-27
CVE-2017-20229
Analyzed
9.8
Linux MAWK (AWK Interpreter)

MAWK 1.3.3-17 and prior contains a stack-based buffer overflow vulnerability that allows arbitrary code execution via crafted, malicious input.

2026-03-29