0.0

CVE-2026-31683 - batman-adv: avoid OGM aggregation when skb tailroom is insufficient

In the Linux kernel, the following vulnerability has been resolved: batman-adv: avoid OGM aggregation when skb tailroom is insufficient When OGM aggregation state is toggled at runtime, an existing forwarded packet may have been allocated with only packet_len bytes, while a later packet can still…

📅 Published: April 25, 2026, 8:47 a.m. 🔄 Last Modified: April 25, 2026, 8:47 a.m.

0.0

CVE-2026-31682 - bridge: br_nd_send: linearize skb before parsing ND options

In the Linux kernel, the following vulnerability has been resolved: bridge: br_nd_send: linearize skb before parsing ND options br_nd_send() parses neighbour discovery options from ns->opt[] and assumes that these options are in the linear part of request. Its callers only guarantee that the ICM…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31681 - netfilter: xt_multiport: validate range encoding in checkentry

In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_multiport: validate range encoding in checkentry ports_match_v1() treats any non-zero pflags entry as the start of a port range and unconditionally consumes the next ports[] element as the range end. The checkentry…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31680 - net: ipv6: flowlabel: defer exclusive option free until RCU teardown

In the Linux kernel, the following vulnerability has been resolved: net: ipv6: flowlabel: defer exclusive option free until RCU teardown `ip6fl_seq_show()` walks the global flowlabel hash under the seq-file RCU read-side lock and prints `fl->opt->opt_nflen` when an option block is present. Exclu…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31679 - openvswitch: validate MPLS set/set_masked payload length

In the Linux kernel, the following vulnerability has been resolved: openvswitch: validate MPLS set/set_masked payload length validate_set() accepted OVS_KEY_ATTR_MPLS as variable-sized payload for SET/SET_MASKED actions. In action handling, OVS expects fixed-size MPLS key data (struct ovs_key_mpl…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31678 - openvswitch: defer tunnel netdev_put to RCU release

In the Linux kernel, the following vulnerability has been resolved: openvswitch: defer tunnel netdev_put to RCU release ovs_netdev_tunnel_destroy() may run after NETDEV_UNREGISTER already detached the device. Dropping the netdev reference in destroy can race with concurrent readers that still obs…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31677 - crypto: af_alg - limit RX SG extraction by receive buffer budget

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a ga…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31676 - rxrpc: only handle RESPONSE during service challenge

In the Linux kernel, the following vulnerability has been resolved: rxrpc: only handle RESPONSE during service challenge Only process RESPONSE packets while the service connection is still in RXRPC_CONN_SERVICE_CHALLENGING. Check that state under state_lock before running response verification an…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31675 - net/sched: sch_netem: fix out-of-bounds access in packet corruption

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_netem: fix out-of-bounds access in packet corruption In netem_enqueue(), the packet corruption logic uses get_random_u32_below(skb_headlen(skb)) to select an index for modifying skb->data. When an AF_PACKET TX_RING…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.

0.0

CVE-2026-31674 - netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check()

In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check() Reject rt match rules whose addrnr exceeds IP6T_RT_HOPS. rt_mt6() expects addrnr to stay within the bounds of rtinfo->addrs[]. Validate addrnr during rule installatio…

📅 Published: April 25, 2026, 8:46 a.m. 🔄 Last Modified: April 25, 2026, 8:46 a.m.
Total resulsts: 347742
Page 121 of 34,775
« previous page » next page
Filters