7.5

CVSS3.1

CVE-2025-63547 - Denial of Service via Crafted MTU Length in Eprosima Micro-XRCEโ€‘DDS Agent v3.0.1

An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a crafted packet to the MTU length field

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 4, 2026, 7:45 p.m.

8.8

CVSS3.1

CVE-2026-43048 - HID: core: Mitigate potential OOB by removing bogus memset()

In the Linux kernel, the following vulnerability has been resolved: HID: core: Mitigate potential OOB by removing bogus memset() The memset() in hid_report_raw_event() has the good intention of clearing out bogus data by zeroing the area from the end of the incoming data string to the assumed endโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 7, 2026, 7:07 p.m.

7.8

CVSS3.1

CVE-2026-43044 - crypto: caam - fix DMA corruption on long hmac keys

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - fix DMA corruption on long hmac keys When a key longer than block size is supplied, it is copied and then hashed into the real key. The memory allocated for the copy needs to be rounded to DMA cache alignment, as โ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 3, 2026, 5:46 a.m.

7.8

CVSS3.1

CVE-2026-43015 - net: macb: fix clk handling on PCI glue driver removal

In the Linux kernel, the following vulnerability has been resolved: net: macb: fix clk handling on PCI glue driver removal platform_device_unregister() may still want to use the registered clks during runtime resume callback. Note that there is a commit d82d5303c4c5 ("net: macb: fix use after frโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 7, 2026, 8:31 p.m.

7.3

CVSS3.1

CVE-2026-42483 - Heap-based Buffer Overflow in Hashcat Kerberos Hash Parser

A heap-based buffer overflow in the Kerberos hash parser in hashcat v7.1.2 allows an attacker to cause a denial of service or possibly execute arbitrary code via a crafted Kerberos hash file. The issue affects module_hash_decode in multiple Kerberos-related modules because account_info_len is calcuโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 2, 2026, noon

7.1

CVSS3.1

CVE-2026-37532 - Heap Buffer Overโ€‘Read in AGL isotp-c Library Allows Arbitrary Memory Disclosure

AGL agl-service-can-low-level thru 17.1.12 contains a heap buffer over-read in the isotp-c library. In isotp_continue_receive (receive.c:87-89), the payload_length for a Single Frame is extracted from a 4-bit nibble in the CAN frame data, yielding values 0-15. However, a standard CAN frame is only โ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 4, 2026, 7:44 p.m.

7.0

CVSS3.1

CVE-2026-31778 - ALSA: caiaq: fix stack out-of-bounds read in init_card

In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: fix stack out-of-bounds read in init_card The loop creates a whitespace-stripped copy of the card shortname where `len < sizeof(card->id)` is used for the bounds check. Since sizeof(card->id) is 16 and the local id bโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 2, 2026, 7:30 a.m.

0.0

CVE-2026-31770 - hwmon: (occ) Fix division by zero in occ_show_power_1()

In the Linux kernel, the following vulnerability has been resolved: hwmon: (occ) Fix division by zero in occ_show_power_1() In occ_show_power_1() case 1, the accumulator is divided by update_tag without checking for zero. If no samples have been collected yet (e.g. during early boot when the sensโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 1, 2026, 5 p.m.

0.0

CVE-2026-31753 - auxdisplay: line-display: fix NULL dereference in linedisp_release

In the Linux kernel, the following vulnerability has been resolved: auxdisplay: line-display: fix NULL dereference in linedisp_release linedisp_release() currently retrieves the enclosing struct linedisp via to_linedisp(). That lookup depends on the attachment list, but the attachment may alreadyโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 1, 2026, 11:30 p.m.

5.5

CVSS3.1

CVE-2026-31723 - usb: gadget: f_subset: Fix net_device lifecycle with device_move

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_subset: Fix net_device lifecycle with device_move The net_device is allocated during function instance creation and registered during the bind phase with the gadget device as its sysfs parent. When the function unbโ€ฆ

๐Ÿ“… Published: May 1, 2026, midnight ๐Ÿ”„ Last Modified: May 7, 2026, 5:03 p.m.
Total resulsts: 349182
Page 163 of 34,919
ยซ previous page ยป next page
Filters