5.5

CVSS3.1

CVE-2026-23123 - interconnect: debugfs: initialize src_node and dst_node to empty strings

In the Linux kernel, the following vulnerability has been resolved: interconnect: debugfs: initialize src_node and dst_node to empty strings The debugfs_create_str() API assumes that the string pointer is either NULL or points to valid kmalloc() memory. Leaving the pointer uninitialized can cause…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:15 p.m.

5.5

CVSS3.1

CVE-2026-23121 - mISDN: annotate data-race around dev->work

In the Linux kernel, the following vulnerability has been resolved: mISDN: annotate data-race around dev->work dev->work can re read locklessly in mISDN_read() and mISDN_poll(). Add READ_ONCE()/WRITE_ONCE() annotations. BUG: KCSAN: data-race in mISDN_ioctl / mISDN_read write to 0xffff88812d8482…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:15 p.m.

5.5

CVSS3.1

CVE-2026-23166 - ice: Fix NULL pointer dereference in ice_vsi_set_napi_queues

In the Linux kernel, the following vulnerability has been resolved: ice: Fix NULL pointer dereference in ice_vsi_set_napi_queues Add NULL pointer checks in ice_vsi_set_napi_queues() to prevent crashes during resume from suspend when rings[q_idx]->q_vector is NULL. Tested adaptor: 60:00.0 Etherne…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:45 p.m.

4.7

CVSS3.1

CVE-2026-23153 - firewire: core: fix race condition against transaction list

In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix race condition against transaction list The list of transaction is enumerated without acquiring card lock when processing AR response event. This causes a race condition bug when processing AT request completi…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:45 p.m.

7.1

CVSS3.1

CVE-2026-23204 - net/sched: cls_u32: use skb_header_pointer_careful()

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: use skb_header_pointer_careful() skb_header_pointer() does not fully validate negative @offset values. Use skb_header_pointer_careful() instead. GangMin Kim provided a report and a repro fooling u32_classify…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 12:45 a.m.

5.5

CVSS3.1

CVE-2026-23154 - net: fix segmentation of forwarding fraglist GRO

In the Linux kernel, the following vulnerability has been resolved: net: fix segmentation of forwarding fraglist GRO This patch enhances GSO segment handling by properly checking the SKB_GSO_DODGY flag for frag_list GSO packets, addressing low throughput issues observed when a station accesses IP…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:45 p.m.

5.5

CVSS3.1

CVE-2026-23141 - btrfs: send: check for inline extents in range_is_hole_in_parent()

In the Linux kernel, the following vulnerability has been resolved: btrfs: send: check for inline extents in range_is_hole_in_parent() Before accessing the disk_bytenr field of a file extent item we need to check if we are dealing with an inline extent. This is because for inline extents their da…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 5:15 p.m.

5.5

CVSS3.1

CVE-2026-23114 - arm64/fpsimd: ptrace: Fix SVE writes on !SME systems

In the Linux kernel, the following vulnerability has been resolved: arm64/fpsimd: ptrace: Fix SVE writes on !SME systems When SVE is supported but SME is not supported, a ptrace write to the NT_ARM_SVE regset can place the tracee into an invalid state where (non-streaming) SVE register data is st…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 7:45 p.m.

7.0

CVSS3.1

CVE-2026-23181 - btrfs: sync read disk super and set block size

In the Linux kernel, the following vulnerability has been resolved: btrfs: sync read disk super and set block size When the user performs a btrfs mount, the block device is not set correctly. The user sets the block size of the block device to 0x4000 by executing the BLKBSZSET command. Since the …

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:30 p.m.

0.0

CVE-2026-23174 - nvme-pci: handle changing device dma map requirements

In the Linux kernel, the following vulnerability has been resolved: nvme-pci: handle changing device dma map requirements The initial state of dma_needs_unmap may be false, but change to true while mapping the data iterator. Enabling swiotlb is one such case that can change the result. The nvme d…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 12:30 p.m.
Total resulsts: 349182
Page 1635 of 34,919
Β« previous page Β» next page
Filters