7.0

CVSS3.1

CVE-2026-23054 - net: hv_netvsc: reject RSS hash key programming without RX indirection table

In the Linux kernel, the following vulnerability has been resolved: net: hv_netvsc: reject RSS hash key programming without RX indirection table RSS configuration requires a valid RX indirection table. When the device reports a single receive queue, rndis_filter_device_add() does not allocate an …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

0.0

CVE-2025-71198 - iio: imu: st_lsm6dsx: fix iio_chan_spec for sensors without event detection

In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix iio_chan_spec for sensors without event detection The st_lsm6dsx_acc_channels array of struct iio_chan_spec has a non-NULL event_spec field, indicating support for IIO events. However, event detection is…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2026-23080 - can: mcba_usb: mcba_usb_read_bulk_callback(): fix URB memory leak

In the Linux kernel, the following vulnerability has been resolved: can: mcba_usb: mcba_usb_read_bulk_callback(): fix URB memory leak Fix similar memory leak as in commit 7352e1d5932a ("can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak"). In mcba_usb_probe() -> mcba_usb_start(), t…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 2 p.m.

7.1

CVSS3.1

CVE-2026-23076 - ALSA: ctxfi: Fix potential OOB access in audio mixer handling

In the Linux kernel, the following vulnerability has been resolved: ALSA: ctxfi: Fix potential OOB access in audio mixer handling In the audio mixer handling code of ctxfi driver, the conf field is used as a kind of loop index, and it's referred in the index callbacks (amixer_index() and sum_inde…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 2 p.m.

5.5

CVSS3.1

CVE-2026-23044 - PM: hibernate: Fix crash when freeing invalid crypto compressor

In the Linux kernel, the following vulnerability has been resolved: PM: hibernate: Fix crash when freeing invalid crypto compressor When crypto_alloc_acomp() fails, it returns an ERR_PTR value, not NULL. The cleanup code in save_compressed_image() and load_compressed_image() unconditionally call…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 2:15 p.m.

7.8

CVSS3.1

CVE-2026-23089 - ALSA: usb-audio: Fix use-after-free in snd_usb_mixer_free()

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix use-after-free in snd_usb_mixer_free() When snd_usb_create_mixer() fails, snd_usb_mixer_free() frees mixer->id_elems but the controls already added to the card still reference the freed memory. Later when snd…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:30 p.m.

5.5

CVSS3.1

CVE-2026-23108 - can: usb_8dev: usb_8dev_read_bulk_callback(): fix URB memory leak

In the Linux kernel, the following vulnerability has been resolved: can: usb_8dev: usb_8dev_read_bulk_callback(): fix URB memory leak Fix similar memory leak as in commit 7352e1d5932a ("can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak"). In usb_8dev_open() -> usb_8dev_start(), th…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:30 p.m.

7.8

CVSS3.1

CVE-2026-23073 - wifi: rsi: Fix memory corruption due to not set vif driver data size

In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: Fix memory corruption due to not set vif driver data size The struct ieee80211_vif contains trailing space for vif driver data, when struct ieee80211_vif is allocated, the total memory size that is allocated is sizeof(…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 8 p.m.

7.0

CVSS3.1

CVE-2025-71193 - phy: qcom-qusb2: Fix NULL pointer dereference on early suspend

In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qusb2: Fix NULL pointer dereference on early suspend Enabling runtime PM before attaching the QPHY instance as driver data can lead to a NULL pointer dereference in runtime PM callbacks that expect valid driver data. Th…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2026-23100 - mm/hugetlb: fix hugetlb_pmd_shared()

In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix hugetlb_pmd_shared() Patch series "mm/hugetlb: fixes for PMD table sharing (incl. using mmu_gather)", v3. One functional fix, one performance regression fix, and two related comment fixes. I cleaned up my proto…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 8:45 p.m.
Total resulsts: 347925
Page 1684 of 34,793
Β« previous page Β» next page
Filters