5.5

CVSS3.1

CVE-2026-23109 - fs/writeback: skip AS_NO_DATA_INTEGRITY mappings in wait_sb_inodes()

In the Linux kernel, the following vulnerability has been resolved: fs/writeback: skip AS_NO_DATA_INTEGRITY mappings in wait_sb_inodes() Above the while() loop in wait_sb_inodes(), we document that we must wait for all pages under writeback for data integrity. Consequently, if a mapping, like fu…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

7.8

CVSS3.1

CVE-2026-23092 - iio: dac: ad3552r-hs: fix out-of-bound write in ad3552r_hs_write_data_source

In the Linux kernel, the following vulnerability has been resolved: iio: dac: ad3552r-hs: fix out-of-bound write in ad3552r_hs_write_data_source When simple_write_to_buffer() succeeds, it returns the number of bytes actually copied to the buffer. The code incorrectly uses 'count' as the index for…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23088 - tracing: Fix crash on synthetic stacktrace field usage

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix crash on synthetic stacktrace field usage When creating a synthetic event based on an existing synthetic event that had a stacktrace field and the new synthetic event used that field a kernel crash occurred: ~# cd …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23072 - l2tp: Fix memleak in l2tp_udp_encap_recv().

In the Linux kernel, the following vulnerability has been resolved: l2tp: Fix memleak in l2tp_udp_encap_recv(). syzbot reported memleak of struct l2tp_session, l2tp_tunnel, sock, etc. [0] The cited commit moved down the validation of the protocol version in l2tp_udp_encap_recv(). The new place …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

7.0

CVSS3.1

CVE-2026-23059 - scsi: qla2xxx: Sanitize payload size to prevent member overflow

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Sanitize payload size to prevent member overflow In qla27xx_copy_fpin_pkt() and qla27xx_copy_multiple_pkt(), the frame_size reported by firmware is used to calculate the copy length into item->iocb. However, the io…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

7.0

CVSS3.1

CVE-2026-23057 - vsock/virtio: Coalesce only linear skb

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: Coalesce only linear skb vsock/virtio common tries to coalesce buffers in rx queue: if a linear skb (with a spare tail room) is followed by a small skb (length limited by GOOD_COPY_LEN = 128), an attempt is made to …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

0.0

CVE-2026-23041 - bnxt_en: Fix NULL pointer crash in bnxt_ptp_enable during error cleanup

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix NULL pointer crash in bnxt_ptp_enable during error cleanup When bnxt_init_one() fails during initialization (e.g., bnxt_init_int_mode returns -ENODEV), the error path calls bnxt_free_hwrm_resources() which destroys t…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, midnight

7.8

CVSS3.1

CVE-2026-23103 - ipvlan: Make the addrs_lock be per port

In the Linux kernel, the following vulnerability has been resolved: ipvlan: Make the addrs_lock be per port Make the addrs_lock be per port, not per ipvlan dev. Initial code seems to be written in the assumption, that any address change must occur under RTNL. But it is not so for the case of IPv…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 1:15 a.m.

7.1

CVSS3.1

CVE-2026-23099 - bonding: limit BOND_MODE_8023AD to Ethernet devices

In the Linux kernel, the following vulnerability has been resolved: bonding: limit BOND_MODE_8023AD to Ethernet devices BOND_MODE_8023AD makes sense for ARPHRD_ETHER only. syzbot reported: BUG: KASAN: global-out-of-bounds in __hw_addr_create net/core/dev_addr_lists.c:63 [inline] BUG: KASAN: g…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23104 - ice: fix devlink reload call trace

In the Linux kernel, the following vulnerability has been resolved: ice: fix devlink reload call trace Commit 4da71a77fc3b ("ice: read internal temperature sensor") introduced internal temperature sensor reading via HWMON. ice_hwmon_init() was added to ice_init_feature() and ice_hwmon_exit() was …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.
Total resulsts: 347878
Page 1686 of 34,788
Β« previous page Β» next page
Filters