8.8

CVSS3.1

CVE-2026-37536 - Stack Buffer Overflow in uds-c send_diagnostic_request Function

miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnostic_request. A 6-byte stack buffer (MAX_DIAGNOSTIC_PAYLOAD_SIZE=6) receives memcpy at offset 1+pid_length with payload_length bytes. MAX_UDS_REQUEST_PAYLOAD_LENGTH=7, so 1+2+7=…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 4, 2026, 7:44 p.m.

7.1

CVSS3.1

CVE-2026-37535 - Out‑of‑Bounds Read in ISO‑TP Single Frame Handler Can Cause DoS or Information Disclosure

openxc/isotp-c thru commit 5a5d19245f65189202719321facd49ce6f5d46ac (2021-08-09) contains an out-of-bounds read in the ISO-TP Single Frame receive handler, where the 4-bit payload length nibble is used directly as the memcpy size without validating it against the actual CAN data length. A malicious…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 4, 2026, 7:44 p.m.

0.0

CVE-2026-31764 - iio: imu: st_lsm6dsx: Set buffer sampling frequency for accelerometer only

In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: Set buffer sampling frequency for accelerometer only The st_lsm6dsx_hwfifo_odr_store() function, which is called when userspace writes the buffer sampling frequency sysfs attribute, calls st_lsm6dsx_check_od…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 1, 2026, 11:30 p.m.

7.0

CVSS3.1

CVE-2026-31759 - usb: ulpi: fix double free in ulpi_register_interface() error path

In the Linux kernel, the following vulnerability has been resolved: usb: ulpi: fix double free in ulpi_register_interface() error path When device_register() fails, ulpi_register() calls put_device() on ulpi->dev. The device release callback ulpi_dev_release() drops the OF node reference and fre…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 1, 2026, 4:45 p.m.

5.5

CVSS3.1

CVE-2026-31713 - fuse: abort on fatal signal during sync init

In the Linux kernel, the following vulnerability has been resolved: fuse: abort on fatal signal during sync init When sync init is used and the server exits for some reason (error, crash) while processing FUSE_INIT, the filesystem creation will hang. The reason is that while all other threads wi…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 9:13 p.m.

5.5

CVSS3.1

CVE-2026-31701 - ALSA: caiaq: take a reference on the USB device in create_card()

In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: take a reference on the USB device in create_card() The caiaq driver stores a pointer to the parent USB device in cdev->chip.dev but never takes a reference on it. The card's private_free callback, snd_usb_caiaq_card…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 6, 2026, 6:55 p.m.

10

CVSS3.1

CVE-2026-37541 - Remote Code Execution via GVRET Frame Overflow in OVMS3 3.3.005

Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_gvret.cpp, the length field in GVRET binary data is not properly validated, allowing remote attackers to cause a denial of service or possibly execute arbitrary code via crafted GVRET frames.

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 6:39 p.m.

5.3

CVSS3.1

CVE-2026-37504 - Token Exposure via GET Parameters in V2Board

Sensitive server_token exposed via GET parameter in V2Board thru 1.7.4. In app/Http/Controllers/Server/UniProxyController.php, the server authentication token is accepted via GET parameter transmission. The token appears in URLs such as /api/v1/server/UniProxy/user?token=SECRET, causing it to be re…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 2, 2026, 11 a.m.

9.8

CVSS3.1

CVE-2026-37539 -

Buffer overflow vulnerability in cannelloni v2.0.0 in CAN frame parsing in parser.cpp in function parseCANFrame, and decoder.cpp in function decodeFrame allowing remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted CAN FD frames.

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 4, 2026, 4:11 p.m.

5.5

CVSS3.1

CVE-2026-43013 - net/mlx5: lag: Check for LAG device before creating debugfs

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: lag: Check for LAG device before creating debugfs __mlx5_lag_dev_add_mdev() may return 0 (success) even when an error occurs that is handled gracefully. Consequently, the initialization flow proceeds to call mlx5_ldev_a…

πŸ“… Published: May 1, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 8:28 p.m.
Total resulsts: 349182
Page 169 of 34,919
Β« previous page Β» next page
Filters