0.0

CVE-2026-43334 - Bluetooth: SMP: force responder MITM requirements before building the pairing response

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SMP: force responder MITM requirements before building the pairing response smp_cmd_pairing_req() currently builds the pairing response from the initiator auth_req before enforcing the local BT_SECURITY_HIGH requiremen…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43333 - bpf: reject direct access to nullable PTR_TO_BUF pointers

In the Linux kernel, the following vulnerability has been resolved: bpf: reject direct access to nullable PTR_TO_BUF pointers check_mem_access() matches PTR_TO_BUF via base_type() which strips PTR_MAYBE_NULL, allowing direct dereference without a null check. Map iterator ctx->key and ctx->value …

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43332 - thermal: core: Fix thermal zone device registration error path

In the Linux kernel, the following vulnerability has been resolved: thermal: core: Fix thermal zone device registration error path If thermal_zone_device_register_with_trips() fails after registering a thermal zone device, it needs to wait for the tz->removal completion like thermal_zone_device_u…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43331 - x86/kexec: Disable KCOV instrumentation after load_segments()

In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Disable KCOV instrumentation after load_segments() The load_segments() function changes segment registers, invalidating GS base (which KCOV relies on for per-cpu data). When CONFIG_KCOV is enabled, any subsequent instr…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43330 - crypto: caam - fix overflow on long hmac keys

In the Linux kernel, the following vulnerability has been resolved: crypto: caam - fix overflow on long hmac keys When a key longer than block size is supplied, it is copied and then hashed into the real key. The memory allocated for the copy needs to be rounded to DMA cache alignment, as otherw…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43329 - netfilter: flowtable: strictly check for maximum number of actions

In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: strictly check for maximum number of actions The maximum number of flowtable hardware offload actions in IPv6 is: * ethernet mangling (4 payload actions, 2 for each ethernet address) * SNAT (4 payload actio…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43328 - cpufreq: governor: fix double free in cpufreq_dbs_governor_init() error path

In the Linux kernel, the following vulnerability has been resolved: cpufreq: governor: fix double free in cpufreq_dbs_governor_init() error path When kobject_init_and_add() fails, cpufreq_dbs_governor_init() calls kobject_put(&dbs_data->attr_set.kobj). The kobject release callback cpufreq_dbs_da…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43327 - USB: dummy-hcd: Fix locking/synchronization error

In the Linux kernel, the following vulnerability has been resolved: USB: dummy-hcd: Fix locking/synchronization error Syzbot testing was able to provoke an addressing exception and crash in the usb_gadget_udc_reset() routine in drivers/usb/gadgets/udc/core.c, resulting from the fact that the rout…

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43326 - sched_ext: Fix SCX_KICK_WAIT deadlock by deferring wait to balance callback

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix SCX_KICK_WAIT deadlock by deferring wait to balance callback SCX_KICK_WAIT busy-waits in kick_cpus_irq_workfn() using smp_cond_load_acquire() until the target CPU's kick_sync advances. Because the irq_work runs in …

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.

0.0

CVE-2026-43325 - wifi: iwlwifi: mvm: don't send a 6E related command when not supported

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: don't send a 6E related command when not supported MCC_ALLOWED_AP_TYPE_CMD is related to 6E support. Do not send it if the device doesn't support 6E. Apparently, the firmware is mistakenly advertising support …

πŸ“… Published: May 8, 2026, 1:31 p.m. πŸ”„ Last Modified: May 8, 2026, 1:31 p.m.
Total resulsts: 349182
Page 19 of 34,919
Β« previous page Β» next page
Filters