0.0

CVE-2026-23012 - mm/damon/core: remove call_control in inactive contexts

In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: remove call_control in inactive contexts If damon_call() is executed against a DAMON context that is not running, the function returns error while keeping the damon_call_control object linked to the context's call_…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23011 - ipv4: ip_gre: make ipgre_header() robust

In the Linux kernel, the following vulnerability has been resolved: ipv4: ip_gre: make ipgre_header() robust Analog to commit db5b4e39c4e6 ("ip6_gre: make ip6gre_header() robust") Over the years, syzbot found many ways to crash the kernel in ipgre_header() [1]. This involves team or bonding dri…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23010 - ipv6: Fix use-after-free in inet6_addr_del().

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix use-after-free in inet6_addr_del(). syzbot reported use-after-free of inet6_ifaddr in inet6_addr_del(). [0] The cited commit accidentally moved ipv6_del_addr() for mngtmpaddr before reading its ifp->flags for temporary…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23009 - xhci: sideband: don't dereference freed ring when removing sideband endpoint

In the Linux kernel, the following vulnerability has been resolved: xhci: sideband: don't dereference freed ring when removing sideband endpoint xhci_sideband_remove_endpoint() incorrecly assumes that the endpoint is running and has a valid transfer ring. Lianqin reported a crash during suspend/…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23008 - drm/vmwgfx: Fix KMS with 3D on HW version 10

In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix KMS with 3D on HW version 10 HW version 10 does not have GB Surfaces so there is no backing buffer for surface backed FBs. This would result in a nullptr dereference and crash the driver causing a black screen.

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23007 - block: zero non-PI portion of auto integrity buffer

In the Linux kernel, the following vulnerability has been resolved: block: zero non-PI portion of auto integrity buffer The auto-generated integrity buffer for writes needs to be fully initialized before being passed to the underlying block device, otherwise the uninitialized memory can be read b…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23006 - ASoC: tlv320adcx140: fix null pointer

In the Linux kernel, the following vulnerability has been resolved: ASoC: tlv320adcx140: fix null pointer The "snd_soc_component" in "adcx140_priv" was only used once but never set. It was only used for reaching "dev" which is already present in "adcx140_priv".

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23005 - x86/fpu: Clear XSTATE_BV[i] in guest XSAVE state whenever XFD[i]=1

In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Clear XSTATE_BV[i] in guest XSAVE state whenever XFD[i]=1 When loading guest XSAVE state via KVM_SET_XSAVE, and when updating XFD in response to a guest WRMSR, clear XFD-disabled features in the saved (or to be restored)…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23004 - dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list()

In the Linux kernel, the following vulnerability has been resolved: dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list() syzbot was able to crash the kernel in rt6_uncached_list_flush_dev() in an interesting way [1] Crash happens in list_del_init()/INIT_LIST_HEAD() while writing …

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.

0.0

CVE-2026-23003 - ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl_rcv()

In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl_rcv() Blamed commit did not take care of VLAN encapsulations as spotted by syzbot [1]. Use skb_vlan_inet_prepare() instead of pskb_inet_may_pull(). [1] BUG: KMSAN: uninit-va…

πŸ“… Published: Jan. 25, 2026, 2:36 p.m. πŸ”„ Last Modified: Jan. 25, 2026, 2:36 p.m.
Total resulsts: 329509
Page 2 of 32,951
Β« previous page Β» next page
Filters