0.0

CVE-2026-43052 - wifi: mac80211: check tdls flag in ieee80211_tdls_oper

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: check tdls flag in ieee80211_tdls_oper When NL80211_TDLS_ENABLE_LINK is called, the code only checks if the station exists but not whether it is actually a TDLS station. This allows the operation to proceed for no…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43050 - atm: lec: fix use-after-free in sock_def_readable()

In the Linux kernel, the following vulnerability has been resolved: atm: lec: fix use-after-free in sock_def_readable() A race condition exists between lec_atm_close() setting priv->lecd to NULL and concurrent access to priv->lecd in send_to_lecd(), lec_handle_bridge(), and lec_atm_send(). When t…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43049 - HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure

In the Linux kernel, the following vulnerability has been resolved: HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure Presently, if the force feedback initialisation fails when probing the Logitech G920 Driving Force Racing Wheel for Xbox One, an error number wi…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43046 - btrfs: reject root items with drop_progress and zero drop_level

In the Linux kernel, the following vulnerability has been resolved: btrfs: reject root items with drop_progress and zero drop_level [BUG] When recovering relocation at mount time, merge_reloc_root() and btrfs_drop_snapshot() both use BUG_ON(level == 0) to guard against an impossible state: a non-…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43045 - mshv: Fix error handling in mshv_region_pin

In the Linux kernel, the following vulnerability has been resolved: mshv: Fix error handling in mshv_region_pin The current error handling has two issues: First, pin_user_pages_fast() can return a short pin count (less than requested but greater than zero) when it cannot pin all requested pages.…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43043 - crypto: af-alg - fix NULL pointer dereference in scatterwalk

In the Linux kernel, the following vulnerability has been resolved: crypto: af-alg - fix NULL pointer dereference in scatterwalk The AF_ALG interface fails to unmark the end of a Scatter/Gather List (SGL) when chaining a new af_alg_tsgl structure. If a sendmsg() fills an SGL exactly to MAX_SGL_EN…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43041 - net: qrtr: replace qrtr_tx_flow radix_tree with xarray to fix memory leak

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: replace qrtr_tx_flow radix_tree with xarray to fix memory leak __radix_tree_create() allocates and links intermediate nodes into the tree one by one. If a subsequent allocation fails, the already-linked nodes remain in…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43040 - net: ipv6: ndisc: fix ndisc_ra_useropt to initialize nduseropt_padX fields to zero to prevent an in…

In the Linux kernel, the following vulnerability has been resolved: net: ipv6: ndisc: fix ndisc_ra_useropt to initialize nduseropt_padX fields to zero to prevent an info-leak When processing Router Advertisements with user options the kernel builds an RTM_NEWNDUSEROPT netlink message. The ndusero…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43036 - net: use skb_header_pointer() for TCPv4 GSO frag_off check

In the Linux kernel, the following vulnerability has been resolved: net: use skb_header_pointer() for TCPv4 GSO frag_off check Syzbot reported a KMSAN uninit-value warning in gso_features_check() called from netif_skb_features() [1]. gso_features_check() reads iph->frag_off to decide whether to …

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.

0.0

CVE-2026-43035 - net: sched: cls_api: fix tc_chain_fill_node to initialize tcm_info to zero to prevent an info-leak

In the Linux kernel, the following vulnerability has been resolved: net: sched: cls_api: fix tc_chain_fill_node to initialize tcm_info to zero to prevent an info-leak When building netlink messages, tc_chain_fill_node() never initializes the tcm_info field of struct tcmsg. Since the allocation is…

πŸ“… Published: May 1, 2026, 2:15 p.m. πŸ”„ Last Modified: May 1, 2026, 2:15 p.m.
Total resulsts: 347841
Page 25 of 34,785
Β« previous page Β» next page
Filters