7.8

CVSS3.1

CVE-2026-23445 - igc: fix page fault in XDP TX timestamps handling

In the Linux kernel, the following vulnerability has been resolved: igc: fix page fault in XDP TX timestamps handling If an XDP application that requested TX timestamping is shutting down while the link of the interface in use is still up the following kernel splat is reported: [ 883.803618] [ …

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

4.7

CVSS3.1

CVE-2026-23441 - net/mlx5e: Prevent concurrent access to IPSec ASO context

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Prevent concurrent access to IPSec ASO context The query or updating IPSec offload object is through Access ASO WQE. The driver uses a single mlx5e_ipsec_aso struct for each PF, which contains a shared DMA-mapped conte…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 8:59 p.m.

7.1

CVSS3.1

CVE-2026-23434 - mtd: rawnand: serialize lock/unlock against other NAND operations

In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: serialize lock/unlock against other NAND operations nand_lock() and nand_unlock() call into chip->ops.lock_area/unlock_area without holding the NAND device lock. On controllers that implement SET_FEATURES via multip…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

5.5

CVSS3.1

CVE-2026-23433 - arm_mpam: Fix null pointer dereference when restoring bandwidth counters

In the Linux kernel, the following vulnerability has been resolved: arm_mpam: Fix null pointer dereference when restoring bandwidth counters When an MSC supporting memory bandwidth monitoring is brought offline and then online, mpam_restore_mbwu_state() calls __ris_msmon_read() via ipi to restore…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 8:59 p.m.

7.8

CVSS3.1

CVE-2026-23432 - mshv: Fix use-after-free in mshv_map_user_memory error path

In the Linux kernel, the following vulnerability has been resolved: mshv: Fix use-after-free in mshv_map_user_memory error path In the error path of mshv_map_user_memory(), calling vfree() directly on the region leaves the MMU notifier registered. When userspace later unmaps the memory, the notif…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9 p.m.

5.5

CVSS3.1

CVE-2026-23426 - drm/logicvc: Fix device node reference leak in logicvc_drm_config_parse()

In the Linux kernel, the following vulnerability has been resolved: drm/logicvc: Fix device node reference leak in logicvc_drm_config_parse() The logicvc_drm_config_parse() function calls of_get_child_by_name() to find the "layers" node but fails to release the reference, leading to a device node…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:04 p.m.

8.8

CVSS3.1

CVE-2026-23425 - KVM: arm64: Fix ID register initialization for non-protected pKVM guests

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix ID register initialization for non-protected pKVM guests In protected mode, the hypervisor maintains a separate instance of the `kvm` structure for each VM. For non-protected VMs, this structure is initialized fro…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

7.5

CVSS3.1

CVE-2026-23419 - net/rds: Fix circular locking dependency in rds_tcp_tune

In the Linux kernel, the following vulnerability has been resolved: net/rds: Fix circular locking dependency in rds_tcp_tune syzbot reported a circular locking dependency in rds_tcp_tune() where sk_net_refcnt_upgrade() is called while holding the socket lock: ====================================…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

7.8

CVSS3.1

CVE-2026-31396 - net: macb: fix use-after-free access to PTP clock

In the Linux kernel, the following vulnerability has been resolved: net: macb: fix use-after-free access to PTP clock PTP clock is registered on every opening of the interface and destroyed on every closing. However it may be accessed via get_ts_info ethtool call which is possible while the inte…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.

7.5

CVSS3.1

CVE-2026-23451 - bonding: prevent potential infinite loop in bond_header_parse()

In the Linux kernel, the following vulnerability has been resolved: bonding: prevent potential infinite loop in bond_header_parse() bond_header_parse() can loop if a stack of two bonding devices is setup, because skb->dev always points to the hierarchy top. Add new "const struct net_device *dev"…

πŸ“… Published: April 3, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:02 p.m.
Total resulsts: 349182
Page 713 of 34,919
Β« previous page Β» next page
Filters