5.5

CVSS3.1

CVE-2026-31632 - rxrpc: Fix leak of rxgk context in rxgk_verify_response()

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix leak of rxgk context in rxgk_verify_response() Fix rxgk_verify_response() to clean up the rxgk context it creates.

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 8:30 p.m.

0.0

CVE-2026-31616 - usb: gadget: f_phonet: fix skb frags[] overflow in pn_rx_complete()

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_phonet: fix skb frags[] overflow in pn_rx_complete() A broken/bored/mean USB host can overflow the skb_shared_info->frags[] array on a Linux gadget exposing a Phonet function by sending an unbounded sequence of ful…

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 1:56 p.m.

7.8

CVSS3.1

CVE-2026-31578 - media: as102: fix to not free memory after the device is registered in as102_usb_probe()

In the Linux kernel, the following vulnerability has been resolved: media: as102: fix to not free memory after the device is registered in as102_usb_probe() In as102_usb driver, the following race condition occurs: ``` CPU0 CPU1 as102_usb_probe() kzalloc(); // alloc as102_dev_t .... …

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 8:42 p.m.

5.5

CVSS3.1

CVE-2026-31655 - pmdomain: imx8mp-blk-ctrl: Keep the NOC_HDCP clock enabled

In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx8mp-blk-ctrl: Keep the NOC_HDCP clock enabled Keep the NOC_HDCP clock always enabled to fix the potential hang caused by the NoC ADB400 port power down handshake.

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 8:16 p.m.

0.0

CVE-2026-31562 - drm/mediatek: dsi: Store driver data before invoking mipi_dsi_host_register

In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: dsi: Store driver data before invoking mipi_dsi_host_register The call to mipi_dsi_host_register triggers a callback to mtk_dsi_bind, which uses dev_get_drvdata to retrieve the mtk_dsi struct, so this structure need…

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 5:51 p.m.

5.5

CVSS3.1

CVE-2026-31651 - mmc: vub300: fix NULL-deref on disconnect

In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix NULL-deref on disconnect Make sure to deregister the controller before dropping the reference to the driver data on disconnect to avoid NULL-pointer dereferences or use-after-free.

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 8:14 p.m.

7.8

CVSS3.1

CVE-2026-31656 - drm/i915/gt: fix refcount underflow in intel_engine_park_heartbeat

In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: fix refcount underflow in intel_engine_park_heartbeat A use-after-free / refcount underflow is possible when the heartbeat worker and intel_engine_park_heartbeat() race to release the same engine->heartbeat.systole r…

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:04 p.m.

9.8

CVSS3.1

CVE-2026-31649 - net: stmmac: fix integer underflow in chain mode

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix integer underflow in chain mode The jumbo_frm() chain-mode implementation unconditionally computes len = nopaged_len - bmax; where nopaged_len = skb_headlen(skb) (linear bytes only) and bmax is BUF_SIZE_8Ki…

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:04 p.m.

8.8

CVSS3.1

CVE-2026-31570 - can: gw: fix OOB heap access in cgw_csum_crc8_rel()

In the Linux kernel, the following vulnerability has been resolved: can: gw: fix OOB heap access in cgw_csum_crc8_rel() cgw_csum_crc8_rel() correctly computes bounds-safe indices via calc_idx(): int from = calc_idx(crc8->from_idx, cf->len); int to = calc_idx(crc8->to_idx, cf->len); …

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:04 p.m.

7.8

CVSS3.1

CVE-2026-31641 - rxrpc: Fix RxGK token loading to check bounds

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix RxGK token loading to check bounds rxrpc_preparse_xdr_yfs_rxgk() reads the raw key length and ticket length from the XDR token as u32 values and passes each through round_up(x, 4) before using the rounded value for val…

πŸ“… Published: April 24, 2026, midnight πŸ”„ Last Modified: April 27, 2026, 2:04 p.m.
Total resulsts: 347008
Page 75 of 34,701
Β« previous page Β» next page
Filters