5.5

CVSS3.1

CVE-2026-23324 - can: usb: etas_es58x: correctly anchor the urb in the read bulk callback

In the Linux kernel, the following vulnerability has been resolved: can: usb: etas_es58x: correctly anchor the urb in the read bulk callback When submitting an urb, that is using the anchor pattern, it needs to be anchored before submitting it otherwise it could be leaked if usb_kill_anchored_urb…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:05 p.m.

7.8

CVSS3.1

CVE-2026-23323 - hwmon: (macsmc) Fix regressions in Apple Silicon SMC hwmon driver

In the Linux kernel, the following vulnerability has been resolved: hwmon: (macsmc) Fix regressions in Apple Silicon SMC hwmon driver The recently added macsmc-hwmon driver contained several critical bugs in its sensor population logic and float conversion routines. Specifically: - The voltage s…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:05 p.m.

7.8

CVSS3.1

CVE-2026-23322 - ipmi: Fix use-after-free and list corruption on sender error

In the Linux kernel, the following vulnerability has been resolved: ipmi: Fix use-after-free and list corruption on sender error The analysis from Breno: When the SMI sender returns an error, smi_work() delivers an error response but then jumps back to restart without cleaning up properly: 1. i…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:05 p.m.

7.1

CVSS3.1

CVE-2026-23318 - ALSA: usb-audio: Use correct version for UAC3 header validation

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Use correct version for UAC3 header validation The entry of the validators table for UAC3 AC header descriptor is defined with the wrong protocol version UAC_VERSION_2, while it should have been UAC_VERSION_3. T…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:05 p.m.

7.8

CVSS3.1

CVE-2026-23317 - drm/vmwgfx: Return the correct value in vmw_translate_ptr functions

In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Return the correct value in vmw_translate_ptr functions Before the referenced fixes these functions used a lookup function that returned a pointer. This was changed to another lookup function that returned an error co…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:09 p.m.

5.5

CVSS3.1

CVE-2026-23314 - regulator: bq257xx: Fix device node reference leak in bq257xx_reg_dt_parse_gpio()

In the Linux kernel, the following vulnerability has been resolved: regulator: bq257xx: Fix device node reference leak in bq257xx_reg_dt_parse_gpio() In bq257xx_reg_dt_parse_gpio(), if fails to get subchild, it returns without calling of_node_put(child), causing the device node reference leak.

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 23, 2026, 9:06 p.m.

5.5

CVSS3.1

CVE-2026-23312 - net: usb: kaweth: validate USB endpoints

In the Linux kernel, the following vulnerability has been resolved: net: usb: kaweth: validate USB endpoints The kaweth driver should validate that the device it is probing has the proper number and types of USB endpoints it is expecting before it binds to it. If a malicious device were to not h…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 9:16 a.m.

5.5

CVSS3.1

CVE-2026-23311 - perf/core: Fix invalid wait context in ctx_sched_in()

In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix invalid wait context in ctx_sched_in() Lockdep found a bug in the event scheduling when a pinned event was failed and wakes up the threads in the ring buffer like below. It seems it should not grab a wait-queue lo…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 13, 2026, 6:04 a.m.

0.0

CVE-2026-23309 - tracing: Add NULL pointer check to trigger_data_free()

In the Linux kernel, the following vulnerability has been resolved: tracing: Add NULL pointer check to trigger_data_free() If trigger_data_alloc() fails and returns NULL, event_hist_trigger_parse() jumps to the out_free error path. While kfree() safely handles a NULL pointer, trigger_data_free() …

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 13, 2026, 6:04 a.m.

7.8

CVSS3.1

CVE-2026-23306 - scsi: pm8001: Fix use-after-free in pm8001_queue_command()

In the Linux kernel, the following vulnerability has been resolved: scsi: pm8001: Fix use-after-free in pm8001_queue_command() Commit e29c47fe8946 ("scsi: pm8001: Simplify pm8001_task_exec()") refactors pm8001_queue_command(), however it introduces a potential cause of a double free scenario when…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 13, 2026, 6:04 a.m.
Total resulsts: 349182
Page 930 of 34,919
Β« previous page Β» next page
Filters