7.8

CVSS3.1

CVE-2026-43178 - procfs: fix possible double mmput() in do_procmap_query()

In the Linux kernel, the following vulnerability has been resolved: procfs: fix possible double mmput() in do_procmap_query() When user provides incorrectly sized buffer for build ID for PROCMAP_QUERY we return with -ENAMETOOLONG error. After recent changes this condition happens later, after we…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 12:40 p.m.

5.5

CVSS3.1

CVE-2026-43088 - net: af_key: zero aligned sockaddr tail in PF_KEY exports

In the Linux kernel, the following vulnerability has been resolved: net: af_key: zero aligned sockaddr tail in PF_KEY exports PF_KEY export paths use `pfkey_sockaddr_size()` when reserving sockaddr payload space, so IPv6 addresses occupy 32 bytes on the wire. However, `pfkey_sockaddr_fill()` init…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 2:30 a.m.

8.8

CVSS3.1

CVE-2026-43239 - smb: client: prevent races in ->query_interfaces()

In the Linux kernel, the following vulnerability has been resolved: smb: client: prevent races in ->query_interfaces() It was possible for two query interface works to be concurrently trying to update the interfaces. Prevent this by checking and updating iface_last_update under iface_lock.

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 12:41 p.m.

7.0

CVSS3.1

CVE-2026-43169 - drm/buddy: Prevent BUG_ON by validating rounded allocation

In the Linux kernel, the following vulnerability has been resolved: drm/buddy: Prevent BUG_ON by validating rounded allocation When DRM_BUDDY_CONTIGUOUS_ALLOCATION is set, the requested size is rounded up to the next power-of-two via roundup_pow_of_two(). Similarly, for non-contiguous allocations…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 3 a.m.

7.0

CVSS3.1

CVE-2026-43157 - octeontx2-af: CGX: fix bitmap leaks

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: CGX: fix bitmap leaks The RX/TX flow-control bitmaps (rx_fc_pfvf_bmap and tx_fc_pfvf_bmap) are allocated by cgx_lmac_init() but never freed in cgx_lmac_exit(). Unbinding and rebinding the driver therefore triggers k…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 4:30 a.m.

5.5

CVSS3.1

CVE-2026-43086 - ipvs: fix NULL deref in ip_vs_add_service error path

In the Linux kernel, the following vulnerability has been resolved: ipvs: fix NULL deref in ip_vs_add_service error path When ip_vs_bind_scheduler() succeeds in ip_vs_add_service(), the local variable sched is set to NULL. If ip_vs_start_estimator() subsequently fails, the out_err cleanup calls …

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 7, 2026, 4 a.m.

7.8

CVSS3.1

CVE-2026-43207 - media: mtk-mdp: Fix error handling in probe function

In the Linux kernel, the following vulnerability has been resolved: media: mtk-mdp: Fix error handling in probe function Add mtk_mdp_unregister_m2m_device() on the error handling path to prevent resource leak. Add check for the return value of vpu_get_plat_device() to prevent null pointer derefe…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 4 p.m.

8.8

CVSS3.1

CVE-2026-43232 - net: wan: farsync: Fix use-after-free bugs caused by unfinished tasklets

In the Linux kernel, the following vulnerability has been resolved: net: wan: farsync: Fix use-after-free bugs caused by unfinished tasklets When the FarSync T-series card is being detached, the fst_card_info is deallocated in fst_remove_one(). However, the fst_tx_task or fst_int_task may still b…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 12:41 p.m.

7.8

CVSS3.1

CVE-2026-43214 - KVM: x86: Add SRCU protection for reading PDPTRs in __get_sregs2()

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Add SRCU protection for reading PDPTRs in __get_sregs2() Add SRCU read-side protection when reading PDPTR registers in __get_sregs2(). Reading PDPTRs may trigger access to guest memory: kvm_pdptr_read() -> svm_cache_re…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 12:41 p.m.

7.8

CVSS3.1

CVE-2026-43091 - xfrm: Wait for RCU readers during policy netns exit

In the Linux kernel, the following vulnerability has been resolved: xfrm: Wait for RCU readers during policy netns exit xfrm_policy_fini() frees the policy_bydst hash tables after flushing the policy work items and deleting all policies, but it does not wait for concurrent RCU readers to leave th…

πŸ“… Published: May 6, 2026, midnight πŸ”„ Last Modified: May 8, 2026, 12:40 p.m.
Total resulsts: 349182
Page 96 of 34,919
Β« previous page Β» next page
Filters