4.7

CVSS3.1

CVE-2026-23207 - spi: tegra210-quad: Protect curr_xfer check in IRQ handler

In the Linux kernel, the following vulnerability has been resolved: spi: tegra210-quad: Protect curr_xfer check in IRQ handler Now that all other accesses to curr_xfer are done under the lock, protect the curr_xfer NULL check in tegra_qspi_isr_thread() with the spinlock. Without this protection, …

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 15, 2026, 8:30 p.m.

5.5

CVSS3.1

CVE-2026-23200 - ipv6: Fix ECMP sibling count mismatch when clearing RTF_ADDRCONF

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix ECMP sibling count mismatch when clearing RTF_ADDRCONF syzbot reported a kernel BUG in fib6_add_rt2node() when adding an IPv6 route. [0] Commit f72514b3c569 ("ipv6: clear RA flags when adding a static route") introduce…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:30 p.m.

7.8

CVSS3.1

CVE-2026-23178 - HID: i2c-hid: fix potential buffer overflow in i2c_hid_get_report()

In the Linux kernel, the following vulnerability has been resolved: HID: i2c-hid: fix potential buffer overflow in i2c_hid_get_report() `i2c_hid_xfer` is used to read `recv_len + sizeof(__le16)` bytes of data into `ihid->rawbuf`. The former can come from the userspace in the hidraw driver and is…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:30 p.m.

5.5

CVSS3.1

CVE-2026-23189 - ceph: fix NULL pointer dereference in ceph_mds_auth_match()

In the Linux kernel, the following vulnerability has been resolved: ceph: fix NULL pointer dereference in ceph_mds_auth_match() The CephFS kernel client has regression starting from 6.18-rc1. We have issue in ceph_mds_auth_match() if fs_name == NULL: const char fs_name = mdsc->fsc->mount_opt…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 7:30 p.m.

5.5

CVSS3.1

CVE-2026-23144 - mm/damon/sysfs: cleanup attrs subdirs on context dir setup failure

In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: cleanup attrs subdirs on context dir setup failure When a context DAMON sysfs directory setup is failed after setup of attrs/ directory, subdirectories of attrs/ directory are not cleaned up. As a result, DAMON s…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 12:30 p.m.

0.0

CVE-2026-23182 - spi: tegra: Fix a memory leak in tegra_slink_probe()

In the Linux kernel, the following vulnerability has been resolved: spi: tegra: Fix a memory leak in tegra_slink_probe() In tegra_slink_probe(), when platform_get_irq() fails, it directly returns from the function with an error code, which causes a memory leak. Replace it with a goto label to en…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 12:15 p.m.

7.8

CVSS3.1

CVE-2026-23162 - drm/xe/nvm: Fix double-free on aux add failure

In the Linux kernel, the following vulnerability has been resolved: drm/xe/nvm: Fix double-free on aux add failure After a successful auxiliary_device_init(), aux_dev->dev.release (xe_nvm_release_dev()) is responsible for the kfree(nvm). When there is failure with auxiliary_device_add(), driver w…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:15 p.m.

5.5

CVSS3.1

CVE-2026-23150 - nfc: llcp: Fix memleak in nfc_llcp_send_ui_frame().

In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: Fix memleak in nfc_llcp_send_ui_frame(). syzbot reported various memory leaks related to NFC, struct nfc_llcp_sock, sk_buff, nfc_dev, etc. [0] The leading log hinted that nfc_llcp_send_ui_frame() failed to allocate sk…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:15 p.m.

5.5

CVSS3.1

CVE-2026-23123 - interconnect: debugfs: initialize src_node and dst_node to empty strings

In the Linux kernel, the following vulnerability has been resolved: interconnect: debugfs: initialize src_node and dst_node to empty strings The debugfs_create_str() API assumes that the string pointer is either NULL or points to valid kmalloc() memory. Leaving the pointer uninitialized can cause…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:15 p.m.

5.5

CVSS3.1

CVE-2026-23121 - mISDN: annotate data-race around dev->work

In the Linux kernel, the following vulnerability has been resolved: mISDN: annotate data-race around dev->work dev->work can re read locklessly in mISDN_read() and mISDN_poll(). Add READ_ONCE()/WRITE_ONCE() annotations. BUG: KCSAN: data-race in mISDN_ioctl / mISDN_read write to 0xffff88812d8482…

πŸ“… Published: Feb. 14, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:15 p.m.
Total resulsts: 346532
Page 1370 of 34,654
Β« previous page Β» next page
Filters