5.5

CVSS3.1

CVE-2026-23128 - arm64: Set __nocfi on swsusp_arch_resume()

In the Linux kernel, the following vulnerability has been resolved: arm64: Set __nocfi on swsusp_arch_resume() A DABT is reported[1] on an android based system when resume from hiberate. This happens because swsusp_arch_suspend_exit() is marked with SYM_CODE_*() and does not have a CFI hash, but โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 18, 2026, 12:30 p.m.

5.5

CVSS3.1

CVE-2026-23124 - ipv6: annotate data-race in ndisc_router_discovery()

In the Linux kernel, the following vulnerability has been resolved: ipv6: annotate data-race in ndisc_router_discovery() syzbot found that ndisc_router_discovery() could read and write in6_dev->ra_mtu without holding a lock [1] This looks fine, IFLA_INET6_RA_MTU is best effort. Add READ_ONCE()/โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 7:45 p.m.

5.5

CVSS3.1

CVE-2026-23119 - bonding: provide a net pointer to __skb_flow_dissect()

In the Linux kernel, the following vulnerability has been resolved: bonding: provide a net pointer to __skb_flow_dissect() After 3cbf4ffba5ee ("net: plumb network namespace into __skb_flow_dissect") we have to provide a net pointer to __skb_flow_dissect(), either via skb->dev, skb->sk, or a user โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 7:45 p.m.

5.5

CVSS3.1

CVE-2026-23143 - virtio_net: Fix misalignment bug in struct virtnet_info

In the Linux kernel, the following vulnerability has been resolved: virtio_net: Fix misalignment bug in struct virtnet_info Use the new TRAILING_OVERLAP() helper to fix a misalignment bug along with the following warning: drivers/net/virtio_net.c:429:46: warning: structure containing a flexible โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 18, 2026, 8:45 p.m.

7.0

CVSS3.1

CVE-2025-71221 - dmaengine: mmp_pdma: Fix race condition in mmp_pdma_residue()

In the Linux kernel, the following vulnerability has been resolved: dmaengine: mmp_pdma: Fix race condition in mmp_pdma_residue() Add proper locking in mmp_pdma_residue() to prevent use-after-free when accessing descriptor list and descriptor contents. The race occurs when multiple threads call โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: March 25, 2026, 10:20 a.m.

7

CVSS3.1

CVE-2026-23175 - net: cpsw: Execute ndo_set_rx_mode callback in a work queue

In the Linux kernel, the following vulnerability has been resolved: net: cpsw: Execute ndo_set_rx_mode callback in a work queue Commit 1767bb2d47b7 ("ipv6: mcast: Don't hold RTNL for IPV6_ADD_MEMBERSHIP and MCAST_JOIN_GROUP.") removed the RTNL lock for IPV6_ADD_MEMBERSHIP and MCAST_JOIN_GROUP opeโ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 8:45 p.m.

5.5

CVSS3.1

CVE-2026-23201 - ceph: fix oops due to invalid pointer for kfree() in parse_longname()

In the Linux kernel, the following vulnerability has been resolved: ceph: fix oops due to invalid pointer for kfree() in parse_longname() This fixes a kernel oops when reading ceph snapshot directories (.snap), for example by simply running `ls /mnt/my_ceph/.snap`. The variable str is guarded byโ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 7:30 p.m.

5.5

CVSS3.1

CVE-2026-23173 - net/mlx5e: TC, delete flows only for existing peers

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: TC, delete flows only for existing peers When deleting TC steering flows, iterate only over actual devcom peers instead of assuming all possible ports exist. This avoids touching non-existent peers and ensures cleanup โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 18, 2026, 8:45 p.m.

7.8

CVSS3.1

CVE-2026-23169 - mptcp: fix race in mptcp_pm_nl_flush_addrs_doit()

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race in mptcp_pm_nl_flush_addrs_doit() syzbot and Eulgyu Kim reported crashes in mptcp_pm_nl_get_local_id() and/or mptcp_pm_nl_is_backup() Root cause is list_splice_init() in mptcp_pm_nl_flush_addrs_doit() which is noโ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 16, 2026, 7 a.m.

5.5

CVSS3.1

CVE-2026-23149 - drm: Do not allow userspace to trigger kernel warnings in drm_gem_change_handle_ioctl()

In the Linux kernel, the following vulnerability has been resolved: drm: Do not allow userspace to trigger kernel warnings in drm_gem_change_handle_ioctl() Since GEM bo handles are u32 in the uapi and the internal implementation uses idr_alloc() which uses int ranges, passing a new handle larger โ€ฆ

๐Ÿ“… Published: Feb. 14, 2026, midnight ๐Ÿ”„ Last Modified: April 18, 2026, 8:15 p.m.
Total resulsts: 346529
Page 1372 of 34,653
ยซ previous page ยป next page
Filters