4.7

CVSS3.1

CVE-2026-23071 - regmap: Fix race condition in hwspinlock irqsave routine

In the Linux kernel, the following vulnerability has been resolved: regmap: Fix race condition in hwspinlock irqsave routine Previously, the address of the shared member '&map->spinlock_flags' was passed directly to 'hwspin_lock_timeout_irqsave'. This creates a race condition where multiple conte…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23096 - uacce: fix cdev handling in the cleanup path

In the Linux kernel, the following vulnerability has been resolved: uacce: fix cdev handling in the cleanup path When cdev_device_add fails, it internally releases the cdev memory, and if cdev_device_del is then executed, it will cause a hang error. To fix it, we check the return value of cdev_de…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23085 - irqchip/gic-v3-its: Avoid truncating memory addresses

In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Avoid truncating memory addresses On 32-bit machines with CONFIG_ARM_LPAE, it is possible for lowmem allocations to be backed by addresses physical memory above the 32-bit address limit, as found while experim…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:30 p.m.

5.5

CVSS3.1

CVE-2026-23081 - net: phy: intel-xway: fix OF node refcount leakage

In the Linux kernel, the following vulnerability has been resolved: net: phy: intel-xway: fix OF node refcount leakage Automated review spotted am OF node reference count leakage when checking if the 'leds' child node exists. Call of_put_node() to correctly maintain the refcount.

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23079 - gpio: cdev: Fix resource leaks on errors in lineinfo_changed_notify()

In the Linux kernel, the following vulnerability has been resolved: gpio: cdev: Fix resource leaks on errors in lineinfo_changed_notify() On error handling paths, lineinfo_changed_notify() doesn't free the allocated resources which results leaks. Fix it.

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

0.0

CVE-2026-23049 - drm/panel-simple: fix connector type for DataImage SCF0700C48GGU18 panel

In the Linux kernel, the following vulnerability has been resolved: drm/panel-simple: fix connector type for DataImage SCF0700C48GGU18 panel The connector type for the DataImage SCF0700C48GGU18 panel is missing and devm_drm_panel_bridge_add() requires connector type to be set. This leads to a war…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 2 p.m.

7.8

CVSS3.1

CVE-2026-23103 - ipvlan: Make the addrs_lock be per port

In the Linux kernel, the following vulnerability has been resolved: ipvlan: Make the addrs_lock be per port Make the addrs_lock be per port, not per ipvlan dev. Initial code seems to be written in the assumption, that any address change must occur under RTNL. But it is not so for the case of IPv…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 1:15 a.m.

7.5

CVSS3.1

CVE-2025-71031 -

Water-Melon Melon commit 9df9292 and below is vulnerable to Denial of Service. The HTTP component doesn't have any maximum length. As a result, an excessive request header could cause a denial of service by consuming RAM memory.

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: Feb. 25, 2026, 6:47 p.m.

7.0

CVSS3.1

CVE-2026-23052 - ftrace: Do not over-allocate ftrace memory

In the Linux kernel, the following vulnerability has been resolved: ftrace: Do not over-allocate ftrace memory The pg_remaining calculation in ftrace_process_locs() assumes that ENTRIES_PER_PAGE multiplied by 2^order equals the actual capacity of the allocated page group. However, ENTRIES_PER_PAG…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:45 p.m.

0.0

CVE-2026-23051 - drm/amdgpu: fix drm panic null pointer when driver not support atomic

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix drm panic null pointer when driver not support atomic When driver not support atomic, fb using plane->fb rather than plane->state->fb. (cherry picked from commit 2f2a72de673513247cd6fae14e53f6c40c5841ef)

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 2 p.m.
Total resulsts: 349182
Page 1813 of 34,919
Β« previous page Β» next page
Filters