5.5

CVSS3.1

CVE-2026-23088 - tracing: Fix crash on synthetic stacktrace field usage

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix crash on synthetic stacktrace field usage When creating a synthetic event based on an existing synthetic event that had a stacktrace field and the new synthetic event used that field a kernel crash occurred: ~# cd …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23072 - l2tp: Fix memleak in l2tp_udp_encap_recv().

In the Linux kernel, the following vulnerability has been resolved: l2tp: Fix memleak in l2tp_udp_encap_recv(). syzbot reported memleak of struct l2tp_session, l2tp_tunnel, sock, etc. [0] The cited commit moved down the validation of the protocol version in l2tp_udp_encap_recv(). The new place …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

7.0

CVSS3.1

CVE-2026-23059 - scsi: qla2xxx: Sanitize payload size to prevent member overflow

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Sanitize payload size to prevent member overflow In qla27xx_copy_fpin_pkt() and qla27xx_copy_multiple_pkt(), the frame_size reported by firmware is used to calculate the copy length into item->iocb. However, the io…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

7.0

CVSS3.1

CVE-2026-23057 - vsock/virtio: Coalesce only linear skb

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: Coalesce only linear skb vsock/virtio common tries to coalesce buffers in rx queue: if a linear skb (with a spare tail room) is followed by a small skb (length limited by GOOD_COPY_LEN = 128), an attempt is made to …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

0.0

CVE-2026-23041 - bnxt_en: Fix NULL pointer crash in bnxt_ptp_enable during error cleanup

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix NULL pointer crash in bnxt_ptp_enable during error cleanup When bnxt_init_one() fails during initialization (e.g., bnxt_init_int_mode returns -ENODEV), the error path calls bnxt_free_hwrm_resources() which destroys t…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, midnight

5.5

CVSS3.1

CVE-2026-23090 - slimbus: core: fix device reference leak on report present

In the Linux kernel, the following vulnerability has been resolved: slimbus: core: fix device reference leak on report present Slimbus devices can be allocated dynamically upon reception of report-present messages. Make sure to drop the reference taken when looking up already registered devices.…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:30 p.m.

7.8

CVSS3.1

CVE-2026-23089 - ALSA: usb-audio: Fix use-after-free in snd_usb_mixer_free()

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix use-after-free in snd_usb_mixer_free() When snd_usb_create_mixer() fails, snd_usb_mixer_free() frees mixer->id_elems but the controls already added to the card still reference the freed memory. Later when snd…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 6:30 p.m.

5.5

CVSS3.1

CVE-2026-23084 - be2net: Fix NULL pointer dereference in be_cmd_get_mac_from_list

In the Linux kernel, the following vulnerability has been resolved: be2net: Fix NULL pointer dereference in be_cmd_get_mac_from_list When the parameter pmac_id_valid argument of be_cmd_get_mac_from_list() is set to false, the driver may request the PMAC_ID from the firmware of the network card, a…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.

5.5

CVSS3.1

CVE-2026-23063 - uacce: ensure safe queue release with state management

In the Linux kernel, the following vulnerability has been resolved: uacce: ensure safe queue release with state management Directly calling `put_queue` carries risks since it cannot guarantee that resources of `uacce_queue` have been fully released beforehand. So adding a `stop_queue` operation f…

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 2 p.m.

5.5

CVSS3.1

CVE-2026-23061 - can: kvaser_usb: kvaser_usb_read_bulk_callback(): fix URB memory leak

In the Linux kernel, the following vulnerability has been resolved: can: kvaser_usb: kvaser_usb_read_bulk_callback(): fix URB memory leak Fix similar memory leak as in commit 7352e1d5932a ("can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak"). In kvaser_usb_set_{,data_}bittiming() …

πŸ“… Published: Feb. 4, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 11:45 p.m.
Total resulsts: 349182
Page 1816 of 34,919
Β« previous page Β» next page
Filters