0.0

CVE-2026-31759 - usb: ulpi: fix double free in ulpi_register_interface() error path

In the Linux kernel, the following vulnerability has been resolved: usb: ulpi: fix double free in ulpi_register_interface() error path When device_register() fails, ulpi_register() calls put_device() on ulpi->dev. The device release callback ulpi_dev_release() drops the OF node reference and fre…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31757 - usb: misc: usbio: Fix URB memory leak on submit failure

In the Linux kernel, the following vulnerability has been resolved: usb: misc: usbio: Fix URB memory leak on submit failure When usb_submit_urb() fails in usbio_probe(), the previously allocated URB is never freed, causing a memory leak. Fix this by jumping to err_free_urb label to properly rele…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31756 - usb: dwc2: gadget: Fix spin_lock/unlock mismatch in dwc2_hsotg_udc_stop()

In the Linux kernel, the following vulnerability has been resolved: usb: dwc2: gadget: Fix spin_lock/unlock mismatch in dwc2_hsotg_udc_stop() dwc2_gadget_exit_clock_gating() internally calls call_gadget() macro, which expects hsotg->lock to be held since it does spin_unlock/spin_lock around the g…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31755 - usb: cdns3: gadget: fix NULL pointer dereference in ep_queue

In the Linux kernel, the following vulnerability has been resolved: usb: cdns3: gadget: fix NULL pointer dereference in ep_queue When the gadget endpoint is disabled or not yet configured, the ep->desc pointer can be NULL. This leads to a NULL pointer dereference when __cdns3_gadget_ep_queue() is…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31754 - usb: cdns3: gadget: fix state inconsistency on gadget init failure

In the Linux kernel, the following vulnerability has been resolved: usb: cdns3: gadget: fix state inconsistency on gadget init failure When cdns3_gadget_start() fails, the DRD hardware is left in gadget mode while software state remains INACTIVE, creating hardware/software state inconsistency. W…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31753 - auxdisplay: line-display: fix NULL dereference in linedisp_release

In the Linux kernel, the following vulnerability has been resolved: auxdisplay: line-display: fix NULL dereference in linedisp_release linedisp_release() currently retrieves the enclosing struct linedisp via to_linedisp(). That lookup depends on the attachment list, but the attachment may already…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31752 - bridge: br_nd_send: validate ND option lengths

In the Linux kernel, the following vulnerability has been resolved: bridge: br_nd_send: validate ND option lengths br_nd_send() walks ND options according to option-provided lengths. A malformed option can make the parser advance beyond the computed option span or use a too-short source LLADDR op…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31751 - comedi: dt2815: add hardware detection to prevent crash

In the Linux kernel, the following vulnerability has been resolved: comedi: dt2815: add hardware detection to prevent crash The dt2815 driver crashes when attached to I/O ports without actual hardware present. This occurs because syzkaller or users can attach the driver to arbitrary I/O addresses…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31750 - comedi: runflags cannot determine whether to reclaim chanlist

In the Linux kernel, the following vulnerability has been resolved: comedi: runflags cannot determine whether to reclaim chanlist syzbot reported a memory leak [1], because commit 4e1da516debb ("comedi: Add reference counting for Comedi command handling") did not consider the exceptional exit cas…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.

0.0

CVE-2026-31749 - comedi: ni_atmio16d: Fix invalid clean-up after failed attach

In the Linux kernel, the following vulnerability has been resolved: comedi: ni_atmio16d: Fix invalid clean-up after failed attach If the driver's COMEDI "attach" handler function (`atmio16d_attach()`) returns an error, the COMEDI core will call the driver's "detach" handler function (`atmio16d_de…

πŸ“… Published: May 1, 2026, 2:14 p.m. πŸ”„ Last Modified: May 1, 2026, 2:14 p.m.
Total resulsts: 347806
Page 26 of 34,781
Β« previous page Β» next page
Filters