Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
54449
Total
4308
Critical
16178
High
15893
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-98122 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: vxlan: mdb: Fix use-after-free in vxlan_mdb_remote_src_del() vxlan_mdb_is_valid_source(), which validates MDBE_ATTR_SOURCE and every MDBE_ATTR_SRC_LIST member, accepts … | Sep 25, 2026 |
| CVE-2026-98121 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: watchdog: msc313e: Fix NULL pointer dereference in PM callbacks msc313e_wdt_probe() doesn't set the driver data … | Sep 25, 2026 |
| CVE-2026-98120 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix subreq ref leak Fix a subrequest ref leak in netfs_unbuffered_write() in the event … | Sep 25, 2026 |
| CVE-2026-98119 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netfs: break unbuffered write when netfs_alloc_subrequest() fails syzbot reported a null-ptr-deref below [1] following a … | Sep 25, 2026 |
| CVE-2026-98118 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix readahead synchronisation issues by loading all folios upfront There are some synchronisation issues … | Sep 25, 2026 |
| CVE-2026-98117 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix potential UAF/KASAN warning Currently, trace_cachefiles_coherency() is being passed a pointer to a __be64 … | Sep 25, 2026 |
| CVE-2026-98116 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Serialize PCM mmap with buffer reallocation to fix page UAF snd_pcm_hw_params() and snd_pcm_hw_free() … | Sep 25, 2026 |
| CVE-2026-98115 | HIGH | 8.8 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: safely drain sessions during logoff SMB3 multichannel allows requests for one session to run … | Sep 25, 2026 |
| CVE-2026-98114 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: propagate DACL parsing errors parse_dacl() silently accepts truncated ACEs and allocation failures, allowing set_info_sec() … | Sep 25, 2026 |
| CVE-2026-98113 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: rate limit unmapped SID errors A client can include many structurally valid but unmapped … | Sep 25, 2026 |
| CVE-2026-98112 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix listener task lifetime on netdev events The listener thread exits when its listening … | Sep 25, 2026 |
| CVE-2026-98111 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: validate version TLV value lengths btintel_parse_version_tlv() verifies that a complete TLV is present … | Sep 25, 2026 |
| CVE-2026-98110 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: bound firmware ID by TLV length The firmware ID is treated as a … | Sep 25, 2026 |
| CVE-2026-98109 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix race condition during device registration In hci_register_dev(), the power_on work item is … | Sep 25, 2026 |
| CVE-2026-98108 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix chan mode for LE_CONN_REQ + EXT_FLOWCTL pchan l2cap_new_connection() sets default value of … | Sep 25, 2026 |
| CVE-2026-98107 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix out-of-bounds write in l2cap_ecred_connect l2cap_chan_connect() tries to ensure there are no more … | Sep 25, 2026 |
| CVE-2026-98106 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/pagemap: Prevent double migration of device pages A device-private folio migrated to system memory by … | Sep 25, 2026 |
| CVE-2026-98105 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: oa_tc6: Improve the error recovery When oversubscribed traffic causes lot of buffer overflow … | Sep 25, 2026 |
| CVE-2026-98104 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: fix duplicate handle when node ID pool is exhausted gen_new_kid() falls back to … | Sep 25, 2026 |
| CVE-2026-98103 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: igmp: convert struct ip_sf_list to RCU Commit 23d2b94043ca ("igmp: Add ip_mc_list lock in ip_check_mc_rcu") added … | Sep 25, 2026 |
| CVE-2026-98102 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: fix RCU list diversion in ip6_mc_del1_src() When removing a source filter whose count … | Sep 25, 2026 |
| CVE-2026-98101 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: use copy-on-write RCU updates in ip6_mc_source() pmc->sflist is read locklessly under rcu_read_lock() by … | Sep 25, 2026 |
| CVE-2026-98099 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: use rcu_assign_pointer() for __rcu list updates Several places in net/ipv6/mcast.c update RCU-protected lists … | Sep 25, 2026 |
| CVE-2026-98098 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tipc: fix NULL deref in tipc_named_node_up() on empty publication list User-space applications can bind a … | Sep 25, 2026 |
| CVE-2026-98097 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tipc: Dont send random pad bytes in RESET/ACTIVATE messages The interface name is passed in … | Sep 25, 2026 |