Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
54449
Total
4308
Critical
16178
High
15893
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-98096 | HIGH | 7.4 | In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: restore network header before routing and forwarding ipv6_srh_rcv() runs with skb->data at the … | Sep 25, 2026 |
| CVE-2026-98095 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: af_packet: Don't cast tpacket_hdr.tp_len to int in tpacket_parse_header(). syzbot reported BUG() in sock_sendmsg_nosec(). [0] The … | Sep 25, 2026 |
| CVE-2026-98094 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: staging: fbtft: make dirty_lock IRQ-safe fbtft_mkdirty() can be reached from the fbcon rendering path while … | Sep 25, 2026 |
| CVE-2026-98093 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl_micfil: balance mclk enable/disable hw_params() enables mclk unconditionally and hw_free() disables it unconditionally, but … | Sep 25, 2026 |
| CVE-2026-98092 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: yc: fix memory leak in acp6x_pdm_dma_close() acp6x_pdm_dma_close() does not free the runtime->private_data buffer … | Sep 25, 2026 |
| CVE-2026-98091 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: detach failed sprout device from transaction update list When creating the first metadata chunk … | Sep 25, 2026 |
| CVE-2026-98090 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: restore active device pointers after failed sprout btrfs_init_new_device() switches latest_dev and possibly s_bdev from … | Sep 25, 2026 |
| CVE-2026-98089 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bonding: alb: fix uninitialized transport header access in alb_determine_nd() alb_determine_nd() uses icmp6_hdr(skb) to inspect ICMPv6 … | Sep 25, 2026 |
| CVE-2026-98088 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid out-of-bounds cpumask_of_node() call in _base_assign_reply_queues() dev_to_node() can return NUMA_NO_NODE (-1) on systems … | Sep 25, 2026 |
| CVE-2026-98087 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: sched/rt,dl: Skip migrate-disabled tasks when picking a push candidate A migrate_disable()'d RT task cannot be … | Sep 25, 2026 |
| CVE-2026-98086 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ALSA: ump: do not touch legacy_rmidi before it exists snd_ump_parse_endpoint() sets ump->parsed on every exit, … | Sep 25, 2026 |
| CVE-2026-98085 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: backtrack_insn(): Handle ld_{abs,ind} subprog exit edge Nicholas Carlini reported a bug in precision backtracking … | Sep 25, 2026 |
| CVE-2026-98084 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: backtracking shouldn't clear outer frame R1-R5 for callbacks When processing calls to bpf_loop() verifier … | Sep 25, 2026 |
| CVE-2026-98083 | HIGH | 7.0 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix transaction use-after-free in raid stripe insertion If allocation of a RAID stripe extent … | Sep 25, 2026 |
| CVE-2026-98082 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix the possible bioc_list memory leak during error There are two possible ways to … | Sep 25, 2026 |
| CVE-2026-98081 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: finish active block group cleanup if call_zone_finish() fails do_zone_finish() clears BLOCK_GROUP_FLAG_ZONE_IS_ACTIVE before finishing … | Sep 25, 2026 |
| CVE-2026-98080 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: do not force reloc root creation during qgroup_account_snapshot() [BUG] When running btrfs/252 with quota … | Sep 25, 2026 |
| CVE-2026-98079 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: zstd: fix lost wakeup when waiting for a workspace A writer can sleep forever … | Sep 25, 2026 |
| CVE-2026-98078 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix reversed sequence option serialization hton_seq() expects the host-order source first and the unaligned … | Sep 25, 2026 |
| CVE-2026-98077 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace() sip_skip_whitespace() returns dptr unchanged when its own loop … | Sep 25, 2026 |
| CVE-2026-98076 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tracing/probes: Fix use-after-free on field name/type of events with multiple probes The fields of a … | Sep 25, 2026 |
| CVE-2026-98075 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: reject BPF_PSEUDO_FUNC reference to the main program fixups.c:jit_subprogs() rewrites BPF_PSEUDO_FUNC loads to contain real … | Sep 25, 2026 |
| CVE-2026-98074 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bonding: do not clear curr_active_slave prematurely when releasing all slaves When releasing all slaves during … | Sep 25, 2026 |
| CVE-2026-98073 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: net: Remove conflicting altnames for dying netns in __dev_change_net_namespace(). syzbot reported the warning in cfg80211_pernet_exit(). … | Sep 25, 2026 |
| CVE-2026-98072 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net/rds: use wq_has_sleeper() in release_in_xmit() release_in_xmit() clears RDS_IN_XMIT with clear_bit_unlock() and then checks waitqueue_active() to … | Sep 25, 2026 |