Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
54449
Total
4308
Critical
16178
High
15893
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-98046 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark bpf_btf_find_by_name_kind() as sleepable When bpf_btf_find_by_name_kind() finds a type in module BTF, it returns … | Sep 25, 2026 |
| CVE-2026-98045 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark faultable stack helpers as sleepable The faultable variants of bpf_get_stack() and bpf_get_task_stack() pass … | Sep 25, 2026 |
| CVE-2026-98044 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject legacy packet loads from callbacks check_ld_abs() models a failed BPF_LD_ABS or BPF_LD_IND in … | Sep 25, 2026 |
| CVE-2026-98043 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Don't infer non-NULL from a pointer with an unbounded offset reg_not_null() decides that a … | Sep 25, 2026 |
| CVE-2026-98042 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Don't resurrect a scalar id dropped by collect_linked_regs() check_cond_jmp_op() copies the compared registers into … | Sep 25, 2026 |
| CVE-2026-98041 | HIGH | 7.0 | In the Linux kernel, the following vulnerability has been resolved: bpf: Don't predict JMP32 pointer vs zero comparisons Consider the following program: r1 = map_value; … | Sep 25, 2026 |
| CVE-2026-98040 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark the zero register precise for a register-form NULL check check_cond_jmp_op() accepts "if rA … | Sep 25, 2026 |
| CVE-2026-98039 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Require MEM_PERCPU for percpu kptr stores map_kptr_match_type() treats perm_flags as the set of register … | Sep 25, 2026 |
| CVE-2026-98038 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Keep refcount_acquire nullable for borrowed RCU kptrs bpf_refcount_acquire() is fallible for a borrowed reference … | Sep 25, 2026 |
| CVE-2026-98037 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject untrusted allocated-object pointers When the final RCU read-side critical section ends, a local … | Sep 25, 2026 |
| CVE-2026-98036 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve special fields in recycled rhtab elements rhtab_map_update_elem() initializes special fields after obtaining an … | Sep 25, 2026 |
| CVE-2026-98035 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Cancel special fields when recycling rhtab elements rhtab_map_update_existing() and rhtab_delete_elem() call bpf_obj_free_fields() when replacing … | Sep 25, 2026 |
| CVE-2026-98034 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark NULL kptr stores precise check_map_kptr_access() permits a scalar store into an untrusted kptr … | Sep 25, 2026 |
| CVE-2026-98033 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve inner map identity in callback frames Callback frame constructors initialize map-typed argument registers … | Sep 25, 2026 |
| CVE-2026-98032 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix subbuf resize races with trace_pipe_raw readers Concurrent subbuffer resizes may crash trace_pipe_raw readers … | Sep 25, 2026 |
| CVE-2026-98031 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nexthop: Initialize extack in remove_nh_grp_entry() remove_nh_grp_entry() prints the extack message when a listener fails to … | Sep 25, 2026 |
| CVE-2026-98030 | HIGH | 7.0 | In the Linux kernel, the following vulnerability has been resolved: net: dsa: bcm_sf2: bound the CFP rule dump by the caller's buffer size bcm_sf2_cfp_rule_get_all() walks … | Sep 25, 2026 |
| CVE-2026-98029 | HIGH | 7.0 | In the Linux kernel, the following vulnerability has been resolved: eth: nfp: bound the ntuple rule dump by the caller's buffer size nfp_net_get_fs_loc() dumps every … | Sep 25, 2026 |
| CVE-2026-98028 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: eth: nfp: drop the replaced rule from the list when reprogramming fails nfp_net_fs_add() replaces an … | Sep 25, 2026 |
| CVE-2026-98027 | HIGH | 7.0 | In the Linux kernel, the following vulnerability has been resolved: net: dsa: mv88e6xxx: bound the policy rule dump by the caller's buffer size mv88e6xxx_get_rxnfc() uses … | Sep 25, 2026 |
| CVE-2026-98026 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: bridge: mcast: properly convert mglist to rcu Sashiko reported a bug [1] that br_multicast_del_port_group … | Sep 25, 2026 |
| CVE-2026-98025 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: usb: cx82310_eth: drop URB after 0xffff reboot sentinel to prevent partial_data heap overflow The … | Sep 25, 2026 |
| CVE-2026-98024 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: s390/ism: folio_put() after error dmb->cpu_addr was allocated via folio_alloc(). Use folio_put() instead of kfree() in … | Sep 25, 2026 |
| CVE-2026-98023 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: vxlan: reject dynamic fdb entries that reference a nexthop id The commit cited in the … | Sep 25, 2026 |
| CVE-2026-98022 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: cap tx_queue_len at S16_MAX to prevent oversized ring allocations Several subsystems allocate ring buffers … | Sep 25, 2026 |