Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
54704
Total
4321
Critical
16261
High
15994
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-97433 | HIGH | 8.2 | In the Linux kernel, the following vulnerability has been resolved: nvme: validate FDP configuration descriptor sizes Validate descriptor sizes while walking the FDP configurations log … | Sep 24, 2026 |
| CVE-2026-97432 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix P2P-Device binding handling Our binding handling for P2P-Device can run into … | Sep 24, 2026 |
| CVE-2026-97431 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid DPMS-on for phantom stream [Why & How] Calling dc_update_planes_and_stream separately for stream and … | Sep 24, 2026 |
| CVE-2026-97430 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: xhci: Prevent queuing new commands if xhci is inaccessible Refuse to queue a new command … | Sep 24, 2026 |
| CVE-2026-97429 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix UAF race in destroy_queue_cpsch wait_on_destroy_queue() drops locks to wait for queue resume, allowing … | Sep 24, 2026 |
| CVE-2026-97428 | HIGH | 7.7 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: harden FRU PIA parsing with bounded helpers Replace the open-coded TLV walk with fru_pia_advance() … | Sep 24, 2026 |
| CVE-2026-97427 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: bound pp_dpm_set_pp_table() memcpy The powerplay path allocates hardcode_pp_table once with kmemdup(..., soft_pp_table_size). memcpy(..., size) … | Sep 24, 2026 |
| CVE-2026-97426 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm: fix SmartShift bias sysfs store PM refcount on parse error Return the parse error … | Sep 24, 2026 |
| CVE-2026-97425 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix buffer overflow during vBIOS update Clamp the buffer postion to write by setting … | Sep 24, 2026 |
| CVE-2026-97424 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/ras: add ras_suspend callback and use it for cp_ecc_error_irq cp_ecc_error_irq is acquired in amdgpu_gfx_ras_late_init() but … | Sep 24, 2026 |
| CVE-2026-97423 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: cxl/region: Validate partition index before array access construct_region() reads cxled->part and uses it to index … | Sep 24, 2026 |
| CVE-2026-97422 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix SMI event cross-process information leak kfd_smi_ev_enabled() skips the suser privilege check when pid=0. … | Sep 24, 2026 |
| CVE-2026-97421 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Be careful about boundary conditions in ib_umem_find_best_pgsz() Several corner cases, especially important on 32 … | Sep 24, 2026 |
| CVE-2026-97420 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: NUL-terminate replaced sysctl value When writing to sysctls, proc_sys_call_handler() guarantees that the buffer passed … | Sep 24, 2026 |
| CVE-2026-97419 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: hsr: broadcast netlink notifications in the device's net namespace The HSR generic netlink family sets … | Sep 24, 2026 |
| CVE-2026-97418 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ALSA: es18xx: check control allocation before private data setup snd_es18xx_mixer() creates controls with snd_ctl_new1() and … | Sep 24, 2026 |
| CVE-2026-97417 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack() The timestamp-only fast path dereferences the option stream as … | Sep 24, 2026 |
| CVE-2026-97416 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: balance: fix potential bg lookup failure in btrfs_may_alloc_data_chunk() [BUG] Running btrfs balance can trigger … | Sep 24, 2026 |
| CVE-2026-97415 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: btrfs: tree-checker: validate names in ROOT_REF and ROOT_BACKREF ROOT_REF and ROOT_BACKREF items contain a struct … | Sep 24, 2026 |
| CVE-2026-97414 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8365-afe-pcm: fix possible NULL-pointer dereferences in mt8365_afe_suspend() mt8365_afe_suspend() allocates the register backup buffer … | Sep 24, 2026 |
| CVE-2026-97413 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Fix integer underflow in process_read and process_write usr_len is read from a network-supplied message … | Sep 24, 2026 |
| CVE-2026-97412 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: pds_core: quiesce DMA before freeing resources pdsc_teardown() frees DMA buffers but does not disable bus … | Sep 24, 2026 |
| CVE-2026-97411 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: ibm: emac: mal: fix potential system hang in mal_remove() napi_disable() is not idempotent and … | Sep 24, 2026 |
| CVE-2026-97410 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netconsole: take target_cleanup_list_lock in drop_netconsole_target() drop_netconsole_target() unlinks the target while only holding target_list_lock. However, when … | Sep 24, 2026 |
| CVE-2026-97409 | HIGH | 8.8 | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: Do not cancel requests in io target before it is initialized A new nvme-fc … | Sep 24, 2026 |