Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56334
Total
4455
Critical
16700
High
16518
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-90418 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix BUG in nilfs_copy_dirty_pages() on dirty state mismatch Syzbot reported a kernel BUG triggered … | Sep 17, 2026 |
| CVE-2026-90417 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Fix dereg_skb leak and double free in write_tpt_entry() When the device is in the … | Sep 17, 2026 |
| CVE-2026-90416 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix stack out-of-bounds read in cc_params debugfs get_param() reads a congestion parameter as a … | Sep 17, 2026 |
| CVE-2026-90415 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: free STAG index when TPT entry write fails write_tpt_entry() allocates a new STAG index … | Sep 17, 2026 |
| CVE-2026-90414 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: IB/isert: reject PDUs declaring more data than was received isert_recv_done() hands each received PDU to … | Sep 17, 2026 |
| CVE-2026-90413 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: IB/isert: reject login PDUs declaring more data than was received isert_login_recv_done() records how many bytes … | Sep 17, 2026 |
| CVE-2026-90412 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix return status of RMI log page on allocation failure nvmet_execute_get_log_page_rmi() leaves 'status' holding … | Sep 17, 2026 |
| CVE-2026-90411 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: unmap cmd_iu DMA on rsp_iu mapping failure in init_request __nvme_fc_init_request() maps cmd_iu and then … | Sep 17, 2026 |
| CVE-2026-90410 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: spi: davinci: switch to managed controller allocation The controller is allocated with the non-managed spi_alloc_host() … | Sep 17, 2026 |
| CVE-2026-90409 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Add vm_bind region with kbo range overlap check When a VM is created, caller … | Sep 17, 2026 |
| CVE-2026-90408 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix overreads in ath12k_wmi_process_csa_switch_count_event() There is no policy entry for WMI_TAG_PDEV_CSA_SWITCH_COUNT_STATUS_EVENT, so the … | Sep 17, 2026 |
| CVE-2026-90407 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix overreads in ath11k_wmi_process_csa_switch_count_event() There is no policy entry for WMI_TAG_PDEV_CSA_SWITCH_COUNT_STATUS_EVENT, so the … | Sep 17, 2026 |
| CVE-2026-90406 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: handle runtime PM resume failure in core deinit Check the return value … | Sep 17, 2026 |
| CVE-2026-90405 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: media: stm32: dcmi: fix some error handling bugs in probe() There are a few issues … | Sep 17, 2026 |
| CVE-2026-90404 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_debugfs: Unregister panic notifier cros_ec_debugfs_probe() registers notifier_panic with the EC panic notifier chain. The … | Sep 17, 2026 |
| CVE-2026-90403 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: pci: fix error path in rtl_pci_probe() In the last error path in rtl_pci_probe(), … | Sep 17, 2026 |
| CVE-2026-90402 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Fix controller cleanup on EDL sysfs failure mhi_register_controller() adds the controller device … | Sep 17, 2026 |
| CVE-2026-90401 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: md: remove REQ_NOWAIT support from raid1/10/456 REQ_NOWAIT support in md personalities that can block internally … | Sep 17, 2026 |
| CVE-2026-90400 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: md: recheck spare changes before starting sync remove_spares() and remove_and_add_spares() modify the array's rdev configuration. … | Sep 17, 2026 |
| CVE-2026-90399 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix stride mismatch in mac_phy_caps_parse() Currently, in ath12k_wmi_mac_phy_caps_parse(), kzalloc() sizes the mac_phy_caps buffer … | Sep 17, 2026 |
| CVE-2026-90398 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix stride mismatch in mac_phy_caps_parse() Currently, in ath11k_wmi_tlv_mac_phy_caps_parse(), kcalloc() sizes the mac_phy_caps buffer … | Sep 17, 2026 |
| CVE-2026-90397 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: Fix NULL dereference in IRQ handler before __scm is published In qcom_scm_probe(), … | Sep 17, 2026 |
| CVE-2026-90396 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: block: fix dio leak on metadata mapping error A failed integrity mapping holds a dio … | Sep 17, 2026 |
| CVE-2026-90395 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: power: supply: isp1704_charger: cancel work on remove The USB notifier and initial VBUS detection can … | Sep 17, 2026 |
| CVE-2026-90394 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: power: supply: sc2731_charger: cancel work on remove The USB notifier and initial charger detection can … | Sep 17, 2026 |