Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56534
Total
4478
Critical
16763
High
16605
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-90343 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: stop PMSR before P2P and NAN teardown PMSR request teardown must abort active … | Sep 17, 2026 |
| CVE-2026-90342 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix mmap_lock deadlock on arena lock failure Reported by the Sashiko AI review. arena_vm_fault() … | Sep 17, 2026 |
| CVE-2026-90341 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: firmware: coreboot: Validate table bounds The existing coreboot_table_populate() bounds checks limit individual entries to the … | Sep 17, 2026 |
| CVE-2026-90340 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: pinctrl: generic: free maps on pinctrl_generic_to_map() failure pinctrl_generic_to_map() parses DT configuration and allocates pinctrl maps … | Sep 17, 2026 |
| CVE-2026-90339 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: powerpc/syscall: Fix syscall skip handling for seccomp and ptrace After enabling GENERIC_ENTRY on PowerPC, syscall_enter_from_user_mode() … | Sep 17, 2026 |
| CVE-2026-90338 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: serial: amba-pl011: keep console clock enabled for atomic writes pl011_console_write_atomic() runs from nbcon atomic context, … | Sep 17, 2026 |
| CVE-2026-90337 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: serial: core: do fallible allocations before the console can be registered serial_core_add_one_port() allocates uport->tty_groups after … | Sep 17, 2026 |
| CVE-2026-90336 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: serial: core: clear freed pointers on uart_register_driver() failure uart_register_driver() leaves drv->state pointing to freed memory … | Sep 17, 2026 |
| CVE-2026-90335 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tty: skip cdev_del() when no cdev is registered TTY device registration can fail before a … | Sep 17, 2026 |
| CVE-2026-90334 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tty: clear cdev pointer after cdev_add() failure tty_cdev_add() drops the cdev reference when cdev_add() fails, … | Sep 17, 2026 |
| CVE-2026-90333 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: dm-integrity: replace forgeable discard filler with a keyed sector marker The discard-block check in dm_integrity_rw_tag() … | Sep 17, 2026 |
| CVE-2026-90332 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: PCI: dwc: ep: Flush cached MSI write before unmapping the iATU The MSI-X path already … | Sep 17, 2026 |
| CVE-2026-90331 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: HID: asus: refactor the two workqueues and init sequence Multiple issues have been found within … | Sep 17, 2026 |
| CVE-2026-90330 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: HID: logitech-hidpp: Fix FF device cleanup on init failure hidpp_ff_init() creates the input force-feedback device … | Sep 17, 2026 |
| CVE-2026-90329 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: HID: synchronize input before cleaning up a failed probe hid_device_io_start() allows reports to run concurrently … | Sep 17, 2026 |
| CVE-2026-90328 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: HID: steam: Reject short reads Steam Controller FEATURE reports encode the size of the message … | Sep 17, 2026 |
| CVE-2026-90327 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: phonet: pep: do not write beyond optlen in getsockopt pep_getsockopt() clamps the reported length to … | Sep 17, 2026 |
| CVE-2026-90326 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix race between policy activation and blkg destruction When switching an IO scheduler on … | Sep 17, 2026 |
| CVE-2026-90325 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: skip dying blkg in blkcg_activate_policy() When switching IO schedulers on a block device, blkcg_activate_policy() … | Sep 17, 2026 |
| CVE-2026-90324 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ublk: check import_ubuf() return value import_ubuf() can fail if the address range (provided by the … | Sep 17, 2026 |
| CVE-2026-90323 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ublk: validate auto buf reg before taking uring_cmd With UBLK_F_AUTO_BUF_REG, invalid sqe->addr can fail after … | Sep 17, 2026 |
| CVE-2026-90322 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2/cluster: keep heartbeat local node stable o2nm_node_local_store() handles local=0 by stopping o2net and setting cl_local_node … | Sep 17, 2026 |
| CVE-2026-90321 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate inline xattrs during inode block validation Patch series "ocfs2: validate xattr entry bounds", … | Sep 17, 2026 |
| CVE-2026-90320 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate external xattr entries when reading metadata ocfs2_validate_xattr_block() checks the xattr block header before … | Sep 17, 2026 |
| CVE-2026-90319 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rapidio: clear mport->net when rio_add_net() fails rio_alloc_net() stores the newly allocated rio_net in mport->net before … | Sep 17, 2026 |