Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56534
Total
4478
Critical
16763
High
16605
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-90268 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix error handling in sd_probe() after large pool creation failure After device_add(&sdkp->disk_dev) succeeds, … | Sep 17, 2026 |
| CVE-2026-90267 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix special_vec mempool leak when scsi_alloc_sgtables() fails sd_set_special_bvec() allocates a special payload page … | Sep 17, 2026 |
| CVE-2026-90266 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: don't force read-only on transient -EAGAIN from reloc merge On a zoned FS, … | Sep 17, 2026 |
| CVE-2026-90265 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: defrag: fix deadlock between defrag and delalloc space reservation While running fsstress with autodefrag … | Sep 17, 2026 |
| CVE-2026-90264 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: always wait for ordered extents to avoid OE races [BUG] Syzbot reported a bug … | Sep 17, 2026 |
| CVE-2026-90263 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: check if root is readonly when setting posix acl For a filesystem which has … | Sep 17, 2026 |
| CVE-2026-90262 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: retry verity reads for not-uptodate Merkle folios btrfs_read_merkle_tree_page() can find a folio in the … | Sep 17, 2026 |
| CVE-2026-90261 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: flush active metadata block group at btree_writepages() start btree_writepages() writes the btree inode's … | Sep 17, 2026 |
| CVE-2026-90260 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: don't clobber the extent buffer when zeroing it out On a zoned filesystem … | Sep 17, 2026 |
| CVE-2026-90259 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix a wrong length calculation in qgroup_free_reserved_data() In that function, we round down … | Sep 17, 2026 |
| CVE-2026-90258 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: pinctrl: airoha: add missed IRQ resource helpers Without hooking .irq_request_resources, gpiolib cannot set GPIOD_FLAG_USED_AS_IRQ. This … | Sep 17, 2026 |
| CVE-2026-90257 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: avoid OOB read of build info string The virtbt_setup_zephyr() sends the Zephyr vendor … | Sep 17, 2026 |
| CVE-2026-90256 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use proto_lock for l2cap_data to fix l2cap_disconn_ind hci_conn::l2cap_data is accessed without locks in … | Sep 17, 2026 |
| CVE-2026-90255 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix the SCO setup context lifetime hci_setup_sync() queues a conn_handle_t with a NULL … | Sep 17, 2026 |
| CVE-2026-90254 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: free the advertising instance on the failure and cancel paths adv_timeout_expire() hands a … | Sep 17, 2026 |
| CVE-2026-90253 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: free the mesh send cancel command when it is cancelled mesh_send_cancel() queues the … | Sep 17, 2026 |
| CVE-2026-90252 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: free the HCI command when it is cancelled mgmt_hci_cmd_sync() queues the pending command … | Sep 17, 2026 |
| CVE-2026-90251 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MSFT: validate evt_prefix_len against the response length read_supported_features() only checks that the response covers … | Sep 17, 2026 |
| CVE-2026-90250 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix storage null-ptr-deref after replacing prog Syzkaller reported a storage null-ptr-deref issue after … | Sep 17, 2026 |
| CVE-2026-90249 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iio: light: gp2ap002: Fix unbalanced runtime PM on repeated event writes The IIO core does … | Sep 17, 2026 |
| CVE-2026-90248 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: fix teardown of an adopted proto on insert-race loss In tc_new_tfilter() the create … | Sep 17, 2026 |
| CVE-2026-90247 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix mmap_lock leak in irq_work path stack_map_get_build_id_offset() introduced a per-CPU irq_work to defer mmap_read_unlock() … | Sep 17, 2026 |
| CVE-2026-90246 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix integer overflow in verify_tags() bounds check verify_tags() validates the tagset table unpacked from … | Sep 17, 2026 |
| CVE-2026-90245 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: fbdev: kyro: Validate overlay viewport coordinates The overlay viewport end coordinates are computed from the … | Sep 17, 2026 |
| CVE-2026-90244 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iommu/dma: Restore locking around msi_page_list Unlike a group's default domain, which is always freshly allocated … | Sep 17, 2026 |