Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56534
Total
4478
Critical
16763
High
16605
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-90243 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clear Present bit before tearing down copied context entry copied_context_tear_down() zeroes the 128-bit context … | Sep 17, 2026 |
| CVE-2026-90242 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix iopf_refcount leak on RID domain replacement intel_iommu_attach_device() enables IOPF for the new domain … | Sep 17, 2026 |
| CVE-2026-90241 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Tear down scalable-mode context on probe failure intel_pasid_setup_sm_context() walks a PCI device’s DMA aliases … | Sep 17, 2026 |
| CVE-2026-90240 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Flush context cache with correct SID when tearing down aliases domain_context_clear_one() and device_pasid_table_teardown() are … | Sep 17, 2026 |
| CVE-2026-90239 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: release partial allocations in isp4if_alloc_fw_gpumem() isp4if_alloc_fw_gpumem() allocates several GPU memory pools in … | Sep 17, 2026 |
| CVE-2026-90238 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: fix self-deadlock in isp4sd_pwron_and_init() error path isp4sd_pwron_and_init() holds ops_mutex via guard(mutex) and, … | Sep 17, 2026 |
| CVE-2026-90237 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: move custom expectation support to helper Originally, the ct expectation support called nf_ct_helper_ext_add() … | Sep 17, 2026 |
| CVE-2026-90236 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: NFSD: Release the export reference when reaping open stateids nfs4_put_stid() releases the svc_export tracked in … | Sep 17, 2026 |
| CVE-2026-90235 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: sunrpc: xprtsock: annotate shared socket callbacks with READ_ONCE/WRITE_ONCE xprtsock replaces and restores sk->sk_data_ready and sk->sk_write_space … | Sep 17, 2026 |
| CVE-2026-90234 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: NFS: Return a delegation the client fails to record When an NFS server grants a … | Sep 17, 2026 |
| CVE-2026-90233 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: release descriptor pools on probe failure The per-NUMA-node descriptor DMA pools are created lazily … | Sep 17, 2026 |
| CVE-2026-90232 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: amt: Don't support cross-netns setup. When a lower device is unregistered, amt_device_event() tries to unregister … | Sep 17, 2026 |
| CVE-2026-90231 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix unconfined user namespace restriction forced stack If a task is already confined by … | Sep 17, 2026 |
| CVE-2026-90230 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix heap out-of-bounds read in nvmet_auth_negotiate() nvmet_execute_auth_send() allocates the DH-HMAC-CHAP message buffer with the … | Sep 17, 2026 |
| CVE-2026-90229 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvme-apple: Destroy the admin queue on removal The admin queue is allocated with blk_mq_alloc_queue() but … | Sep 17, 2026 |
| CVE-2026-90228 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix NULL pointer dereference in nvmet_execute_identify_ns_zns() When a host issues an Identify command with … | Sep 17, 2026 |
| CVE-2026-90227 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvme/ioctl: check SUBMIT_IO with nvme_cmd_allowed() Unlike IO_CMD / IO64_CMD, NVME_IOCTL_SUBMIT_IO never calls nvme_cmd_allowed(). Unprivileged callers … | Sep 17, 2026 |
| CVE-2026-90226 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: avoid userspace overflow on invalid optlen nfc_llcp_getsockopt() casts optval to (u32 __user *) … | Sep 17, 2026 |
| CVE-2026-90225 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: read llcp_sock->local under the socket lock in getsockopt nfc_llcp_getsockopt() read llcp_sock->local before lock_sock(sk) … | Sep 17, 2026 |
| CVE-2026-90224 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: fix double completion race in nci_data_exchange_complete nci_close_device() and nci_rx_work can both call nci_data_exchange_complete() … | Sep 17, 2026 |
| CVE-2026-90223 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: bound SNL TLV parsing to the skb and add length checks nfc_llcp_recv_snl() walked … | Sep 17, 2026 |
| CVE-2026-90222 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: hold a reference to the request skb during send_frame __pn533_send_async() publishes the command … | Sep 17, 2026 |
| CVE-2026-90221 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: fix use of uninitialized memory in CORE_INIT_RSP parsing nci_core_init_rsp_packet_v1() and nci_core_init_rsp_packet_v2() parse the … | Sep 17, 2026 |
| CVE-2026-90220 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Don't leak the extension cell pointer in the bounce payload The bounce_error_event() embeds … | Sep 17, 2026 |
| CVE-2026-90219 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Free debugfs on registration failure c4iw_alloc() creates the per-device debugfs tree (dev->debugfs_root via setup_debugfs()), … | Sep 17, 2026 |