Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56890
Total
4508
Critical
16896
High
16708
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-89849 | HIGH | 8.8 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Reject non-SCSI SRB on status IOCB fast path qla2x00_status_entry() filters out non-TYPE_SRB entries … | Sep 16, 2026 |
| CVE-2026-89848 | HIGH | 8.1 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Quiesce response IRQ before freeing request queue qla2xxx_delete_qpair() deletes the request queue before … | Sep 16, 2026 |
| CVE-2026-89847 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Avoid double completion in async IOCB timeout qla2x00_async_iocb_timeout() tries to abort a timed-out … | Sep 16, 2026 |
| CVE-2026-89846 | CRITICAL | 9.1 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound rsp_info_len to avoid OOB sense-data read In qla2x00_status_entry(), the FWI2 status path … | Sep 16, 2026 |
| CVE-2026-89845 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Avoid req_q_map double-read in qla2x00_error_entry() qla2x00_error_entry() reads ha->req_q_map[que] twice: once for the NULL … | Sep 16, 2026 |
| CVE-2026-89844 | HIGH | 8.8 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Hold vport_slock for host map update in report ID acquisition qla24xx_report_id_acquisition() format-1 handling … | Sep 16, 2026 |
| CVE-2026-89843 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Zero-init bsg stack buffers to avoid info leak Several bsg handlers stage their … | Sep 16, 2026 |
| CVE-2026-89842 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Skip NVMe LS reject IOCB when FW not started qla_nvme_xmt_ls_rsp() bails out to … | Sep 16, 2026 |
| CVE-2026-89841 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: f2fs: only redirty pinned folios in redirty_blocks redirty_blocks() pins folios with read_cache_folio() and then walks … | Sep 16, 2026 |
| CVE-2026-89840 | HIGH | 7.1 | In the Linux kernel, the following vulnerability has been resolved: f2fs: validate MOVE_RANGE destination size F2FS_IOC_MOVE_RANGE checks the source range, but not the destination end … | Sep 16, 2026 |
| CVE-2026-89839 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: use the mount idmap for the owner check in f2fs_xattr_advise_set() f2fs_xattr_advise_set() calls inode_owner_or_capable() with … | Sep 16, 2026 |
| CVE-2026-89838 | HIGH | 7.1 | In the Linux kernel, the following vulnerability has been resolved: f2fs: limit recovery filename logging to stored length F2FS stores recovery filenames as a length … | Sep 16, 2026 |
| CVE-2026-89837 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix dentry folio leak in find_in_level find_in_level() gets a dentry folio with f2fs_find_data_folio() before … | Sep 16, 2026 |
| CVE-2026-89836 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix folio_nr_pages() race after put in large folio invalidate Our v6.18 based Android system … | Sep 16, 2026 |
| CVE-2026-89835 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: avoid NULL checkpoint thread access in sysfs checkpoint_merge can be enabled even when no … | Sep 16, 2026 |
| CVE-2026-89834 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to migrate all curseg types during free_segment_range In free_segment_range(), the curseg evacuation loop … | Sep 16, 2026 |
| CVE-2026-89833 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid potential deadloop in f2fs_fsync_node_pages() There is potential deadloop in race condition: … | Sep 16, 2026 |
| CVE-2026-89832 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to clear dirty flag on folio in error path If node block is … | Sep 16, 2026 |
| CVE-2026-89831 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: protect critical_task_priority updates with s_umount The sysfs store path already takes s_umount for GC … | Sep 16, 2026 |
| CVE-2026-89830 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix valid block count leak on data block allocation failure In __allocate_data_block(), when allocating … | Sep 16, 2026 |
| CVE-2026-89829 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to pass folio->index to f2fs_sanity_check_node_footer() Otherwise in f2fs_sanity_check_node_footer(), it will check the same … | Sep 16, 2026 |
| CVE-2026-89828 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix init ordering in amdgpu_vram_mgr_init() drmm_cgroup_register_region() is called before INIT_LIST_HEAD() and gpu_buddy_init() in amdgpu_vram_mgr_init(). … | Sep 16, 2026 |
| CVE-2026-89827 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid force-completing uninitialized UVD rings uvd_v7_0_sw_init() does not initialize the UVD decode ring for … | Sep 16, 2026 |
| CVE-2026-89826 | HIGH | 7.1 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: harden firmware build-info bounds checks panthor_fw_read_build_info() checks whether the metadata range fits in the … | Sep 16, 2026 |
| CVE-2026-89825 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: fix firmware control interface bounds checks panthor_init_cs_iface() and panthor_init_csg_iface() validate firmware control interface offsets … | Sep 16, 2026 |