Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
28561
Total
2193
Critical
8548
High
8866
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-31660 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: allocate rx skb before consuming bytes pn532_receive_buf() reports the number of accepted bytes … | Apr 24, 2026 |
| CVE-2026-31659 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject oversized global TT response buffers batadv_tt_prepare_tvlv_global_data() builds the allocation length for a global … | Apr 24, 2026 |
| CVE-2026-31658 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: altera-tse: fix skb leak on DMA mapping error in tse_start_xmit() When dma_map_single() fails in … | Apr 24, 2026 |
| CVE-2026-31657 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: batman-adv: hold claim backbone gateways by reference batadv_bla_add_claim() can replace claim->backbone_gw and drop the old … | Apr 24, 2026 |
| CVE-2026-31656 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: fix refcount underflow in intel_engine_park_heartbeat A use-after-free / refcount underflow is possible when the … | Apr 24, 2026 |
| CVE-2026-31655 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx8mp-blk-ctrl: Keep the NOC_HDCP clock enabled Keep the NOC_HDCP clock always enabled to fix … | Apr 24, 2026 |
| CVE-2026-31654 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/vma: fix memory leak in __mmap_region() commit 605f6586ecf7 ("mm/vma: do not leak memory when .mmap_prepare … | Apr 24, 2026 |
| CVE-2026-31653 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: dealloc repeat_call_control if damon_call() fails damon_call() for repeat_call_control of DAMON_SYSFS could fail if somehow … | Apr 24, 2026 |
| CVE-2026-31652 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/damon/stat: deallocate damon_call() failure leaking damon_ctx damon_stat_start() always allocates the module's damon_ctx object (damon_stat_context). Meanwhile, … | Apr 24, 2026 |
| CVE-2026-31651 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix NULL-deref on disconnect Make sure to deregister the controller before dropping the … | Apr 24, 2026 |
| CVE-2026-31650 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix use-after-free on disconnect The vub300 driver maintains an explicit reference count for … | Apr 24, 2026 |
| CVE-2026-31649 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix integer underflow in chain mode The jumbo_frm() chain-mode implementation unconditionally computes len … | Apr 24, 2026 |
| CVE-2026-31648 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm: filemap: fix nr_pages calculation overflow in filemap_map_pages() When running stress-ng on my Arm64 machine … | Apr 24, 2026 |
| CVE-2026-31647 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: idpf: fix PREEMPT_RT raw/bh spinlock nesting for async VC handling Switch from using the completion's … | Apr 24, 2026 |
| CVE-2026-31646 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: lan966x: fix page_pool error handling in lan966x_fdma_rx_alloc_page_pool() page_pool_create() can return an ERR_PTR on failure. … | Apr 24, 2026 |
| CVE-2026-31645 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: lan966x: fix page pool leak in error paths lan966x_fdma_rx_alloc() creates a page pool but … | Apr 24, 2026 |
| CVE-2026-31644 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: lan966x: fix use-after-free and leak in lan966x_fdma_reload() When lan966x_fdma_reload() fails to allocate new RX … | Apr 24, 2026 |
| CVE-2026-31643 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix key parsing memleak In rxrpc_preparse_xdr_yfs_rxgk(), the memory attached to token->rxgk can be leaked … | Apr 24, 2026 |
| CVE-2026-31642 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix call removal to use RCU safe deletion Fix rxrpc call removal from the … | Apr 24, 2026 |
| CVE-2026-31641 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix RxGK token loading to check bounds rxrpc_preparse_xdr_yfs_rxgk() reads the raw key length and … | Apr 24, 2026 |
| CVE-2026-31640 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix use of wrong skb when comparing queued RESP challenge serial In rxrpc_post_response(), the … | Apr 24, 2026 |
| CVE-2026-31639 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix key reference count leak from call->key When creating a client call in rxrpc_alloc_client_call(), … | Apr 24, 2026 |
| CVE-2026-31638 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Only put the call ref if one was acquired rxrpc_input_packet_on_conn() can process a to-client … | Apr 24, 2026 |
| CVE-2026-31637 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: reject undecryptable rxkad response tickets rxkad_decrypt_ticket() decrypts the RXKAD response ticket and then parses … | Apr 24, 2026 |
| CVE-2026-31636 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: fix RESPONSE authenticator parser OOB read rxgk_verify_authenticator() copies auth_len bytes into a temporary buffer … | Apr 24, 2026 |