Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
10648
Total
723
Critical
3075
High
3393
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-43433 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rust_binder: avoid reading the written value in offsets array When sending a transaction, its offsets … | May 08, 2026 |
| CVE-2026-43432 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Fix memory leak in xhci_disable_slot() xhci_alloc_command() allocates a command structure and, when the … | May 08, 2026 |
| CVE-2026-43431 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: xhci: Fix NULL pointer dereference when reading portli debugfs files Michal reported and debgged a … | May 08, 2026 |
| CVE-2026-43430 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: yurex: fix race in probe The bbu member of the descriptor must be set … | May 08, 2026 |
| CVE-2026-43429 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: USB: usbtmc: Use usb_bulk_msg_killable() with user-specified timeouts The usbtmc driver accepts timeout values specified by … | May 08, 2026 |
| CVE-2026-43428 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: USB: core: Limit the length of unkillable synchronous timeouts The usb_control_msg(), usb_bulk_msg(), and usb_interrupt_msg() APIs … | May 08, 2026 |
| CVE-2026-43427 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: class: cdc-wdm: fix reordering issue in read code path Quoting the bug report: Due … | May 08, 2026 |
| CVE-2026-43426 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: renesas_usbhs: fix use-after-free in ISR during device removal In usbhs_remove(), the driver frees resources … | May 08, 2026 |
| CVE-2026-43425 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: image: mdc800: kill download URB on timeout mdc800_device_read() submits download_urb and waits for completion. … | May 08, 2026 |
| CVE-2026-43424 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: Fix NULL pointer dereferences in nexus handling The `tpg->tpg_nexus` pointer in the … | May 08, 2026 |
| CVE-2026-43423 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ncm: Fix atomic context locking issue The ncm_set_alt function was holding a mutex … | May 08, 2026 |
| CVE-2026-43422 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: legacy: ncm: Fix NPE in gncm_bind Commit 56a512a9b410 ("usb: gadget: f_ncm: align net_device lifecycle … | May 08, 2026 |
| CVE-2026-43421 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ncm: Fix net_device lifecycle with device_move The network device outlived its parent gadget … | May 08, 2026 |
| CVE-2026-43420 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ceph: fix i_nlink underrun during async unlink During async unlink, we drop the `i_nlink` counter … | May 08, 2026 |
| CVE-2026-43419 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ceph: fix memory leaks in ceph_mdsc_build_path() Add __putname() calls to error code paths that did … | May 08, 2026 |
| CVE-2026-43418 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: sched/mmcid: Prevent CID stalls due to concurrent forks A newly forked task is accounted as … | May 08, 2026 |
| CVE-2026-43417 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: sched/mmcid: Handle vfork()/CLONE_VM correctly Matthieu and Jiri reported stalls where a task endlessly loops in … | May 08, 2026 |
| CVE-2026-43416 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: powerpc, perf: Check that current->mm is alive before getting user callchain It may happen that … | May 08, 2026 |
| CVE-2026-43415 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix SError in ufshcd_rtc_work() during UFS suspend In __ufshcd_wl_suspend(), cancel_delayed_work_sync() is called … | May 08, 2026 |
| CVE-2026-43414 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Completely fix fcport double free In qla24xx_els_dcmd_iocb() sp->free is set to qla2x00_els_dcmd_sp_free(). When … | May 08, 2026 |
| CVE-2026-43413 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: hisi_sas: Fix NULL pointer exception during user_scan() user_scan() invokes updated sas_user_scan() for channel 0, … | May 08, 2026 |
| CVE-2026-43412 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: qdsp6: Fix q6apm remove ordering during ADSP stop and start During ADSP stop … | May 08, 2026 |
| CVE-2026-43411 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tipc: fix divide-by-zero in tipc_sk_filter_connect() A user can set conn_timeout to any value via setsockopt(TIPC_CONN_TIMEOUT), … | May 08, 2026 |
| CVE-2026-43410 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: firmware: stratix10-rsu: Fix NULL pointer dereference when RSU is disabled When the Remote System Update … | May 08, 2026 |
| CVE-2026-43409 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: kprobes: avoid crash when rmmod/insmod after ftrace killed After we hit ftrace is killed by … | May 08, 2026 |