Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
51787
Total
4103
Critical
15361
High
15039
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-64142 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: close durable scavenger races against m_fp_list lookups ksmbd_durable_scavenger() has two related races against any … | Jul 19, 2026 |
| CVE-2026-64141 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in compare_guid_key() session_fd_check() walks the per-inode m_op_list during durable-handle session … | Jul 19, 2026 |
| CVE-2026-64140 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference in proc_show_files() When a SMB2 client opens a file with … | Jul 19, 2026 |
| CVE-2026-64139 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix SID memory leak in set_posix_acl_entries_dacl() on overflow Commit 299f962c0b02 ("ksmbd: use check_add_overflow() to … | Jul 19, 2026 |
| CVE-2026-64138 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate SID in parent security descriptor during ACL inheritance Introduce smb_validate_ntsd_sid() helper to safely … | Jul 19, 2026 |
| CVE-2026-64137 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: smb: client: require net admin for CIFS SWN netlink CIFS_GENL_CMD_SWN_NOTIFY is the userspace witness-notify command. … | Jul 19, 2026 |
| CVE-2026-64136 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked() Commit 96c4af418586 ("cifs: Fix locking usage for tcon … | Jul 19, 2026 |
| CVE-2026-64135 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/adm1266) widen blackbox-info buffer to I2C_SMBUS_BLOCK_MAX adm1266_nvmem_read_blackbox() declares a 5-byte stack buffer and passes … | Jul 19, 2026 |
| CVE-2026-64134 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Don't setup bogus iov_iter for silencing At transition to the iov_iter for PCM … | Jul 19, 2026 |
| CVE-2026-64133 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ALSA: asihpi: Fix potential OOB array access at reading cache find_control() to retrieve a cached … | Jul 19, 2026 |
| CVE-2026-64132 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: refresh hdr pointer before ioam6_event() Reported by Sashiko: In ipv6_hop_ioam(), the hdr pointer … | Jul 19, 2026 |
| CVE-2026-64131 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/memory: fix spurious warning when unmapping device-private/exclusive pages Device private and exclusive entries are only … | Jul 19, 2026 |
| CVE-2026-64130 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: fix initialization of tags of the huge zero folio with init_on_free __GFP_ZEROTAGS semantics are … | Jul 19, 2026 |
| CVE-2026-64129 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mm/migrate_device: fix spinlock leak in migrate_vma_insert_huge_pmd_page When check_stable_address_space() fails after the PMD spinlock has been … | Jul 19, 2026 |
| CVE-2026-64128 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: drop ISO_END frames received without prior ISO_START ISO data PDUs carry a packet-boundary … | Jul 19, 2026 |
| CVE-2026-64127 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: ecred_reconfigure: send packed pdu, not stack pointer Commit 1c08108f3014 ("Bluetooth: L2CAP: Avoid -Wflex-array-member-not-at-end … | Jul 19, 2026 |
| CVE-2026-64126 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate Add Extended Advertising Data length MGMT_OP_ADD_EXT_ADV_DATA is registered as a variable-length command, … | Jul 19, 2026 |
| CVE-2026-64125 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: keep RBUF EEE/PM disabled Setting RBUF_EEE_EN | RBUF_PM_EN in RBUF_ENERGY_CTRL breaks the RX … | Jul 19, 2026 |
| CVE-2026-64124 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: devmem: reject dma-buf bind with non-page-aligned size or SG length net_devmem_bind_dmabuf() trusts dmabuf->size and … | Jul 19, 2026 |
| CVE-2026-64123 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: hsr: defer node table free until after RCU readers HSR node-list and node-status generic-netlink … | Jul 19, 2026 |
| CVE-2026-64122 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover mlx5e_tx_reporter_timeout_recover() accesses sq->netdev after mlx5e_safe_reopen_channels() has torn down and freed … | Jul 19, 2026 |
| CVE-2026-64121 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: ifb: report ethtool stats over num_tx_queues ifb_dev_init() allocates dp->tx_private to dev->num_tx_queues entries via kzalloc_objs(*txp, … | Jul 19, 2026 |
| CVE-2026-64120 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: ethtool: fix NULL pointer dereference in phy_reply_size In phy_prepare_data(), several strings such as 'name', … | Jul 19, 2026 |
| CVE-2026-64119 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: l2tp: use list_del_rcu in l2tp_session_unhash An unprivileged local user can pin a host CPU indefinitely … | Jul 19, 2026 |
| CVE-2026-64118 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: qed: fix double free in qed_cxt_tables_alloc() If one of the later PF or VF CID … | Jul 19, 2026 |