Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
51787
Total
4103
Critical
15361
High
15039
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-64042 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Check BAR resources before exporting a DMABUF A DMABUF exports access to BAR resources … | Jul 19, 2026 |
| CVE-2026-64041 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: fs210x: fix possible buffer overflow In fs210x_effect_scene_info(), a string was copied like this: … | Jul 19, 2026 |
| CVE-2026-64040 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix error return when vfs_mkdir() fails When vfs_mkdir() fails, the error code is not … | Jul 19, 2026 |
| CVE-2026-64039 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/msm/snapshot: fix dumping of the unaligned regions The snapshotting code internally aligns data segment to … | Jul 19, 2026 |
| CVE-2026-64038 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: hwmon: (lm90) Stop work before releasing hwmon device Sashiko reports: In lm90_probe(), the devm action … | Jul 19, 2026 |
| CVE-2026-64037 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled When the TLC notification … | Jul 19, 2026 |
| CVE-2026-64036 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: cgroup/rstat: validate cpu before css_rstat_cpu() access css_rstat_updated() is exposed as a BPF kfunc and accepts … | Jul 19, 2026 |
| CVE-2026-64035 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: igc: set tx buffer type for SMD frames Sashiko pointed out that igc_fpe_init_smd_frame() initializes igc_tx_buffer … | Jul 19, 2026 |
| CVE-2026-64034 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer In mana_hwc_rx_event_handler(), resp->response.hwc_msg_id is read … | Jul 19, 2026 |
| CVE-2026-64033 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs: Fix use-after-free in path file creation cleanup In the error path of rtrs_srv_create_path_files(), the … | Jul 19, 2026 |
| CVE-2026-64032 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bridge: mcast: Fix a possible use-after-free when removing a bridge port When per-VLAN multicast snooping … | Jul 19, 2026 |
| CVE-2026-64031 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: erofs: fix managed cache race for unaligned extents After unaligned compressed extents were introduced, the … | Jul 19, 2026 |
| CVE-2026-64030 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: bounds-check link_id in ieee80211_ml_epcs IEEE80211_MLE_STA_EPCS_CONTROL_LINK_ID is 0x000f, so link_id extracted from a PRIO_ACCESS … | Jul 19, 2026 |
| CVE-2026-64029 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Serialize UMP output teardown with event_input seq_ump_process_event() borrows client->out_rfile.output without synchronizing with the … | Jul 19, 2026 |
| CVE-2026-64028 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tracing: Avoid NULL return from hist_field_name() on truncation hist_field_name() returns "" everywhere except the fully-qualified … | Jul 19, 2026 |
| CVE-2026-64027 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: shaper: rework the VALID marking (again) Recent commit changed the semantics from NOT_VALID to … | Jul 19, 2026 |
| CVE-2026-64026 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix DATA decrypt vs splice() by copying data to buffer in recvmsg This improves … | Jul 19, 2026 |
| CVE-2026-64025 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: bpf, skmsg: fix verdict sk_data_ready racing with ktls rx sk_psock_strp_data_ready() already checks tls_sw_has_ctx_rx() and defers … | Jul 19, 2026 |
| CVE-2026-64024 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tcp: fix stale per-CPU tcp_tw_isn leak enabling ISN prediction Blamed commit moved the TIME_WAIT-derived ISN … | Jul 19, 2026 |
| CVE-2026-64023 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: gpio: aggregator: fix a potential use-after-free On error we free aggr->lookups->dev_id before removing the entry … | Jul 19, 2026 |
| CVE-2026-64022 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: gpio: aggregator: remove the software node when deactivating the aggregator The dynamic software node we … | Jul 19, 2026 |
| CVE-2026-64021 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: drm/xe/oa: Fix exec_queue leak on width check in stream open In xe_oa_stream_open_ioctl(), when param.exec_q->width > … | Jul 19, 2026 |
| CVE-2026-64020 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix dma_vecs leak on p2p memory We don't unmap P2P memory, so we don't … | Jul 19, 2026 |
| CVE-2026-64019 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix dma mapping leak on data setup error We're leaking the initial DMA mapping … | Jul 19, 2026 |
| CVE-2026-64018 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: mana: validate rx_req_idx to prevent out-of-bounds array access In mana_hwc_rx_event_handler(), rx_req_idx is derived from … | Jul 19, 2026 |