Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
43670
Total
3528
Critical
13050
High
12909
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-80529 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: xfs: don't swallow dquot recovery verification errors xlog_recover_dquot_commit_pass2() validates the recovered dquot with xfs_dqblk_verify() and, … | Aug 26, 2026 |
| CVE-2026-80528 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: ceph: avoid fs reclaim while using current->journal_info handle_reply() stores a `ceph_mds_request` pointer in `current->journal_info` while … | Aug 26, 2026 |
| CVE-2026-80527 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix hanging __ceph_get_caps() with stale mds_wanted A reader can hang forever in __ceph_get_caps() when … | Aug 26, 2026 |
| CVE-2026-80526 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: ASoC: tas2562: Validate values for volume writes tas2562_volume_control_put() does not do any validation of the … | Aug 26, 2026 |
| CVE-2026-80525 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-topology: Refresh copier IPC payload before widget setup The ipc_config_data buffer for copier … | Aug 26, 2026 |
| CVE-2026-80524 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: optee: ffa: Add NULL check in optee_ffa_lend_protmem Sashiko (locally) reports a possible null dereference under … | Aug 26, 2026 |
| CVE-2026-80523 | HIGH | 7.1 | In the Linux kernel, the following vulnerability has been resolved: clk: spacemit: k3: set hdma clock as critical HDMA clock is responsible for the internal … | Aug 26, 2026 |
| CVE-2026-80522 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: crypto: tegra - fix rctx->cryptlen calculation in tegra_gcm_do_one_req() Perform rctx->cryptlen calculation in tegra_gcm_do_one_req() the same … | Aug 26, 2026 |
| CVE-2026-80521 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Unlink scc_entry in unix_del_edge(). Kyle Zeng reported that GC could free a dead SCC … | Aug 26, 2026 |
| CVE-2026-80520 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: ovpn: fix NULL dereference when killing missing key ovpn_crypto_kill_key assumes both crypto slots are populated … | Aug 26, 2026 |
| CVE-2026-80519 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: ovpn: finish crypto callback cleanup before peer release Crypto completion callbacks hold both key-slot and … | Aug 26, 2026 |
| CVE-2026-75062 | UNKNOWN | — | Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in the default lf.query Python protocol in Google langfun versions prior to 0.1.2 allows remote … | Aug 26, 2026 |
| CVE-2026-74754 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: scsi: core: pair EH runtime PM get and put shost->eh_noresume is currently consulted twice in … | Aug 26, 2026 |
| CVE-2026-74753 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: perf: Reject exited events as group leaders perf_event_remove_on_exec() sets remove-on-exec events to the EXIT state … | Aug 26, 2026 |
| CVE-2026-74752 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: sctp: validate cookie AUTH state before use When cookie authentication is disabled, COOKIE_ECHO restores fixed-size … | Aug 26, 2026 |
| CVE-2026-74751 | CRITICAL | 9.4 | In the Linux kernel, the following vulnerability has been resolved: riscv: lib: Fix ZBB strnlen reading past count boundary The ZBB-optimized strnlen loop loads one … | Aug 26, 2026 |
| CVE-2026-74750 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: ovpn: defer key slot crypto freeing to workqueue Key slots are released through a kref … | Aug 26, 2026 |
| CVE-2026-74749 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: rseq: Prevent hard lockup on granted time slice extension __exit_to_user_mode_loop() invokes rseq_grant_timeslice_extension() with interrupts enabled. … | Aug 26, 2026 |
| CVE-2026-74748 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix refcount race between list:set GC and swap __ip_set_put_byindex() resolved the index to … | Aug 26, 2026 |
| CVE-2026-74747 | HIGH | 7.8 | In the Linux kernel, the following vulnerability has been resolved: ipvs: revalidate ihl to prevent out-of-bounds access While the outer IP header is already pulled … | Aug 26, 2026 |
| CVE-2026-74746 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: publish GC-visible tuple last nf_flow_table_iterate() only treats original-direction tuple nodes as owning entries. … | Aug 26, 2026 |
| CVE-2026-74745 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: avoid deadlock when canceling IRQ affinity notifier Unregistering IRQ affinity notifiers waits for … | Aug 26, 2026 |
| CVE-2026-74744 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: ipvlan: inherit needed_headroom and needed_tailroom from phy_dev ipvlan devices inherit hard_header_len from phy_dev during ipvlan_init(), … | Aug 26, 2026 |
| CVE-2026-74743 | CRITICAL | 9.8 | In the Linux kernel, the following vulnerability has been resolved: macvlan: inherit needed_headroom and needed_tailroom from lowerdev macvlan devices inherit hard_header_len from lowerdev during macvlan_init(), … | Aug 26, 2026 |
| CVE-2026-74742 | HIGH | 7.5 | In the Linux kernel, the following vulnerability has been resolved: veth: fix queue index used to wake the peer txq in veth_poll veth_poll() derives the … | Aug 26, 2026 |