Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
46492
Total
3749
Critical
13830
High
13646
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-72170 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: 9p: skip nlink update in cacheless mode to fix WARN_ON v9fs_dec_count() unconditionally calls drop_nlink() on … | Aug 15, 2026 |
| CVE-2026-72169 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: kho: make sure scratch size is always aligned by CMA_MIN_ALIGNMENT_BYTES When using scratch_scale, the scratch … | Aug 15, 2026 |
| CVE-2026-72168 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mtd: maps: vmu-flash: fix fault in unaligned fixup Use kzalloc_obj() / kzalloc_objs() to allocate the … | Aug 15, 2026 |
| CVE-2026-72167 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: pl353: fix probe resource allocation During probe(), the devm_ioremap() is called with the … | Aug 15, 2026 |
| CVE-2026-72166 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net/9p: fix infinite loop in p9_client_rpc on fatal signal When p9_client_rpc() is called with type … | Aug 15, 2026 |
| CVE-2026-72165 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: fix condition in 'nand_select_target()' 'cs' here must be in range [0:nanddev_ntargets[. | Aug 15, 2026 |
| CVE-2026-72164 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: avoid moving extents to occupied clusters For non-auto OCFS2_IOC_MOVE_EXT operations, userspace supplies a physical … | Aug 15, 2026 |
| CVE-2026-72163 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix NULL h_transaction deref in ocfs2_assure_trans_credits [BUG] A direct write over unwritten extents can … | Aug 15, 2026 |
| CVE-2026-72162 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix UBSAN array-index-out-of-bounds in ocfs2_sum_rightmost_rec [BUG] On-disk corruption setting l_next_free_rec to 0 in an … | Aug 15, 2026 |
| CVE-2026-72161 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: add journal NULL check in ocfs2_checkpoint_inode() During unmount, ocfs2_journal_shutdown() frees the journal and sets … | Aug 15, 2026 |
| CVE-2026-72160 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject dinodes with non-canonical i_mode type Patch series "ocfs2: harden inode validators against forged … | Aug 15, 2026 |
| CVE-2026-72159 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject non-inline dinodes with i_size and zero i_clusters On a volume mounted without OCFS2_FEATURE_INCOMPAT_SPARSE_ALLOC, … | Aug 15, 2026 |
| CVE-2026-72158 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: fpga: dfl: add bounds check in dfh_get_param_size() dfh_get_param_size() can return a parameter size larger than … | Aug 15, 2026 |
| CVE-2026-72157 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: Fix frags[] overflow by bounding frame_count tbnet_poll() assembles a multi-frame ThunderboltIP packet into … | Aug 15, 2026 |
| CVE-2026-72156 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: fpga: microchip-spi: fix zero header_size OOB read in mpf_ops_parse_header() mpf_ops_parse_header() reads header_size from the bitstream … | Aug 15, 2026 |
| CVE-2026-72155 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: mtd: spi-nor: swp: Improve locking user experience In the case of the first block being … | Aug 15, 2026 |
| CVE-2026-72154 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: openrisc: Fix jump_label smp syncing The original commit 8c30b0018f9d ("openrisc: Add jump label support") copies … | Aug 15, 2026 |
| CVE-2026-72153 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: irqchip/crossbar: Use correct index in crossbar_domain_free() crossbar_domain_free() resets the domain data and then uses the … | Aug 15, 2026 |
| CVE-2026-72152 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat() wait_event_interruptible_timeout() evaluates its condition after setting the current task … | Aug 15, 2026 |
| CVE-2026-72151 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: tpm: tpm2-sessions: wait for async KPP completion in tpm_buf_append_salt tpm_buf_append_salt() in drivers/char/tpm/tpm2-sessions.c calls crypto_kpp_generate_public_key() and … | Aug 15, 2026 |
| CVE-2026-72150 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix uninitialized xprt_create_args structure The xprt_create_args structure is allocated on the stack without initialization … | Aug 15, 2026 |
| CVE-2026-72149 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: dmaengine: tegra: Fix burst size calculation Currently, the Tegra GPC DMA hardware requires the transfer … | Aug 15, 2026 |
| CVE-2026-72148 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Add spinlock to protect DONE_INT_MASK and ABORT_INT_MASK The DONE_INT_MASK and ABORT_INT_MASK registers are … | Aug 15, 2026 |
| CVE-2026-72147 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma-pcie: Reject devices without driver data dw_edma_pcie_probe() treats the PCI device ID driver_data as … | Aug 15, 2026 |
| CVE-2026-72146 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: dmaengine: sh: rz-dmac: Move interrupt request after everything is set up Once the interrupt is … | Aug 15, 2026 |