1244 entries matching linux kernel — updated 2026-09-18 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2025-39964 | Linux Kernel Race Condition Vulnerability | HIGH | — | 26%ile | CISA-KEV | 2026-09-18 |
| USN-8781-1 | USN-8781-1: Linux kernel (NVIDIA Tegra) vulnerabilities | CRITICAL | 9.3 | — | Ubuntu | 2026-09-18 |
| USN-8730-3 | USN-8730-3: Linux kernel (Azure) vulnerability | UNKNOWN | — | — | Ubuntu | 2026-09-18 |
| USN-8761-2 | USN-8761-2: Linux kernel (Azure FIPS) vulnerabilities | HIGH | 7.1 | — | Ubuntu | 2026-09-18 |
| USN-8729-2 | USN-8729-2: Linux kernel (Raspberry Pi Real-time) vulnerabilities | HIGH | 7.1 | — | Ubuntu | 2026-09-18 |
| USN-8726-2 | USN-8726-2: Linux kernel (Raspberry Pi) vulnerabilities | CRITICAL | 9.3 | — | Ubuntu | 2026-09-18 |
| USN-8725-2 | USN-8725-2: Linux kernel (AWS) vulnerabilities | CRITICAL | 9.8 | — | Ubuntu | 2026-09-18 |
| USN-8715-2 | USN-8715-2: Linux kernel (AWS FIPS) vulnerabilities | UNKNOWN | — | — | Ubuntu | 2026-09-18 |
| USN-8714-3 | USN-8714-3: Linux kernel vulnerabilities | CRITICAL | 9.8 | — | Ubuntu | 2026-09-18 |
| CVE-2026-90104 | In the Linux kernel, the following vulnerability has been resolved: NFSv4.1: zero referring call lists before decoding | CRITICAL | 9.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90151 | In the Linux kernel, the following vulnerability has been resolved: NFSv4: remove callback IDR entry on client allocati | CRITICAL | 9.8 | 13%ile | NVD | 2026-09-17 |
| CVE-2026-90173 | In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: free completion queues with ib_free | CRITICAL | 9.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90235 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: xprtsock: annotate shared socket callbacks | CRITICAL | 9.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92489 | In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix skb double-free in xfrm_dev_direct_output | CRITICAL | 9.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90110 | In the Linux kernel, the following vulnerability has been resolved: inetpeer: randomize RB-tree node comparison using S | CRITICAL | 9.4 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90230 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix heap out-of-bounds read in nvmet_auth_ne | CRITICAL | 9.1 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90413 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: reject login PDUs declaring more data tha | CRITICAL | 9.1 | 17%ile | NVD | 2026-09-17 |
| CVE-2026-90414 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: reject PDUs declaring more data than was | CRITICAL | 9.1 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-90162 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: defer publishing granted locks to prevent UA | HIGH | 8.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90240 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Flush context cache with correct SID wh | HIGH | 8.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90255 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix the SCO setup context life | HIGH | 8.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90256 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use proto_lock for l2cap_data to | HIGH | 8.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90286 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/gfx6: Use PFP on the compute queues too | HIGH | 8.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90329 | In the Linux kernel, the following vulnerability has been resolved: HID: synchronize input before cleaning up a failed | HIGH | 8.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90357 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: unlink TWT flow if the MCU reje | HIGH | 8.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90367 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: hold dev->mt76.mutex while disa | HIGH | 8.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90371 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix RXDMAD_C buffer recycling race The | HIGH | 8.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90379 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: Add PCIe AER handler support to | HIGH | 8.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90380 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt792x: fix use-after-free in mt76_rx_p | HIGH | 8.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90381 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix handling channel context with diffe | HIGH | 8.8 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90425 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Require exactly one Stream ID | HIGH | 8.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93042 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Terminate all descriptors witho | HIGH | 8.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93189 | In the Linux kernel, the following vulnerability has been resolved: HID: core: quiesce input in hid_hw_stop() to preven | HIGH | 8.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90120 | In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v5: Check get_logical_index() return va | HIGH | 8.4 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90191 | In the Linux kernel, the following vulnerability has been resolved: mailbox: riscv-sbi-mpxy: validate RPMI notification | HIGH | 8.4 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90231 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix unconfined user namespace restriction | HIGH | 8.4 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90347 | In the Linux kernel, the following vulnerability has been resolved: arm64: ptrace: Keep 'orig_x0' in-sync with x0 on sy | HIGH | 8.4 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90398 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix stride mismatch in mac_phy_caps_p | HIGH | 8.4 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90399 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix stride mismatch in mac_phy_caps_p | HIGH | 8.4 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93063 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mei: check SAP message length before | HIGH | 8.4 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93190 | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_typec: Reject out-of-bound | HIGH | 8.4 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93196 | In the Linux kernel, the following vulnerability has been resolved: nvdimm: virtio_pmem: refcount requests for token li | HIGH | 8.4 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-90241 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Tear down scalable-mode context on prob | HIGH | 8.2 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90332 | In the Linux kernel, the following vulnerability has been resolved: PCI: dwc: ep: Flush cached MSI write before unmappi | HIGH | 8.2 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93107 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Avoid reprocessing the current packet aft | HIGH | 8.2 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90153 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: bound smb_check_perm_dacl() ACE walks by DAC | HIGH | 8.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90176 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: Do not skip lock checks for single-byte rang | HIGH | 8.1 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90243 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clear Present bit before tearing down c | HIGH | 8.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90268 | In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix error handling in sd_probe() after la | HIGH | 8.1 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90301 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: o2hb: quiesce negotiate handlers and timeout | HIGH | 8.1 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90091 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix race l2cap_sock_cleanup_liste | HIGH | 8.0 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90092 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: reject accept queue add unless BT | HIGH | 8.0 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90051 | In the Linux kernel, the following vulnerability has been resolved: tcp: reject non zerocopy devmem tx Devmem tcp tx d | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90052 | In the Linux kernel, the following vulnerability has been resolved: dm-integrity: fix buffer overflow with keyed discar | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90057 | In the Linux kernel, the following vulnerability has been resolved: slip: remove slip_hangup() to fix use-after-free in | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90069 | In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - allocate async request context when | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90071 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_teql: restore skb->dev on the slave | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90093 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: access chan->conn safely in get/s | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90111 | In the Linux kernel, the following vulnerability has been resolved: ip6mr: do not clone dst in ip6mr_cache_report() IP | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90118 | In the Linux kernel, the following vulnerability has been resolved: ntfs: fix off-by-one page overflow in ntfs_decompre | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90133 | In the Linux kernel, the following vulnerability has been resolved: ntfs: Fix index_root heap OOB write in ntfs_ir_to_i | HIGH | 7.8 | 13%ile | NVD | 2026-09-17 |
| CVE-2026-90142 | In the Linux kernel, the following vulnerability has been resolved: virtio_net: Fix resize of the RX ring When a AF_XD | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90143 | In the Linux kernel, the following vulnerability has been resolved: net: kcm: Hold RCU read lock while running BPF pars | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90146 | In the Linux kernel, the following vulnerability has been resolved: bpf, xdp: move offload check into dev_xdp_install() | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90177 | In the Linux kernel, the following vulnerability has been resolved: bpf: Check pointer type for all atomic RMW paths A | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90199 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: reject out-of-range evcn in mi_enum_attr( | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90204 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate DIO orphan slot during inode read | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90205 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate orphan slot during inode read Patc | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90207 | In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: midi: Serialize input teardown with even | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90210 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix UAF in bpf_trampoline_multi_attach_free on | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90217 | In the Linux kernel, the following vulnerability has been resolved: bpf: Compare iterator types during state pruning A | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90225 | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: read llcp_sock->local under the socket l | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90227 | In the Linux kernel, the following vulnerability has been resolved: nvme/ioctl: check SUBMIT_IO with nvme_cmd_allowed() | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90237 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: move custom expectation support | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90244 | In the Linux kernel, the following vulnerability has been resolved: iommu/dma: Restore locking around msi_page_list Un | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90289 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Resize MST HDCP per-connector arra | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90291 | In the Linux kernel, the following vulnerability has been resolved: module/dups: Fix use-after-free in kmod_dup_req lif | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90292 | In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix use-after-free in siw_accept() siw_a | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90308 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Hold QP references for AE and CM proces | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90309 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Hold CQ references when processing EQ e | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90312 | In the Linux kernel, the following vulnerability has been resolved: bpf: Check load-acquire src ptr type before the loa | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90316 | In the Linux kernel, the following vulnerability has been resolved: drm/omap: dsi: Do not copy isr table To be able to | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90317 | In the Linux kernel, the following vulnerability has been resolved: bpf: Invalidate RCU pointers after final spin unloc | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90320 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate external xattr entries when reading | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90321 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate inline xattrs during inode block va | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90324 | In the Linux kernel, the following vulnerability has been resolved: ublk: check import_ubuf() return value import_ubuf | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90325 | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: skip dying blkg in blkcg_activate_polic | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90326 | In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix race between policy activation and | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90343 | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: stop PMSR before P2P and NAN teardo | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90358 | In the Linux kernel, the following vulnerability has been resolved: bpf, x86: Fix trampoline stack size for 128-bit arg | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90383 | In the Linux kernel, the following vulnerability has been resolved: misc: sgi-gru: remove interrupt-context page-table | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90387 | In the Linux kernel, the following vulnerability has been resolved: swiotlb: Preserve allocation virtual address for dy | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90388 | In the Linux kernel, the following vulnerability has been resolved: iommu/dma: Check atomic pool allocation result dire | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90392 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential UAF when reading bpf link info | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90423 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix UAF in ODP init error-handling path | HIGH | 7.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90429 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Synchronize the error ISR aga | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90435 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix integer overflow of user QP buffer s | HIGH | 7.8 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-92485 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix WARNING in bpf_tracing_link_release The t | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-92507 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_deall | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-92508 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_free_ | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-92510 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_destr | HIGH | 7.8 | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92511 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in ib_destr | HIGH | 7.8 | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92518 | In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix kernel stack corruption in tailcall | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93037 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Propagate sdma_txinit_ahg() errors set_ | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93045 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject arena frees below the arena base bpf_a | HIGH | 7.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93070 | In the Linux kernel, the following vulnerability has been resolved: media: ipu6: Do not free aux device pdata after ini | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93074 | In the Linux kernel, the following vulnerability has been resolved: dax/fsdev: use __va(phys) for kaddr in direct_acces | HIGH | 7.8 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93079 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Reject Get Feature count larger than | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93095 | In the Linux kernel, the following vulnerability has been resolved: hfsplus: validate thread record before delete key r | HIGH | 7.8 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93105 | In the Linux kernel, the following vulnerability has been resolved: esp: do not unref managed frag pages in esp_ssg_unr | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93111 | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark tracing_multi trampolines as ftrace manag | HIGH | 7.8 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93122 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uac: validate rate list length before | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93125 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject rdonly/rdwr_buf_size kfunc arguments th | HIGH | 7.8 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93127 | In the Linux kernel, the following vulnerability has been resolved: bpf: Drop scalar id on sign-extending narrowing sta | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93137 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free on mm_struct in bpf_find_vm | HIGH | 7.8 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93138 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix vmlinux BTF prep race in bpf_get_btf_vmlin | HIGH | 7.8 | 13%ile | NVD | 2026-09-17 |
| CVE-2026-93144 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject writes through untrusted BTF pointers | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93147 | In the Linux kernel, the following vulnerability has been resolved: s390/bpf: Replace ly instruction with llgf cpu_nr | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93148 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject MEM_ALLOC BTF accesses past object boun | HIGH | 7.8 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93154 | In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Add refcounting to user ring MRs Preve | HIGH | 7.8 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93170 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx_dma: Fix channel idle state manag | HIGH | 7.8 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93175 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dangling pointer in CRTC reset | HIGH | 7.8 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93192 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Clear queue->active_job when v3d_fence_cre | HIGH | 7.8 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93201 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate seg_id fields from persistent m | HIGH | 7.8 | 4%ile | NVD | 2026-09-17 |
| CVE-2026-90137 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: fix password encoding bou | HIGH | 7.7 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90341 | In the Linux kernel, the following vulnerability has been resolved: firmware: coreboot: Validate table bounds The exis | HIGH | 7.7 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90407 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix overreads in ath11k_wmi_process_c | HIGH | 7.7 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90408 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix overreads in ath12k_wmi_process_c | HIGH | 7.7 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93165 | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: sensorhub: Fix memory overread in | HIGH | 7.7 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90059 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: restore NET_IP_ALIGN in the RX DMA off | HIGH | 7.5 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90067 | In the Linux kernel, the following vulnerability has been resolved: libceph: validate banner payload length When parsi | HIGH | 7.5 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90102 | In the Linux kernel, the following vulnerability has been resolved: NFSv4/pnfs: key the data server cache on the NFS ve | HIGH | 7.5 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90103 | In the Linux kernel, the following vulnerability has been resolved: NFSv4.2: fix LAYOUTSTATS send buffer exhaustion en | HIGH | 7.5 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90149 | In the Linux kernel, the following vulnerability has been resolved: NFSv4/flexfiles: fix NULL dereference for NFSv4.0 d | HIGH | 7.5 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90172 | In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: destroy QP before mem pools on acce | HIGH | 7.5 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90224 | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: fix double completion race in nci_data_ex | HIGH | 7.5 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90228 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix NULL pointer dereference in nvmet_execut | HIGH | 7.5 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90234 | In the Linux kernel, the following vulnerability has been resolved: NFS: Return a delegation the client fails to record | HIGH | 7.5 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90293 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: post the full-feature receive buffers aft | HIGH | 7.5 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90294 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: delay the final Login Response until the | HIGH | 7.5 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93151 | In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: fix response resource leak on queue tea | HIGH | 7.5 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90229 | In the Linux kernel, the following vulnerability has been resolved: nvme-apple: Destroy the admin queue on removal The | HIGH | 7.4 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90288 | In the Linux kernel, the following vulnerability has been resolved: phy: renesas: rcar-gen2: Fix double of_node_put on | HIGH | 7.4 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90427 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Don't fall back to a freed sm | HIGH | 7.4 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93039 | In the Linux kernel, the following vulnerability has been resolved: ASoC: meson: Keep link pointers valid on realloc fa | HIGH | 7.4 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90141 | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix integer overflow in ftp helper port/addre | HIGH | 7.3 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-92522 | In the Linux kernel, the following vulnerability has been resolved: ACPI: processor: validate MADT IOAPIC entry bounds | HIGH | 7.3 | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93177 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm/powerplay: bounds-check voltage index | HIGH | 7.3 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90062 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move hardware offload step af | HIGH | 7.1 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90089 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btnxpuart: Validate the FW dump header l | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90131 | In the Linux kernel, the following vulnerability has been resolved: ntfs: serialize resident iomap reads with mrec_lock | HIGH | 7.1 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90132 | In the Linux kernel, the following vulnerability has been resolved: ntfs: reject unprivileged writes to reserved $LX* x | HIGH | 7.1 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90145 | In the Linux kernel, the following vulnerability has been resolved: hinic3: Fix skb linearization mismatch and drop skb | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90161 | In the Linux kernel, the following vulnerability has been resolved: erofs: fix interlaced ztailpacking pclusters On-di | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90174 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds read in ksmbd_alloc_u | HIGH | 7.1 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90203 | In the Linux kernel, the following vulnerability has been resolved: Squashfs: check block offset is not negative If a | HIGH | 7.1 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90223 | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: bound SNL TLV parsing to the skb and add | HIGH | 7.1 | 17%ile | NVD | 2026-09-17 |
| CVE-2026-90246 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix integer overflow in verify_tags() bou | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90260 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: don't clobber the extent buffer when | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90372 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: avoid nss underflow in mt7915_m | HIGH | 7.1 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90401 | In the Linux kernel, the following vulnerability has been resolved: md: remove REQ_NOWAIT support from raid1/10/456 RE | HIGH | 7.1 | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90419 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: prevent out-of-bounds read in super root bl | HIGH | 7.1 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-92525 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Validate num_sge/cur_sge before indexing | HIGH | 7.1 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93112 | In the Linux kernel, the following vulnerability has been resolved: bpf: Require a BPF cpumask for bpf_cpumask_populate | HIGH | 7.1 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93178 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm/powerplay: bounds-check voltage index | HIGH | 7.1 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93203 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: avoid CRC corruption due to parall | HIGH | 7.1 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90353 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: fix ext PHY use-after-free on r | HIGH | 7.0 | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90402 | In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Fix controller cleanup on EDL sysfs | HIGH | 7.0 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90403 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: pci: fix error path in rtl_pci_probe | HIGH | 7.0 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-92488 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: complete object teardown when the destr | HIGH | 7.0 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92504 | In the Linux kernel, the following vulnerability has been resolved: thermal: intel: int3400: clean up ODVP on probe fai | HIGH | 7.0 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93046 | In the Linux kernel, the following vulnerability has been resolved: software node: Fix software_node_get_reference_args | HIGH | 7.0 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93054 | In the Linux kernel, the following vulnerability has been resolved: uio: Fix stale info pointer in failed registration | HIGH | 7.0 | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93116 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: asus-wmi: fix resource leaks on probe | HIGH | 7.0 | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93121 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix fence cleanup in ffs_dmabuf_ | HIGH | 7.0 | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93176 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dangling pointer in plane rese | HIGH | 7.0 | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90050 | In the Linux kernel, the following vulnerability has been resolved: net/sched: fq: clamp quantum and initial_quantum in | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90053 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_htb: limit htb_classify inner-class | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90054 | In the Linux kernel, the following vulnerability has been resolved: tcp: fix corruption of urgent data on multi-segment | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90055 | In the Linux kernel, the following vulnerability has been resolved: usb: atm: usbatm: fix invalid ci_range initializati | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90056 | In the Linux kernel, the following vulnerability has been resolved: net: fec: only stop PTP if it was initialized fec_ | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90058 | In the Linux kernel, the following vulnerability has been resolved: net/sched: bound qdisc_pkt_len to prevent qdisc sof | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90060 | In the Linux kernel, the following vulnerability has been resolved: ALSA: control: Don't add invalid kcontrols to LED l | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90061 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: skip double clone set express | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90063 | In the Linux kernel, the following vulnerability has been resolved: virtio-net: Ensure that TCP packets don't overflow | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90064 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Reject page faults from non-fault-mode scra | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90065 | In the Linux kernel, the following vulnerability has been resolved: net/smc: release the internal TCP sock on IPPROTO_S | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90066 | In the Linux kernel, the following vulnerability has been resolved: samples/ftrace: Fix kthread_stop() on ERR_PTR in ft | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90068 | In the Linux kernel, the following vulnerability has been resolved: ASoC: dapm: Fix off-by-one check on the second enum | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90070 | In the Linux kernel, the following vulnerability has been resolved: tpm: st33zp24: Return zero on status read failure | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90072 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sfq: clamp quantum to avoid signed overf | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90073 | In the Linux kernel, the following vulnerability has been resolved: net/sched: hhf: clamp quantum before hhf_change() t | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90074 | In the Linux kernel, the following vulnerability has been resolved: net/sched: fq_pie: clamp default quantum to avoid s | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90075 | In the Linux kernel, the following vulnerability has been resolved: net/sched: fq_codel: clamp default quantum and mtu | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90076 | In the Linux kernel, the following vulnerability has been resolved: net/sched: fq: add overflow bounds to quantum and i | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90077 | In the Linux kernel, the following vulnerability has been resolved: net: fix a resource leak in copy_net_ns() error han | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90078 | In the Linux kernel, the following vulnerability has been resolved: net/sched: act_skbmod: fix length calculations and | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90079 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix cn20k mailbox lifetime on repeate | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90080 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: fix NULL deref of af_xdp_zc_qidx on r | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90081 | In the Linux kernel, the following vulnerability has been resolved: net/rds: use wq_has_sleeper() in rds_cong_map_updat | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90082 | In the Linux kernel, the following vulnerability has been resolved: net: mana: Cap MSI-X vectors to the device MSI-X ta | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90083 | In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ife: Only operate on Ethernet frames | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90084 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-vf: fix workqueue and netdev race in prob | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90085 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix NULL deref in NIX TM tree debugfs | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90086 | In the Linux kernel, the following vulnerability has been resolved: xsk: honor XDP_TX_METADATA in zero-copy path The z | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90087 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: do not leak an hci_conn when a second LE | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90088 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: Validate MTU in rfcomm_apply_pn( | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90090 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtksdio: Fix out-of-bounds DMA read in | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90094 | In the Linux kernel, the following vulnerability has been resolved: arm64: process: Fix context switching MTE store-onl | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90095 | In the Linux kernel, the following vulnerability has been resolved: fuse: Fix the condition to enable over-io-uring Th | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90096 | In the Linux kernel, the following vulnerability has been resolved: fuse: invalidate the correct range after O_APPEND d | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90097 | In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Skip VMBus module cleanup for n | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90098 | In the Linux kernel, the following vulnerability has been resolved: net: sparx5: fix sleep in atomic context in MAC tab | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90099 | In the Linux kernel, the following vulnerability has been resolved: net/sched: account classifier filter allocations to | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90100 | In the Linux kernel, the following vulnerability has been resolved: ptp: netc: fix period truncation and potential divi | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90101 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix call to hardware monitoring event hand | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90105 | In the Linux kernel, the following vulnerability has been resolved: vxlan: fix reading neigh ha Currently arp/neigh_re | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90106 | In the Linux kernel, the following vulnerability has been resolved: net: bridge: arp/nd proxy: fix reading neigh ha Cu | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90107 | In the Linux kernel, the following vulnerability has been resolved: net/smc: free pending qentry in smc_llc_flow_stop() | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90108 | In the Linux kernel, the following vulnerability has been resolved: net/smc: free stashed qentry before overwrite in RE | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90109 | In the Linux kernel, the following vulnerability has been resolved: net: sched: fix 32-bit backlog wrap in gred, bfifo | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90112 | In the Linux kernel, the following vulnerability has been resolved: net: qlcnic: validate unified ROM sections before l | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90113 | In the Linux kernel, the following vulnerability has been resolved: netdevsim: update queue NAPI association on queue r | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90114 | In the Linux kernel, the following vulnerability has been resolved: net: bridge: Reject descending VLAN tunnel ranges | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90115 | In the Linux kernel, the following vulnerability has been resolved: xsk: fix NULL pointer dereference in __xsk_rcv() I | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90116 | In the Linux kernel, the following vulnerability has been resolved: ALSA: mtpav: shut down output timer before card tea | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90117 | In the Linux kernel, the following vulnerability has been resolved: ntfs: validate usa_ofs before preserving the update | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90119 | In the Linux kernel, the following vulnerability has been resolved: ALSA: ice1712: Fix the card leak at probe error wit | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90121 | In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v5: Clear per-CPU IRS data on teardown | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90122 | In the Linux kernel, the following vulnerability has been resolved: clk: visconti: Make sure clk_init_data is fully ini | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90123 | In the Linux kernel, the following vulnerability has been resolved: irqchip/ast2700-intc: Avoid allocating in the irq_d | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90124 | In the Linux kernel, the following vulnerability has been resolved: irqchip/renesas-rzg2l: Fix loss of interrupt rzg2l | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90125 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix request buffer leak in smb2_new_re | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90126 | In the Linux kernel, the following vulnerability has been resolved: rtc: pcf8563: fix clock provider leak on unbind pc | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90127 | In the Linux kernel, the following vulnerability has been resolved: virtio: rtc: time out alarm requests RTC class ope | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90128 | In the Linux kernel, the following vulnerability has been resolved: vdpa/mlx5: fix wrong list iterated in add_direct_ch | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90129 | In the Linux kernel, the following vulnerability has been resolved: virtio_balloon: quiesce balloon work before device | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90130 | In the Linux kernel, the following vulnerability has been resolved: vdpa_sim: fix cleanup after worker creation failure | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90134 | In the Linux kernel, the following vulnerability has been resolved: ntfs: fix kmap_local_page() usage in compress Seve | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90135 | In the Linux kernel, the following vulnerability has been resolved: net: add missing ref_tracker_dir_exit() to alloc_ne | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90136 | In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/hsmp: Reject negative power cap wr | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90138 | In the Linux kernel, the following vulnerability has been resolved: vsock: don't check the listener's sk_err in vsock_a | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90139 | In the Linux kernel, the following vulnerability has been resolved: fuse: check for NULL root inode in fuse_fill_super_ | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90140 | In the Linux kernel, the following vulnerability has been resolved: cuse: wait for pending RCU callbacks on module exit | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90144 | In the Linux kernel, the following vulnerability has been resolved: dpll: fix NULL deref in dpll_device_ops() during te | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90147 | In the Linux kernel, the following vulnerability has been resolved: clk: devres: fix cleanup in devm_clk_get_optional_e | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90148 | In the Linux kernel, the following vulnerability has been resolved: NFSv4: Fix incorrect argument passed to nfs4_delete | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90150 | In the Linux kernel, the following vulnerability has been resolved: pnfs/blocklayout: Fix device leaks on parse failure | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90152 | In the Linux kernel, the following vulnerability has been resolved: smb/server: fix session leak in ksmbd_session_regis | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90154 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope session state changes to bound connect | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90155 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: detach blocked lock requests before freeing | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90156 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: safely discard unregistered deferred locks | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90157 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject negative optlen in cgroup getsockopt ho | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90158 | In the Linux kernel, the following vulnerability has been resolved: m68k: nfcon: Do not call console_is_registered() in | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90159 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow bpf_{g,s}etsockopt() in cgroup UNIX g | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90160 | In the Linux kernel, the following vulnerability has been resolved: lwt_bpf: Restore reserved headroom after xmit progr | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90163 | In the Linux kernel, the following vulnerability has been resolved: smb/server: call ksmbd_proc_cleanup() on module ini | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90164 | In the Linux kernel, the following vulnerability has been resolved: smb/server: abort initialization when proc setup fa | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90165 | In the Linux kernel, the following vulnerability has been resolved: smb/server: fix invalid pointer dereference in ksmb | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90166 | In the Linux kernel, the following vulnerability has been resolved: smb/server: fix null-ptr-deref in ksmbd_ipc_tree_co | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90167 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: serialize oplock close with pending break ow | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90169 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: free preauth sessions on connection teardown | UNKNOWN | — | 16%ile | NVD | 2026-09-17 |
| CVE-2026-90170 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ipc response length before derefere | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90171 | In the Linux kernel, the following vulnerability has been resolved: smb: smbdirect: release pending child sockets outsi | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90175 | In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of ksmbd_ipc_login_request_ex | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90178 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (coretemp) Fix core_data leak on CPUs withou | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90179 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix deadlock in complain-mode change_hat | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90180 | In the Linux kernel, the following vulnerability has been resolved: block: mtip32xx: synchronize ioctls with device rem | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90181 | In the Linux kernel, the following vulnerability has been resolved: ublk: avoid teardown retry loop on xarray allocatio | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90182 | In the Linux kernel, the following vulnerability has been resolved: blk-iocost: clear delay state when freeing policy d | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90183 | In the Linux kernel, the following vulnerability has been resolved: blk-iolatency: clear delay state when freeing polic | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90184 | In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute updates with | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90185 | In the Linux kernel, the following vulnerability has been resolved: null_blk: serialize configfs attribute stores with | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90186 | In the Linux kernel, the following vulnerability has been resolved: null_blk: reject per-device queue resize for shared | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90187 | In the Linux kernel, the following vulnerability has been resolved: null_blk: free zones array on device power-off nul | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90188 | In the Linux kernel, the following vulnerability has been resolved: null_blk: free global tag_set on init error path I | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90189 | In the Linux kernel, the following vulnerability has been resolved: null_blk: register configfs subsystem after creatin | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-90190 | In the Linux kernel, the following vulnerability has been resolved: null_blk: use DEFINE_MUTEX for the file-scope mutex | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90192 | In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: handle NULL data in send_data | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90193 | In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock i | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90194 | In the Linux kernel, the following vulnerability has been resolved: ACPI: scan: fix bus ID cleanup on device_add() fail | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90195 | In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix missing sign-ext for signed 1-byte | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90196 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: validate topology volume range before al | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90197 | In the Linux kernel, the following vulnerability has been resolved: HID: haptic: don't write an uninitialized value to | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90198 | In the Linux kernel, the following vulnerability has been resolved: ALSA: core: Fix use-after-free in snd_card_do_free( | UNKNOWN | — | 13%ile | NVD | 2026-09-17 |
| CVE-2026-90200 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix integer overflow in MFT cluster valid | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90201 | In the Linux kernel, the following vulnerability has been resolved: net: page_pool: fix UAF in __page_pool_release_netm | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90202 | In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid freeing unallocated PCIe SGL b | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90206 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix max_qid race between configfs and contro | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90208 | In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/samsung_pwm: Switch to raw_spin | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90209 | In the Linux kernel, the following vulnerability has been resolved: s390/debug: Fix deadlock during unregister Unregis | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90211 | In the Linux kernel, the following vulnerability has been resolved: bpf, s390: Clear fetch destination on faulting aren | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90212 | In the Linux kernel, the following vulnerability has been resolved: arm64/efi: Avoid voluntary preemption with efi_mm i | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90213 | In the Linux kernel, the following vulnerability has been resolved: firewire: core: fix memory leak in error path of bu | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90214 | In the Linux kernel, the following vulnerability has been resolved: ASoC: xilinx: formatter_pcm: fix stream_data leak o | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90215 | In the Linux kernel, the following vulnerability has been resolved: mtd: ubi: Release device reference on busy detach | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90216 | In the Linux kernel, the following vulnerability has been resolved: ubi: Fix rollback for explicit UBI device numbers | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-90218 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Fix WARNING in res_to_rt syzbot reported | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90219 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Free debugfs on registration failure c | UNKNOWN | — | 13%ile | NVD | 2026-09-17 |
| CVE-2026-90220 | In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Don't leak the extension cell pointer in | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90221 | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: fix use of uninitialized memory in CORE_I | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90222 | In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: hold a reference to the request skb dur | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90226 | In the Linux kernel, the following vulnerability has been resolved: nfc: llcp: avoid userspace overflow on invalid optl | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90232 | In the Linux kernel, the following vulnerability has been resolved: amt: Don't support cross-netns setup. When a lower | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90233 | In the Linux kernel, the following vulnerability has been resolved: nvme-pci: release descriptor pools on probe failure | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90236 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Release the export reference when reaping ope | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90238 | In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: fix self-deadlock in isp4sd_pwron | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90239 | In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: release partial allocations in is | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90242 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix iopf_refcount leak on RID domain re | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90245 | In the Linux kernel, the following vulnerability has been resolved: fbdev: kyro: Validate overlay viewport coordinates | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90247 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix mmap_lock leak in irq_work path stack_map | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90248 | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: fix teardown of an adopted prot | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90249 | In the Linux kernel, the following vulnerability has been resolved: iio: light: gp2ap002: Fix unbalanced runtime PM on | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90250 | In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix storage null-ptr-deref after repla | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90251 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MSFT: validate evt_prefix_len against th | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90252 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: free the HCI command when it is ca | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90253 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: free the mesh send cancel command | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90254 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: free the advertising instance | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90257 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: avoid OOB read of build info | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90258 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: airoha: add missed IRQ resource helpers W | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90259 | In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix a wrong length calculation in qg | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90261 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: flush active metadata block group at | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90262 | In the Linux kernel, the following vulnerability has been resolved: btrfs: retry verity reads for not-uptodate Merkle f | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90263 | In the Linux kernel, the following vulnerability has been resolved: btrfs: check if root is readonly when setting posix | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90264 | In the Linux kernel, the following vulnerability has been resolved: btrfs: always wait for ordered extents to avoid OE | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90265 | In the Linux kernel, the following vulnerability has been resolved: btrfs: defrag: fix deadlock between defrag and dela | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90266 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: don't force read-only on transient -E | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90267 | In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix special_vec mempool leak when scsi_al | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90269 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject load-acquire from pointers requiring fa | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90270 | In the Linux kernel, the following vulnerability has been resolved: arm_mpam: Disable driver unbind to avoid UAF When | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90271 | In the Linux kernel, the following vulnerability has been resolved: arm_mpam: Fix a NULL pointer dereference on unbindi | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90272 | In the Linux kernel, the following vulnerability has been resolved: perf: arm_pmuv3: Zero initialize hw_id branch stack | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90273 | In the Linux kernel, the following vulnerability has been resolved: coresight: etm4x: missing cscfg_csdev_disable_activ | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90274 | In the Linux kernel, the following vulnerability has been resolved: coresight: etm4x: fix underflow for usage of (nrseq | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-90275 | In the Linux kernel, the following vulnerability has been resolved: md/raid1: don't set array_frozen in raid1_takeover( | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90276 | In the Linux kernel, the following vulnerability has been resolved: md/md-llbitmap: stop daemon timer rearm on destroy | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90277 | In the Linux kernel, the following vulnerability has been resolved: md/md-llbitmap: prevent create failure bitmap UAF | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90278 | In the Linux kernel, the following vulnerability has been resolved: md: wait for behind writes before destroying bitmap | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90279 | In the Linux kernel, the following vulnerability has been resolved: md/raid5: round bitmap stripes with sector division | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90280 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom: qmp-usb: Fix possible NULL-deref on earl | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90281 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom: snps-femto-v2: Fix possible NULL-deref o | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90282 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom: qmp-usb-legacy: Fix possible NULL-deref | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90283 | In the Linux kernel, the following vulnerability has been resolved: hugetlbfs: release subpool on fill_super failure h | UNKNOWN | — | 13%ile | NVD | 2026-09-17 |
| CVE-2026-90284 | In the Linux kernel, the following vulnerability has been resolved: firmware_loader: do not queue completed sysfs fallb | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90285 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Remove redundant VPD flash read in s | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90287 | In the Linux kernel, the following vulnerability has been resolved: phy: sunplus: fix error handling in sp_uphy_init() | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90290 | In the Linux kernel, the following vulnerability has been resolved: arm64: hibernate: Restore DAIF state on error Sash | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90295 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: imx6q: fix out-of-bounds write when probed | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90296 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: imx6q: fix devres accumulation across driv | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90297 | In the Linux kernel, the following vulnerability has been resolved: drm/sun4i: crtc: Propagate layer initialization err | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90298 | In the Linux kernel, the following vulnerability has been resolved: drm/sun4i: tcon: Drop TCON TOP device reference of | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90299 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix sleepable check for tracing/lsm prog When | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90300 | In the Linux kernel, the following vulnerability has been resolved: bpf: Clear buf on error in __bpf_get_task_stack Bo | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90302 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: synchronize heartbeat callbacks with o2net t | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90303 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9485/1: mm: acquire mmap write lock around sho | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90304 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9484/1: enable interrupts when unhandled user | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90305 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9483/1: select HAVE_POSIX_CPU_TIMERS_TASK_WORK | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90306 | In the Linux kernel, the following vulnerability has been resolved: ARM: 9481/2: breakpoint: CFI breakpoints only on de | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90307 | In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: fix heap information leak on a truncated | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90311 | In the Linux kernel, the following vulnerability has been resolved: thermal: hwmon: Remove hwmon class device along wit | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90313 | In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix invalid storage access after __cgr | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90314 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: fix OOB read via signed offset in rsc_t | UNKNOWN | — | 13%ile | NVD | 2026-09-17 |
| CVE-2026-90315 | In the Linux kernel, the following vulnerability has been resolved: PCI/sysfs: Add lockdown checks to legacy I/O and me | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90318 | In the Linux kernel, the following vulnerability has been resolved: fat: release buffer head after rebuilding parent f | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90319 | In the Linux kernel, the following vulnerability has been resolved: rapidio: clear mport->net when rio_add_net() fails | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90322 | In the Linux kernel, the following vulnerability has been resolved: ocfs2/cluster: keep heartbeat local node stable o2 | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90323 | In the Linux kernel, the following vulnerability has been resolved: ublk: validate auto buf reg before taking uring_cmd | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90327 | In the Linux kernel, the following vulnerability has been resolved: phonet: pep: do not write beyond optlen in getsocko | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90328 | In the Linux kernel, the following vulnerability has been resolved: HID: steam: Reject short reads Steam Controller FE | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90330 | In the Linux kernel, the following vulnerability has been resolved: HID: logitech-hidpp: Fix FF device cleanup on init | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90331 | In the Linux kernel, the following vulnerability has been resolved: HID: asus: refactor the two workqueues and init seq | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90333 | In the Linux kernel, the following vulnerability has been resolved: dm-integrity: replace forgeable discard filler with | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90334 | In the Linux kernel, the following vulnerability has been resolved: tty: clear cdev pointer after cdev_add() failure t | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90335 | In the Linux kernel, the following vulnerability has been resolved: tty: skip cdev_del() when no cdev is registered TT | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90336 | In the Linux kernel, the following vulnerability has been resolved: serial: core: clear freed pointers on uart_register | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90337 | In the Linux kernel, the following vulnerability has been resolved: serial: core: do fallible allocations before the co | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90338 | In the Linux kernel, the following vulnerability has been resolved: serial: amba-pl011: keep console clock enabled for | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90339 | In the Linux kernel, the following vulnerability has been resolved: powerpc/syscall: Fix syscall skip handling for secc | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90340 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: generic: free maps on pinctrl_generic_to_m | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90342 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix mmap_lock deadlock on arena lock failure | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90344 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: disconnect on CSA to channel 0 The | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90345 | In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: fix P2P action frame handling witho | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90346 | In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: clean up color-change beacon data on | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90348 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath10k: snoc: use memcpy_fromio() for MSA ram | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90349 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix out-of-bounds link array ac | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90350 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: reject out-of-range link ids in mt76_vi | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90351 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: do not attach hif2 WED when the | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90352 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: release hif2 reference on probe | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-90354 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: fix double hif2 init on the non | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-90355 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: clear stale link state on full | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90356 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: free vif links after clearing w | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90359 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject >8 byte return values on return-reading | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90360 | In the Linux kernel, the following vulnerability has been resolved: regulator: core: use system_freezable_wq for init c | UNKNOWN | — | 15%ile | NVD | 2026-09-17 |
| CVE-2026-90361 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix leak in ath11k_service_ready_ext_ | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90362 | In the Linux kernel, the following vulnerability has been resolved: drm/msm/dsi: Drop dev_pm_opp_set_rate(0) dev_pm_op | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90363 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: don't tear down KMS twice when KMS init fa | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90364 | In the Linux kernel, the following vulnerability has been resolved: ACPI: processor: Unregister cpufreq notifier on ini | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90365 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: cancel reset and rc work on device unre | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90366 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: reserve space for the CSA-abort | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90368 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: unwind state on add_interface f | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90369 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix out-of-bounds access in mmio copy h | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-90370 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: bound TLV walk in mt7996_mcu_ge | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90373 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: clear wcid mask under mutex aft | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90374 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate RX band_idx before der | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90375 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix non-AQL packet accounting for MLO s | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90376 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix MLD ID in MAC TXD and HIF T | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90377 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix RX data queuing of RRO 3.0 For RRO | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90378 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt792x: Fix memory leak in SDIO TX path | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-90382 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt76x02: do not WARN on invalid rx desc | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90384 | In the Linux kernel, the following vulnerability has been resolved: iomap: release the folio batch on iomap callback fa | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90385 | In the Linux kernel, the following vulnerability has been resolved: md/raid1: create serial pool adding rdev to array w | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90386 | In the Linux kernel, the following vulnerability has been resolved: i3c: dw: avoid shift-out-of-bounds when DAA assigns | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90389 | In the Linux kernel, the following vulnerability has been resolved: md: scope memalloc_noio to allocation critical sect | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90390 | In the Linux kernel, the following vulnerability has been resolved: md/bitmap: resume array on backlog_store() error pa | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90391 | In the Linux kernel, the following vulnerability has been resolved: lib/test_hmm: fail dmirror_fault() when the mirrore | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90393 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential UAF in bpf_netns_link_update_pro | UNKNOWN | — | 14%ile | NVD | 2026-09-17 |
| CVE-2026-90394 | In the Linux kernel, the following vulnerability has been resolved: power: supply: sc2731_charger: cancel work on remov | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90395 | In the Linux kernel, the following vulnerability has been resolved: power: supply: isp1704_charger: cancel work on remo | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-90396 | In the Linux kernel, the following vulnerability has been resolved: block: fix dio leak on metadata mapping error A fa | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90397 | In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: Fix NULL dereference in IRQ ha | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90400 | In the Linux kernel, the following vulnerability has been resolved: md: recheck spare changes before starting sync rem | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90404 | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_debugfs: Unregister panic | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90405 | In the Linux kernel, the following vulnerability has been resolved: media: stm32: dcmi: fix some error handling bugs in | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90406 | In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: handle runtime PM resume failure | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90409 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Add vm_bind region with kbo range over | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90410 | In the Linux kernel, the following vulnerability has been resolved: spi: davinci: switch to managed controller allocati | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90411 | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: unmap cmd_iu DMA on rsp_iu mapping failure | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90412 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix return status of RMI log page on allocat | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90415 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: free STAG index when TPT entry write fa | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-90416 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix stack out-of-bounds read in cc_param | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90417 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Fix dereg_skb leak and double free in w | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90418 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix BUG in nilfs_copy_dirty_pages() on dirt | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90420 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix infinite loop in nilfs_clean_segments() | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90421 | In the Linux kernel, the following vulnerability has been resolved: PCI: Fix UAF when probe runs concurrent to dyn ID r | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90422 | In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: pllfh: Fix IO remapping leak in regi | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90424 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Fix VINTF0 leak on the init-f | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90426 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Free the error IRQ before tea | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90428 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Don't run the error ISR befor | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90430 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Publish an LVCMDQ only after | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-90431 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: Prevent crash handling to race with rpr | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-90432 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Abort directly from the hardlockup handl | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-90433 | In the Linux kernel, the following vulnerability has been resolved: spi: oc-tiny: switch to managed controller allocati | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-90434 | In the Linux kernel, the following vulnerability has been resolved: isofs: release zisofs block pointer buffer head zi | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-92476 | In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requ | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-92477 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: debugfs: Reserve space for a string term | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92478 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate connected lane counts Th | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-92479 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: Avoid NULL CQE dereference when reportin | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-92480 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Validate string descriptors The s | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-92481 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: free EINT resources on unbind m | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-92482 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: use devm_gpiochip_add_data() for | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-92483 | In the Linux kernel, the following vulnerability has been resolved: liveupdate: Remember FLB retrieve() status LUO kee | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92484 | In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix use-after-free in find_pos_and_ways | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92486 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix CFI mismatch in task work callback BPF su | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92487 | In the Linux kernel, the following vulnerability has been resolved: exfat: fix valid_size extension over a shared writa | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-92490 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unrequest devices if driver reg | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92491 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Roll back partial protocol tabl | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92492 | In the Linux kernel, the following vulnerability has been resolved: cpufreq/amd-pstate: handle missing policy in dynami | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92493 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: amd-pstate-ut: Skip tests when amd-pstate | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92494 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix buffer_head leak in ext4_init_orphan_info | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-92495 | In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Clear VM_MAYWRITE on DBR/toggle page | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-92496 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: Avoid buffer overread in ath11k_wmi_t | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-92497 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Avoid buffer overread in ath12k_wmi_o | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92498 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: avoid buffer overreads in WMI event h | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-92499 | In the Linux kernel, the following vulnerability has been resolved: ext4: validate readdir offset before accessing dire | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92500 | In the Linux kernel, the following vulnerability has been resolved: ext4: use fsdata to track inline data write state a | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92501 | In the Linux kernel, the following vulnerability has been resolved: ext4: drain in-flight DIO before buffered write fal | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-92502 | In the Linux kernel, the following vulnerability has been resolved: ext4: clear stale xarray tags on folios skipped dur | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92503 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix ABBA deadlock in ext4_xattr_inode_cache_f | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-92505 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix undefined behavior in devid_write de | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92506 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix requested device removal ra | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92509 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix potential use after free in counter_ | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92512 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix use after free in ib_query_qp() Whe | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92513 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mana_ib: drain QP references after partial tab | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92514 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Fix CEQ tasklet use-after-free on remov | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-92515 | In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve unique-field state across nested stru | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92516 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix offset warn check for bpf_res_spin_lock S | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92517 | In the Linux kernel, the following vulnerability has been resolved: bpf, riscv: Fix extable handling for arena load_acq | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92519 | In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix memory leak in bpf_jit_free When b | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-92520 | In the Linux kernel, the following vulnerability has been resolved: bpf: Zero queue and stack outputs on lock failure | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-92521 | In the Linux kernel, the following vulnerability has been resolved: ACPI: PCI: Clear driver_data on all paths that free | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-92523 | In the Linux kernel, the following vulnerability has been resolved: RDMA/nldev: validate dynamic counter attribute leng | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-92524 | In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Prevent leak in its_vpe_irq_dom | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93038 | In the Linux kernel, the following vulnerability has been resolved: iio: dac: ad5686: missing NULL check on match data | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93040 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Serialize channel state checks | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93041 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Serialize abort state updates | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93043 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow interpreter fallback for gotox insn | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93044 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disallow interpreter fallback for arena-relate | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93047 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Associate BOs with every job that accesses | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93048 | In the Linux kernel, the following vulnerability has been resolved: mtd: part: reject MTDPART_OFS_RETAIN in mtd_add_par | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93049 | In the Linux kernel, the following vulnerability has been resolved: mtd: mtdswap: Avoid freeing registered blktrans dev | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93050 | In the Linux kernel, the following vulnerability has been resolved: ipack: ipoctal: fix UAF, null-ptr-deref, and use-af | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93051 | In the Linux kernel, the following vulnerability has been resolved: misc: ad525x_dpot: use driver core groups for sysfs | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93052 | In the Linux kernel, the following vulnerability has been resolved: misc: bcm-vk: Use acquire/release for msgq_inited | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93053 | In the Linux kernel, the following vulnerability has been resolved: speakup: keyhelp: guard letter_offsets possible out | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93055 | In the Linux kernel, the following vulnerability has been resolved: UDF symlink pathComponent header OOB read udf_syml | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93056 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_uac1_legacy: remove broken string co | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93057 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Avoid possible memory reclaim dead | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93058 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Only fini scheduler after successful init | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93059 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix task_struct reference leak in recover_ | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93060 | In the Linux kernel, the following vulnerability has been resolved: drm/msm/adreno: fix use after free on error path in | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93061 | In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Avoid stack over-read in debug output | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93062 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: guard against division by zero in iw | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93064 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix off-by-one in TXF key sanit | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93065 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix counter type in iwl_fwrt_dump_er | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93066 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Take cpa_lock around large-page collaps | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93067 | In the Linux kernel, the following vulnerability has been resolved: drm/bridge: tc358767: clamp the reported AUX read s | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93068 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix DM I2C teardown race DM I2C a | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93069 | In the Linux kernel, the following vulnerability has been resolved: OPP: Fix cleanup ordering Commit 173e02d67494 ("OP | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93071 | In the Linux kernel, the following vulnerability has been resolved: media: bcm2835-unicam: Fix asc leaked in error/remo | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93072 | In the Linux kernel, the following vulnerability has been resolved: irqchip/renesas-irqc: Fix generic interrupt chip le | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93073 | In the Linux kernel, the following vulnerability has been resolved: dax: read holder_ops once in dax_holder_notify_fail | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93075 | In the Linux kernel, the following vulnerability has been resolved: dax/fsdev: clear pgmap ops and owner on unbind fsd | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93076 | In the Linux kernel, the following vulnerability has been resolved: dax/fsdev: clear vmemmap_shift when binding static | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93077 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Clamp Get Feature output size to the | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93078 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Reject Set Features output buffer sma | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93080 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix transport device teardown l | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93081 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix SCMI device destroy lifetim | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93082 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unwind P2A receiver mailbox set | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93083 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unwind TX receiver mailbox setu | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93084 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Drop handle on protocol bind fa | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93085 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Reject out of range DT protocol | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93086 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Avoid IDR updates while cleanin | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93089 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Free transport channel on IDR f | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93090 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Clean up channels on setup fail | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93091 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Quiesce notifications before te | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93092 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Unregister device notifier befo | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93093 | In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Publish channel state before ca | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93094 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix dp_link_peer dangling references | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93096 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: Serialize multi-part Get/Set Feature | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93097 | In the Linux kernel, the following vulnerability has been resolved: cxl/mbox: Break poison list loop on an empty payloa | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93098 | In the Linux kernel, the following vulnerability has been resolved: rpmsg: glink: fix deadlock in endpoint destroy duri | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93099 | In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Fix UAF from worker threads when domain | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93100 | In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Prevent use-after-free in rdtgroup_kn_p | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93101 | In the Linux kernel, the following vulnerability has been resolved: media: v4l2-async: Unregister sub-device if asc_lis | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93102 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Free RX data on late probe failure hfi1 | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93103 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Preserve unit 0 on allocation failure h | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93104 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rvt: Return NULL after port allocation failure | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93106 | In the Linux kernel, the following vulnerability has been resolved: crash_dump: release keyring reference at the correc | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93108 | In the Linux kernel, the following vulnerability has been resolved: RDMA/ipoib: Drain RCU callbacks during module teard | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93109 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Drain RCU callbacks during module teardo | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93110 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Wait for RCU callbacks before unloading | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93113 | In the Linux kernel, the following vulnerability has been resolved: clk: qcom: camcc-sc8280xp: unregister CAMCC_GDSC_CL | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93114 | In the Linux kernel, the following vulnerability has been resolved: platform/surface: acpi-notify: Check ACPI companion | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93115 | In the Linux kernel, the following vulnerability has been resolved: platform/mellanox: mlxbf-pmc: Check ACPI_COMPANION( | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93117 | In the Linux kernel, the following vulnerability has been resolved: usb: fix UAF when probe runs concurrent to dyn ID r | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93118 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: aspeed_udc: check endpoint DMA allocat | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93119 | In the Linux kernel, the following vulnerability has been resolved: usb: ljca: bound bank_num in ljca_enumerate_gpio() | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93120 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: fix out-of-bounds read of qw | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93123 | In the Linux kernel, the following vulnerability has been resolved: serial: qcom-geni: do not advance stale DMA complet | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93124 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: asus-wireless: Fail probe when there | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93126 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom_q6v5_adsp: Fix reference leak for | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93128 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: lg-laptop: Fix LED resource handling | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93129 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-base: Fix handling of ultra | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93130 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-base: Fix resource leak on m | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93131 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-privacy: Fix race condition Acc | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93132 | In the Linux kernel, the following vulnerability has been resolved: ACPI: RISC-V: Fix riscv_acpi_add_prt_dep() loop han | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93133 | In the Linux kernel, the following vulnerability has been resolved: ACPI: RISC-V: Check acpi_get_handle() status in ris | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93134 | In the Linux kernel, the following vulnerability has been resolved: printk: Fix possible console use-after-free When e | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93135 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject programs with inlined helpers if JIT is | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93136 | In the Linux kernel, the following vulnerability has been resolved: bus: mhi: ep: Fix device refcount leak in the error | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93139 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/mes: Fix hung_queue_db_array loop limit | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93140 | In the Linux kernel, the following vulnerability has been resolved: udf: Mark LVID buffer as uptodate before marking it | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93141 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: r8a66597: avoid double free of ep0_req | UNKNOWN | — | 13%ile | NVD | 2026-09-17 |
| CVE-2026-93142 | In the Linux kernel, the following vulnerability has been resolved: thermal/drivers/rcar: Fix error checking in probe() | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93143 | In the Linux kernel, the following vulnerability has been resolved: staging: media: ipu7: fix pm_runtime refcount leak | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93145 | In the Linux kernel, the following vulnerability has been resolved: clk: qcom: gdsc: tear down per-domain genpds in gds | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93146 | In the Linux kernel, the following vulnerability has been resolved: time/namespace: Validate nanosecond field in proc_t | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93149 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: avoid NULL skb in stop queue | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93150 | In the Linux kernel, the following vulnerability has been resolved: cgroup/cpuset: Make nr_deadline_tasks an atomic_t | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93152 | In the Linux kernel, the following vulnerability has been resolved: nvme-apple: Use acquire/release for queue enabled s | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93153 | In the Linux kernel, the following vulnerability has been resolved: RDMA/bng_re: return a timeout when firmware respons | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93155 | In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Fix AEAD unregister count in erro | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93156 | In the Linux kernel, the following vulnerability has been resolved: crypto: rk3288 - fail ahash requests on HASH idle t | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93157 | In the Linux kernel, the following vulnerability has been resolved: hwrng: xilinx-trng - propagate timeout before any d | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93158 | In the Linux kernel, the following vulnerability has been resolved: crypto: sa2ul - stop probe if context pool creation | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93159 | In the Linux kernel, the following vulnerability has been resolved: crypto: atmel-sha204a - fix heap info leak on I2C t | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93160 | In the Linux kernel, the following vulnerability has been resolved: crypto: atmel-ecc - reject hardware ECDH without a | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93161 | In the Linux kernel, the following vulnerability has been resolved: crypto: qat - clear AES key schedule from stack qa | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93162 | In the Linux kernel, the following vulnerability has been resolved: crypto: qat - cancel work on re-enable SR-IOV timeo | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93163 | In the Linux kernel, the following vulnerability has been resolved: hwrng: core - fix rng list on registration error h | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93164 | In the Linux kernel, the following vulnerability has been resolved: uprobes/x86: Move optimized uprobe from nop5 to nop | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93166 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: debug: fix off by on in rtw89_ppdu_str | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93167 | In the Linux kernel, the following vulnerability has been resolved: csky: Fix a4/a5 restoration in syscall trace path | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93168 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx_dma: Fix CPU stall in xilinx_dma_ | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93169 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: zynqmp_dma: fix race between runtime PM | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93171 | In the Linux kernel, the following vulnerability has been resolved: leds: lp5860: Fix a potential double-unlock In lp5 | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93172 | In the Linux kernel, the following vulnerability has been resolved: mm/mm_init: handle alloc_percpu failure in free_are | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93173 | In the Linux kernel, the following vulnerability has been resolved: bpf,lsm: Drop bpf_prog_free from sleepable_lsm_hook | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93174 | In the Linux kernel, the following vulnerability has been resolved: bpf: Copy per-CPU map value padding in copy_map_val | UNKNOWN | — | 6%ile | NVD | 2026-09-17 |
| CVE-2026-93179 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/powerplay: fix VoltageObjectInfo zero-strid | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93180 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix NPD issue on partial unmap of an e | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93181 | In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/uncore: Fix uncore_box ref/unref ord | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-93182 | In the Linux kernel, the following vulnerability has been resolved: sched/fair: Fix overflow in update_tg_cfs_runnable( | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93183 | In the Linux kernel, the following vulnerability has been resolved: drm/lima: call drm_mm_init() with a valid allocatio | UNKNOWN | — | 12%ile | NVD | 2026-09-17 |
| CVE-2026-93184 | In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl_audmix: rework runtime PM handling in pro | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93185 | In the Linux kernel, the following vulnerability has been resolved: ASoC: rt700-sdw: always drain jack work on remove | UNKNOWN | — | 11%ile | NVD | 2026-09-17 |
| CVE-2026-93186 | In the Linux kernel, the following vulnerability has been resolved: cxl/mbox: Clamp mailbox output allocation to the pa | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93187 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-topology: Return error for invalid | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93188 | In the Linux kernel, the following vulnerability has been resolved: HID: roccat: bound device-supplied profile index k | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93191 | In the Linux kernel, the following vulnerability has been resolved: smack: fix incorrect task context in smack_msg_queu | UNKNOWN | — | 10%ile | NVD | 2026-09-17 |
| CVE-2026-93193 | In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: analogix_dp: Fix OF node reference le | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93194 | In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: dw_dp: Release core resources Core r | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93195 | In the Linux kernel, the following vulnerability has been resolved: drm/bridge: synopsys: dw-dp: Support unregistering | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93197 | In the Linux kernel, the following vulnerability has been resolved: memcg: move LRU size accounting on reparenting inst | UNKNOWN | — | 7%ile | NVD | 2026-09-17 |
| CVE-2026-93198 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate the persisted dirty_tail chain | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93199 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Do not treat master device as a duplic | UNKNOWN | — | 8%ile | NVD | 2026-09-17 |
| CVE-2026-93200 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix use-after-free of master->this sy | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93202 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix recursive locking during device re | UNKNOWN | — | 5%ile | NVD | 2026-09-17 |
| CVE-2026-93204 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: atomically update mac addresses W | UNKNOWN | — | 9%ile | NVD | 2026-09-17 |
| CVE-2026-89778 | In the Linux kernel, the following vulnerability has been resolved: isofs: fix out-of-bounds page array access on empty | CRITICAL | 9.8 | 51%ile | NVD | 2026-09-16 |
| CVE-2026-89783 | In the Linux kernel, the following vulnerability has been resolved: xfrm6: fix out-of-bounds write in xfrm6_input_addr( | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-16 |
| CVE-2026-89788 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix tree connection use-after-free in smb2_t | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-16 |
| CVE-2026-89847 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Avoid double completion in async IOC | CRITICAL | 9.8 | 51%ile | NVD | 2026-09-16 |
| CVE-2026-89857 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Hold qpair lock when sending NVMe LS | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-16 |
| CVE-2026-89969 | In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix out-of-bounds write when receiving a | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-16 |
| CVE-2026-89970 | In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: Synchronize timeout work during SQ tear | CRITICAL | 9.8 | 54%ile | NVD | 2026-09-16 |
| CVE-2026-89972 | In the Linux kernel, the following vulnerability has been resolved: nvme: add missing SRCU grace period in error path | CRITICAL | 9.8 | 47%ile | NVD | 2026-09-16 |
| CVE-2026-89990 | In the Linux kernel, the following vulnerability has been resolved: ceph: lock mutex in ceph_mds_check_access() MDS se | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-16 |
| CVE-2026-90012 | In the Linux kernel, the following vulnerability has been resolved: spi: Fix DMA mapping ownership on partial map failu | CRITICAL | 9.8 | 49%ile | NVD | 2026-09-16 |
| CVE-2026-90036 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during blocked- | CRITICAL | 9.8 | 39%ile | NVD | 2026-09-16 |
| CVE-2026-90037 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during close_lr | CRITICAL | 9.8 | 39%ile | NVD | 2026-09-16 |
| CVE-2026-90038 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during export s | CRITICAL | 9.8 | 36%ile | NVD | 2026-09-16 |
| CVE-2026-90042 | In the Linux kernel, the following vulnerability has been resolved: ceph: properly decrypt filenames in vmalloc() buffe | CRITICAL | 9.8 | 41%ile | NVD | 2026-09-16 |
| CVE-2026-90048 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create | CRITICAL | 9.8 | 42%ile | NVD | 2026-09-16 |
| CVE-2026-89775 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Handle negative S1 walk levels in VNCR | CRITICAL | 9.3 | 7%ile | NVD | 2026-09-16 |
| CVE-2026-89914 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Sign-extend VA for range-based TLBI inv | CRITICAL | 9.3 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89915 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Remove VM-wide VNCR mapping counter Th | CRITICAL | 9.3 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89916 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Make VNCR invalidation participate in M | CRITICAL | 9.3 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89918 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Correctly handle end of VA space TLBI i | CRITICAL | 9.3 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89930 | In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Service local TLB flushes on failed nest | CRITICAL | 9.3 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-90049 | In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in | CRITICAL | 9.3 | 7%ile | NVD | 2026-09-16 |
| CVE-2026-89779 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate ef->size covers the record's nam | CRITICAL | 9.1 | 51%ile | NVD | 2026-09-16 |
| CVE-2026-89786 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix out-of-bounds read in ext4_read_inline_di | CRITICAL | 9.1 | 51%ile | NVD | 2026-09-16 |
| CVE-2026-89846 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound rsp_info_len to avoid OOB sens | CRITICAL | 9.1 | 52%ile | NVD | 2026-09-16 |
| CVE-2026-90011 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Reserve a terminator byte for | CRITICAL | 9.1 | 56%ile | NVD | 2026-09-16 |
| CVE-2026-89774 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: hold sk properly in sco_conn_ready | HIGH | 8.8 | 25%ile | NVD | 2026-09-16 |
| CVE-2026-89777 | In the Linux kernel, the following vulnerability has been resolved: vfio/pci: clear vdev->msi_perm after freeing it on | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89804 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/dmem: fix mismatched DMA unmap size for | HIGH | 8.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89811 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Add TLB flush after MES queue eviction/ | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89844 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Hold vport_slock for host map update | HIGH | 8.8 | 27%ile | NVD | 2026-09-16 |
| CVE-2026-89849 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Reject non-SCSI SRB on status IOCB f | HIGH | 8.8 | 29%ile | NVD | 2026-09-16 |
| CVE-2026-89860 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Initialize NVMe abort_work once at s | HIGH | 8.8 | 27%ile | NVD | 2026-09-16 |
| CVE-2026-89898 | In the Linux kernel, the following vulnerability has been resolved: media: cec: extron-da-hd-4k-plus: add sanity check | HIGH | 8.8 | 25%ile | NVD | 2026-09-16 |
| CVE-2026-89907 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Validate MSI data before routing it | HIGH | 8.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89908 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Preserve memslot arch flags on KVM_ | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89913 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-v3: take an LPI reference in vgic_ | HIGH | 8.8 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89928 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Consume the locked rmap value in the | HIGH | 8.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89929 | In the Linux kernel, the following vulnerability has been resolved: KVM: nVM: Ensure INVVPID is emulated on the correct | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89932 | In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Always flush vpid02 on first use Make s | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89951 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix stale receive device on merged frag | HIGH | 8.8 | 28%ile | NVD | 2026-09-16 |
| CVE-2026-89957 | In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix hot-unplug skipped when last AP a | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89959 | In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix control domain removal in vfio_ap | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89960 | In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix stale pqap_hook pointer on error | HIGH | 8.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89995 | In the Linux kernel, the following vulnerability has been resolved: dma-direct: return struct page from dma_direct_allo | HIGH | 8.8 | 25%ile | NVD | 2026-09-16 |
| CVE-2026-90000 | In the Linux kernel, the following vulnerability has been resolved: HID: rmi: fix OOB access with undersized RMI report | HIGH | 8.8 | 29%ile | NVD | 2026-09-16 |
| CVE-2026-90018 | In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read / stack overflow i | HIGH | 8.8 | 38%ile | NVD | 2026-09-16 |
| CVE-2026-90041 | In the Linux kernel, the following vulnerability has been resolved: HID: sony: clean up device list on probe failure s | HIGH | 8.8 | 22%ile | NVD | 2026-09-16 |
| CVE-2026-89781 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix out-of-bounds read in read_log_rec_bu | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89782 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: reject restart table growth beyond U16_MA | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89795 | In the Linux kernel, the following vulnerability has been resolved: PCI: Allow per function PCI slots to fix slot reset | HIGH | 8.4 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89806 | In the Linux kernel, the following vulnerability has been resolved: drm/sysfb: ofdrm: Fix integer overflow in fb_size c | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89856 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Clamp MSI-X derived queue counts to | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89877 | In the Linux kernel, the following vulnerability has been resolved: media: saa7164: fix cleanup on resource allocation | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89885 | In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: Fix SCP device refcounti | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89904 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix acpi_package_ids[] array overflow W | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89943 | In the Linux kernel, the following vulnerability has been resolved: ASoC: loongson: Fix error handling in ACPI property | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89980 | In the Linux kernel, the following vulnerability has been resolved: ALSA: harmony: initialize locks before requesting I | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89992 | In the Linux kernel, the following vulnerability has been resolved: cpuidle: dt_idle_genpd: kfree() the original name a | HIGH | 8.4 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89973 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: check the data direction of a C2HData PDU | HIGH | 8.2 | 48%ile | NVD | 2026-09-16 |
| CVE-2026-89848 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Quiesce response IRQ before freeing | HIGH | 8.1 | 42%ile | NVD | 2026-09-16 |
| CVE-2026-89861 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Hold vport reference in qla24xx_repo | HIGH | 8.1 | 46%ile | NVD | 2026-09-16 |
| CVE-2026-89999 | In the Linux kernel, the following vulnerability has been resolved: HID: wacom: validate report length in wacom_intuos_ | HIGH | 8.1 | 30%ile | NVD | 2026-09-16 |
| CVE-2026-89947 | In the Linux kernel, the following vulnerability has been resolved: clk: meson: align gxbb_32k_clk_sel number of parent | HIGH | 8.0 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89954 | In the Linux kernel, the following vulnerability has been resolved: mtd: afs: validate v2 image info bounds The AFS v2 | HIGH | 8.0 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89911 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Correctly cap TLBI Range to the architu | HIGH | 7.9 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89789 | In the Linux kernel, the following vulnerability has been resolved: gtp: add synchronize_net() in gtp_newlink() error p | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89791 | In the Linux kernel, the following vulnerability has been resolved: perf: Fix use-after-free when perf mmap() revival r | HIGH | 7.8 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-89793 | In the Linux kernel, the following vulnerability has been resolved: ublk: clear VM_MAYWRITE on read-only ublk char devi | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89799 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disable preemption in bpf_get_stackid The get | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89801 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/uvmm: fix premature region free on fail | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89803 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: unsubscribe the channel-kill event bef | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89805 | In the Linux kernel, the following vulnerability has been resolved: drm/pagemap: Fix folio allocation fallback and use- | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89808 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix the case that vm range is hole at s | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89810 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix error path at svm_migrate_copy_to_r | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89814 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: clamp the isolation index for rings out | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89815 | In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Drop tt->restore after successful restore | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89819 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: validate plane degamma LUT size fo | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89823 | In the Linux kernel, the following vulnerability has been resolved: drm: fix race between partial drm_dev_register() fa | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89825 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: fix firmware control interface bounds | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89829 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to pass folio->index to f2fs_sanity_check | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89832 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to clear dirty flag on folio in error pat | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89836 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix folio_nr_pages() race after put in large | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89841 | In the Linux kernel, the following vulnerability has been resolved: f2fs: only redirty pinned folios in redirty_blocks | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89854 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix cs84xx use-after-free on host te | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89870 | In the Linux kernel, the following vulnerability has been resolved: media: zoran: Avoid freeing a registered video_devi | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89873 | In the Linux kernel, the following vulnerability has been resolved: media: v4l2-ctrls: validate HEVC EXT SPS RPS counts | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89875 | In the Linux kernel, the following vulnerability has been resolved: media: ti: vpe: quiesce overflow recovery before fr | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89880 | In the Linux kernel, the following vulnerability has been resolved: media: rtl2832_sdr: release URBs and stream buffers | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89882 | In the Linux kernel, the following vulnerability has been resolved: media: rkvdec: hevc: guard INTER_REF_PIC_SET_PRED i | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89883 | In the Linux kernel, the following vulnerability has been resolved: media: rc: sunxi-cir: Unregister rc device on probe | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89887 | In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov7740: fix use-after-destroy in remove | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89888 | In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov02a10: fix endpoint parsing use-after | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89890 | In the Linux kernel, the following vulnerability has been resolved: media: go7007: defer the ALSA v4l2 put until card r | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89893 | In the Linux kernel, the following vulnerability has been resolved: media: cx23885: cancel NetUP CI work before teardow | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89894 | In the Linux kernel, the following vulnerability has been resolved: media: cx231xx: reject geometry changes while the V | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89899 | In the Linux kernel, the following vulnerability has been resolved: media: cec: disable delayed work before freeing an | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89902 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: Avoid preempt count underflow without pr | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89903 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: Do not save/restore percpu base register | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89906 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Refactor jump offset calculation in | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89919 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: keyop: use mmu_lock to read gmap->asce | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89920 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix memory corruption by not reinjecting | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89922 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Take srcu when importing watchpoint data | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89938 | In the Linux kernel, the following vulnerability has been resolved: iio: chemical: atlas-sensor: use iio_trigger_poll_n | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89940 | In the Linux kernel, the following vulnerability has been resolved: iio: buffer: Tie IIO dma fence lock lifetime to the | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89941 | In the Linux kernel, the following vulnerability has been resolved: iio: buffer: Make IIO DMA fence release RCU-safe T | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89942 | In the Linux kernel, the following vulnerability has been resolved: iio: buffer: Fix potential use-after-free in anonym | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89961 | In the Linux kernel, the following vulnerability has been resolved: powerpc/mm: fix wrong addr_pfn tracking in compound | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89965 | In the Linux kernel, the following vulnerability has been resolved: nvdimm/btt: reject an arena whose nfree is below th | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89967 | In the Linux kernel, the following vulnerability has been resolved: mm/migrate_device: avoid out-of-bounds writes for c | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89979 | In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race between non-atomic ops and trig | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89985 | In the Linux kernel, the following vulnerability has been resolved: memcg: keep folio's objcg same as its node memcg_r | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89986 | In the Linux kernel, the following vulnerability has been resolved: mm/mempolicy: fix sleeping allocation in alloc_page | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89988 | In the Linux kernel, the following vulnerability has been resolved: kprobes: Protect kprobe_blacklist with RCU __withi | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89994 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-edma: tracing: no ptr dereference du | HIGH | 7.8 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89997 | In the Linux kernel, the following vulnerability has been resolved: dm: fix resume-vs-remove race If the user issues t | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89998 | In the Linux kernel, the following vulnerability has been resolved: dm: fix race when loading and unloading a table If | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-90001 | In the Linux kernel, the following vulnerability has been resolved: HID: bpf: serialize device reference release in str | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-90002 | In the Linux kernel, the following vulnerability has been resolved: ftrace: Take trace_array reference before accessing | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90003 | In the Linux kernel, the following vulnerability has been resolved: futex: Prevent rcuwait use-after-free during requeu | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-90007 | In the Linux kernel, the following vulnerability has been resolved: scsi: pm8001: Use rollback index when freeing MSI-X | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-90008 | In the Linux kernel, the following vulnerability has been resolved: scsi: megaraid_sas: Limit NVMe request size to the | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-90009 | In the Linux kernel, the following vulnerability has been resolved: scsi: bsg: Fix TOCTOU in io_uring passthrough comma | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90010 | In the Linux kernel, the following vulnerability has been resolved: scsi: bsg: Cap io_uring sense copy to max_response_ | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90013 | In the Linux kernel, the following vulnerability has been resolved: tracing: Take trace_array reference when opening op | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90014 | In the Linux kernel, the following vulnerability has been resolved: tracing: Have show_event_filters/triggers files tak | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90022 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_midi2: fix use-after-free in string | HIGH | 7.8 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-90026 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: qcom-pmic: cancel reset_work on stop p | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90027 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: qcom-pmic-typec: disable cc_debounce_dw | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90030 | In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: clear forceRM when issuing EndTransfer | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90032 | In the Linux kernel, the following vulnerability has been resolved: media: usbtv: keep device alive while ALSA card exi | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90043 | In the Linux kernel, the following vulnerability has been resolved: zram: fix slot lock bit position on big-endian 64-b | HIGH | 7.8 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-90044 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix Use-After-Free in AIO error | HIGH | 7.8 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-90045 | In the Linux kernel, the following vulnerability has been resolved: USB: gadget: ffs: fix mm lifetime handling io_data | HIGH | 7.8 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-90046 | In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: don't spin_trylock() in NMI on UP P | HIGH | 7.8 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-90047 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't hand out the flat CCS storage as usab | HIGH | 7.8 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-90025 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix OOB altmode arra | HIGH | 7.7 | 7%ile | NVD | 2026-09-16 |
| CVE-2026-89863 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: edif: Fix NULL pointer deref in RX S | HIGH | 7.5 | 50%ile | NVD | 2026-09-16 |
| CVE-2026-89897 | In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery | HIGH | 7.5 | 23%ile | NVD | 2026-09-16 |
| CVE-2026-89968 | In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: reject unsolicited H2CData PDUs nvmet_t | HIGH | 7.5 | 55%ile | NVD | 2026-09-16 |
| CVE-2026-89971 | In the Linux kernel, the following vulnerability has been resolved: nvme: skip the zoned limits update if the zone info | HIGH | 7.5 | 46%ile | NVD | 2026-09-16 |
| CVE-2026-89974 | In the Linux kernel, the following vulnerability has been resolved: nvme-fc: fix double free of fabrics options when nv | HIGH | 7.5 | 22%ile | NVD | 2026-09-16 |
| CVE-2026-89910 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Fix uninitialized stack variable is | HIGH | 7.3 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-89792 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent out-of-bounds reads in share config | HIGH | 7.1 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-89818 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn: fix integer overflow in dec_msg buf | HIGH | 7.1 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-89826 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: harden firmware build-info bounds chec | HIGH | 7.1 | 5%ile | NVD | 2026-09-16 |
| CVE-2026-89838 | In the Linux kernel, the following vulnerability has been resolved: f2fs: limit recovery filename logging to stored len | HIGH | 7.1 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-89840 | In the Linux kernel, the following vulnerability has been resolved: f2fs: validate MOVE_RANGE destination size F2FS_IO | HIGH | 7.1 | 4%ile | NVD | 2026-09-16 |
| CVE-2026-89912 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Don't dereference a NULL coll | HIGH | 7.1 | 7%ile | NVD | 2026-09-16 |
| CVE-2026-89927 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: hyper-v: Clamp stimer deadline to avoid l | HIGH | 7.1 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-90016 | In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in rtw_restruct_wm | HIGH | 7.1 | 23%ile | NVD | 2026-09-16 |
| CVE-2026-90017 | In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB read in rtw_action_fram | HIGH | 7.1 | 29%ile | NVD | 2026-09-16 |
| CVE-2026-89776 | In the Linux kernel, the following vulnerability has been resolved: vxlan: vnifilter: enforce exact length of GROUP/GRO | UNKNOWN | — | 11%ile | NVD | 2026-09-16 |
| CVE-2026-89780 | In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: restore skb->dev on deaggrega | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89790 | In the Linux kernel, the following vulnerability has been resolved: ipv6: avoid divide by zero in rt6_multipath_rebalan | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89794 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: zero pipe read compound padding Compound re | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89798 | In the Linux kernel, the following vulnerability has been resolved: rpcrdma: arm rn_done before publishing the notifica | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89807 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: guard against NULL restore_mqd in CRIU | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89820 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix dc_lock leak on GPU reset erro | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89824 | In the Linux kernel, the following vulnerability has been resolved: drm/panel-edp: fix i2c adapter leak on probe failur | UNKNOWN | — | 11%ile | NVD | 2026-09-16 |
| CVE-2026-89827 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid force-completing uninitialized UV | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89828 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix init ordering in amdgpu_vram_mgr_in | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89830 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix valid block count leak on data block allo | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89831 | In the Linux kernel, the following vulnerability has been resolved: f2fs: protect critical_task_priority updates with s | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89834 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to migrate all curseg types during free_s | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89835 | In the Linux kernel, the following vulnerability has been resolved: f2fs: avoid NULL checkpoint thread access in sysfs | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89851 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix FCE trace enable parsing in debu | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89855 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Serialize flash version read in rese | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89866 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Resume device before set | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89867 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Defer job_finish() only | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89868 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Add timeout while stop_s | UNKNOWN | — | 8%ile | NVD | 2026-09-16 |
| CVE-2026-89869 | In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: use disable_irq() during power-o | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89876 | In the Linux kernel, the following vulnerability has been resolved: media: tda18250: fix possible integer overflow Int | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89886 | In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: fix async notifier cleanup leak | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89889 | In the Linux kernel, the following vulnerability has been resolved: media: i2c: imx415: Release runtime PM reference on | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89895 | In the Linux kernel, the following vulnerability has been resolved: media: cobalt: Avoid freeing ALSA private data twic | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89905 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Move arena register slot below TCC | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89909 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Free init resources if kvm_init() f | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89917 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Handle VNCR TLB invalidation race with | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89921 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Zero initialize data structures for inje | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89925 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix memory leak in guest debug handling | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89926 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix length check __import_wp_info() str | UNKNOWN | — | 11%ile | NVD | 2026-09-16 |
| CVE-2026-89931 | In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Ensure KVM_REQ_GET_NESTED_STATE_PAGES is | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89935 | In the Linux kernel, the following vulnerability has been resolved: iio: light: apds9306: fix PM reference leak in apds | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89936 | In the Linux kernel, the following vulnerability has been resolved: iio: dac: m62332: Fix regulator reference count imb | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89944 | In the Linux kernel, the following vulnerability has been resolved: ASoC: hdac_hda: Fix hlink refcount leak on componen | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89949 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: avoid unaligned fault in IP extrac | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89950 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: mcast: linearize skbuff for packet gene | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89958 | In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: Fix dereference matrix_mdev->kvm with | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89963 | In the Linux kernel, the following vulnerability has been resolved: powerpc/kexec_file: Fix null-ptr-def in extra size | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89964 | In the Linux kernel, the following vulnerability has been resolved: parisc: eisa: Fix infinite loop when parsing invali | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-89966 | In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb_cma: fix null nodemask dereference in hu | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89976 | In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: fix job completion fence cleanup eth | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89977 | In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: check MMIO mapping errors in probe d | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89978 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: return early from a zero-length flus | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89981 | In the Linux kernel, the following vulnerability has been resolved: arm64: Don't read GMID_EL1 when MTE is disabled __ | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-89983 | In the Linux kernel, the following vulnerability has been resolved: i2c: core: fix debugfs UAF on adapter removal i2c_ | UNKNOWN | — | 11%ile | NVD | 2026-09-16 |
| CVE-2026-89991 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix infinite loop in pcpu_freelist push with o | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-89996 | In the Linux kernel, the following vulnerability has been resolved: dma-buf: dma-heap: don't publish fd before copy_to_ | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-90004 | In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: handle region split failure in apply | UNKNOWN | — | 9%ile | NVD | 2026-09-16 |
| CVE-2026-90005 | In the Linux kernel, the following vulnerability has been resolved: samples/damon/wsse: handle damon_start() failure P | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-90006 | In the Linux kernel, the following vulnerability has been resolved: samples/damon/mtier: handle damon_stop() failure d | UNKNOWN | — | 12%ile | NVD | 2026-09-16 |
| CVE-2026-90021 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_midi: initialize work in f_midi_allo | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-90028 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: hd3ss3220: track VBUS enable state per | UNKNOWN | — | 8%ile | NVD | 2026-09-16 |
| CVE-2026-90029 | In the Linux kernel, the following vulnerability has been resolved: usb: storage: realtek_cr: fix use-after-free on dis | UNKNOWN | — | 8%ile | NVD | 2026-09-16 |
| CVE-2026-90034 | In the Linux kernel, the following vulnerability has been resolved: usb: image: mdc800: change kmalloc() to kzalloc() | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-90039 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Guard admin state-revocation walks with NFSD_ | UNKNOWN | — | 8%ile | NVD | 2026-09-16 |
| CVE-2026-90040 | In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Forcefully invalidate SNP VMSA if its bac | UNKNOWN | — | 10%ile | NVD | 2026-09-16 |
| CVE-2026-80926 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in oplock break notificat | CRITICAL | 9.8 | 37%ile | NVD | 2026-09-11 |
| CVE-2026-80976 | In the Linux kernel, the following vulnerability has been resolved: seg6: reset IP6CB after IPv6 decapsulation decap_a | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-80980 | In the Linux kernel, the following vulnerability has been resolved: net/smc: stop killed, freed and out_of_sync sharing | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-80981 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix use-after-free of the LLC qentry in sm | CRITICAL | 9.8 | 47%ile | NVD | 2026-09-11 |
| CVE-2026-80986 | In the Linux kernel, the following vulnerability has been resolved: net/smc: bound the peer rkey counts in SMC-Rv2 LLC | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-81002 | In the Linux kernel, the following vulnerability has been resolved: xdp: fix zero-copy frame layout xdp_convert_zc_to_ | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89478 | In the Linux kernel, the following vulnerability has been resolved: sctp: drop a chunk if its transport was removed sc | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89479 | In the Linux kernel, the following vulnerability has been resolved: sctp: stop processing a packet once its association | CRITICAL | 9.8 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89482 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: do not accept C2HData based on blk_rq_pay | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89485 | In the Linux kernel, the following vulnerability has been resolved: lockd: pin next file across nlm_inspect_file lock-d | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89492 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate directory-index entry counts when r | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89494 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate lengths in dlm_mig_lockres_handler | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89495 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: bound namelen in dlm_migrate_request_handler | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89526 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Validate Read chunk positions before recon | CRITICAL | 9.8 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89530 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject inline replies that overflow the pu | CRITICAL | 9.8 | 39%ile | NVD | 2026-09-11 |
| CVE-2026-89533 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix offset arithmetic in read_chunk_range | CRITICAL | 9.8 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89536 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: wait for in-flight client TLS handshake cal | CRITICAL | 9.8 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89538 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Reject krb5 v2 wrap tokens with oversized e | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89541 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: harden gss_unwrap_resp_priv length checks | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89542 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: harden gss_krb5_unwrap_v2 against short tok | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89546 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: close backchannel before destroying callbac | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89550 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: svcauth_gss: enforce krb5 token minimum len | CRITICAL | 9.8 | 39%ile | NVD | 2026-09-11 |
| CVE-2026-89551 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: xdr_buf_trim: clamp buf->len to avoid under | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89555 | In the Linux kernel, the following vulnerability has been resolved: mpls: reload header after pskb_may_pull() mpls_sel | CRITICAL | 9.8 | 51%ile | NVD | 2026-09-11 |
| CVE-2026-89558 | In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix still_degraded being inverted in rai | CRITICAL | 9.8 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89610 | In the Linux kernel, the following vulnerability has been resolved: ntfs: verify run length exceeding volume boundary | CRITICAL | 9.8 | 45%ile | NVD | 2026-09-11 |
| CVE-2026-89611 | In the Linux kernel, the following vulnerability has been resolved: ntfs: validate non-resident attribute offsets ntfs | CRITICAL | 9.8 | 32%ile | NVD | 2026-09-11 |
| CVE-2026-89612 | In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid MFT LCNs from boot sector The | CRITICAL | 9.8 | 45%ile | NVD | 2026-09-11 |
| CVE-2026-89613 | In the Linux kernel, the following vulnerability has been resolved: ntfs: reject invalid empty mapping pairs Reject an | CRITICAL | 9.8 | 45%ile | NVD | 2026-09-11 |
| CVE-2026-89614 | In the Linux kernel, the following vulnerability has been resolved: ntfs: bound the free-cluster bitmap scan to the vol | CRITICAL | 9.8 | 35%ile | NVD | 2026-09-11 |
| CVE-2026-89633 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read/write from unvalidated Da | CRITICAL | 9.8 | 41%ile | NVD | 2026-09-11 |
| CVE-2026-89635 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: only rebind the reopened file's own oplock o | CRITICAL | 9.8 | 45%ile | NVD | 2026-09-11 |
| CVE-2026-89636 | In the Linux kernel, the following vulnerability has been resolved: smb: client: clear ce->tgthint in free_tgts() When | CRITICAL | 9.8 | 50%ile | NVD | 2026-09-11 |
| CVE-2026-89637 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF and buffer leak in cifs_check_ | CRITICAL | 9.8 | 47%ile | NVD | 2026-09-11 |
| CVE-2026-89643 | In the Linux kernel, the following vulnerability has been resolved: audit: avoid dropping live tree ref on fsnotify rul | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89651 | In the Linux kernel, the following vulnerability has been resolved: ceph: bound MDSCapAuth path and fs_name decode in h | CRITICAL | 9.8 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89652 | In the Linux kernel, the following vulnerability has been resolved: ceph: bound copied dentry name length in NFS export | CRITICAL | 9.8 | 39%ile | NVD | 2026-09-11 |
| CVE-2026-89653 | In the Linux kernel, the following vulnerability has been resolved: ceph: reject export_targets ranks >= CEPH_MAX_MDS i | CRITICAL | 9.8 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89654 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix UAF in check_new_map() on session freed d | CRITICAL | 9.8 | 35%ile | NVD | 2026-09-11 |
| CVE-2026-89655 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix UAF in __kick_flushing_caps() on cf entry | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89656 | In the Linux kernel, the following vulnerability has been resolved: libceph: reject buckets with mismatched CRUSH ids | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89658 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during NFSv4.0 | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89659 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during delegati | CRITICAL | 9.8 | 37%ile | NVD | 2026-09-11 |
| CVE-2026-89660 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent client use-after-free during admin st | CRITICAL | 9.8 | 47%ile | NVD | 2026-09-11 |
| CVE-2026-89662 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent lock owner use-after-free during clie | CRITICAL | 9.8 | 51%ile | NVD | 2026-09-11 |
| CVE-2026-89669 | In the Linux kernel, the following vulnerability has been resolved: nfsd: initialize copy-notify stateid before publish | CRITICAL | 9.8 | 51%ile | NVD | 2026-09-11 |
| CVE-2026-89674 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix XDR length calculation in nfsd4_ff_encode | CRITICAL | 9.8 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89675 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix UAF in async copy cancel and shutdown An | CRITICAL | 9.8 | 38%ile | NVD | 2026-09-11 |
| CVE-2026-89676 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix stale s2s_cp_stateids IDR entry for async | CRITICAL | 9.8 | 38%ile | NVD | 2026-09-11 |
| CVE-2026-89677 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix possible fh_compose of wrong dentry in nf | CRITICAL | 9.8 | 35%ile | NVD | 2026-09-11 |
| CVE-2026-89681 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix layout fence worker double-reference race | CRITICAL | 9.8 | 32%ile | NVD | 2026-09-11 |
| CVE-2026-89686 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix BUG_ON in nfsd4_alloc_layout_stateid on r | CRITICAL | 9.8 | 50%ile | NVD | 2026-09-11 |
| CVE-2026-89688 | In the Linux kernel, the following vulnerability has been resolved: nfsd: drop the stateid, not the stateowner, on seqi | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89689 | In the Linux kernel, the following vulnerability has been resolved: nfsd: don't free session slots that are still in us | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89702 | In the Linux kernel, the following vulnerability has been resolved: nfsd: size fh_verify server sockaddr slot by xpt_lo | CRITICAL | 9.8 | 39%ile | NVD | 2026-09-11 |
| CVE-2026-89703 | In the Linux kernel, the following vulnerability has been resolved: nfsd: set SC_STATUS_FREED in nfsd4_drop_revoked_sti | CRITICAL | 9.8 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89708 | In the Linux kernel, the following vulnerability has been resolved: nfsd: RCU-protect cl_cb_session to fix use-after-fr | CRITICAL | 9.8 | 37%ile | NVD | 2026-09-11 |
| CVE-2026-89712 | In the Linux kernel, the following vulnerability has been resolved: NFSD: restart ssc_expire_umount walk after dropping | CRITICAL | 9.8 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89448 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Force requesting ACS when tboot is enab | CRITICAL | 9.3 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-80945 | In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - unmap dst before software fallback on | CRITICAL | 9.1 | 40%ile | NVD | 2026-09-11 |
| CVE-2026-89532 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Fix pcl_for_each_segment for empty chunks | CRITICAL | 9.1 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89537 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Reject short RFC 4121 MIC tokens in gss_krb | CRITICAL | 9.1 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89630 | In the Linux kernel, the following vulnerability has been resolved: smb: client: restore the data_offset bound in is_va | CRITICAL | 9.1 | 34%ile | NVD | 2026-09-11 |
| CVE-2026-89631 | In the Linux kernel, the following vulnerability has been resolved: smb: client: reject a tree connect response whose b | CRITICAL | 9.1 | 38%ile | NVD | 2026-09-11 |
| CVE-2026-89634 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix ALIGN() overflow in symlink_data() | CRITICAL | 9.1 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89649 | In the Linux kernel, the following vulnerability has been resolved: ceph: bound xattr value length in __build_xattrs() | CRITICAL | 9.1 | 50%ile | NVD | 2026-09-11 |
| CVE-2026-89650 | In the Linux kernel, the following vulnerability has been resolved: ceph: bound num_export_targets array for mds info v | CRITICAL | 9.1 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89671 | In the Linux kernel, the following vulnerability has been resolved: nfsd: gate nfs3 setacl by argp->mask nfsd3_proc_se | CRITICAL | 9.1 | 41%ile | NVD | 2026-09-11 |
| CVE-2026-89672 | In the Linux kernel, the following vulnerability has been resolved: nfsd: gate nfs2 setacl by argp->mask The NFSACL v2 | CRITICAL | 9.1 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89697 | In the Linux kernel, the following vulnerability has been resolved: nfsd: add fh_want_write() for early-verified SETATT | CRITICAL | 9.1 | 51%ile | NVD | 2026-09-11 |
| CVE-2026-89713 | In the Linux kernel, the following vulnerability has been resolved: NFSD: check truncate permission under inode lock n | CRITICAL | 9.1 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-80935 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: bound the device EEPROM address | HIGH | 8.8 | 16%ile | NVD | 2026-09-11 |
| CVE-2026-80937 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: bound the device EEPROM address | HIGH | 8.8 | 25%ile | NVD | 2026-09-11 |
| CVE-2026-80989 | In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: Mark the connection down when bri | HIGH | 8.8 | 27%ile | NVD | 2026-09-11 |
| CVE-2026-89445 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix UAF in selftest IOPF reporting IOMMUF | HIGH | 8.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89450 | In the Linux kernel, the following vulnerability has been resolved: iommu/tegra241-cmdqv: Reject a vSID wider than the | HIGH | 8.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89493 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate rl_used against rl_count in refcoun | HIGH | 8.8 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89513 | In the Linux kernel, the following vulnerability has been resolved: RISC-V: KVM: Fix PMU event info array size overflow | HIGH | 8.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89534 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Clear sc_cm_id when ADDR_CHANGE replacemen | HIGH | 8.8 | 13%ile | NVD | 2026-09-11 |
| CVE-2026-89569 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: serialize security confirmation | HIGH | 8.8 | 28%ile | NVD | 2026-09-11 |
| CVE-2026-89601 | In the Linux kernel, the following vulnerability has been resolved: ext2: Fix lost inode updates for IS_SYNC inodes ex | HIGH | 8.8 | 28%ile | NVD | 2026-09-11 |
| CVE-2026-89626 | In the Linux kernel, the following vulnerability has been resolved: HID: sensor: custom: Fix field sysfs group cleanup | HIGH | 8.8 | 29%ile | NVD | 2026-09-11 |
| CVE-2026-89663 | In the Linux kernel, the following vulnerability has been resolved: nfsd: revoke copy-notify stateids before dropping t | HIGH | 8.8 | 39%ile | NVD | 2026-09-11 |
| CVE-2026-89725 | In the Linux kernel, the following vulnerability has been resolved: media: cec: stm32: prevent out-of-bounds write on R | HIGH | 8.8 | 19%ile | NVD | 2026-09-11 |
| CVE-2026-89729 | In the Linux kernel, the following vulnerability has been resolved: HID: sensor-hub: Fix out-of-bounds write in sensor_ | HIGH | 8.8 | 29%ile | NVD | 2026-09-11 |
| CVE-2026-80932 | In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: flush works in dependency order virt | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-80953 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: adi: initialize the lock before enabli | HIGH | 8.4 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-80967 | In the Linux kernel, the following vulnerability has been resolved: ALSA: pcxhr: initialize mutexes before requesting t | HIGH | 8.4 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-81004 | In the Linux kernel, the following vulnerability has been resolved: ipmi:msghandler: Cancel work cleanly on an error I | HIGH | 8.4 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-81012 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: fix off-by-one write in h | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-81017 | In the Linux kernel, the following vulnerability has been resolved: platform/chrome: sensorhub: Bound the EC-reported s | HIGH | 8.4 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89452 | In the Linux kernel, the following vulnerability has been resolved: iommu/msm: Unwind probe state on registration failu | HIGH | 8.4 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89465 | In the Linux kernel, the following vulnerability has been resolved: power: supply: rt9455: quiesce delayed work before | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89469 | In the Linux kernel, the following vulnerability has been resolved: power: supply: lp8727: fix use-after-free in lp8727 | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89470 | In the Linux kernel, the following vulnerability has been resolved: power: supply: cros_usbpd: Limit port counts to EC_ | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89471 | In the Linux kernel, the following vulnerability has been resolved: power: supply: cros_usbpd-charger: bound the EC-rep | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89504 | In the Linux kernel, the following vulnerability has been resolved: regulator: as3722_get_regulator_dt_data: fix premat | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89560 | In the Linux kernel, the following vulnerability has been resolved: landlock: Require LANDLOCK_ACCESS_FS_MAKE_REG for w | HIGH | 8.4 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89588 | In the Linux kernel, the following vulnerability has been resolved: ACPI: APEI: GHES: fix ARM section length accounting | HIGH | 8.4 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89599 | In the Linux kernel, the following vulnerability has been resolved: fbdev: omapfb: panel-dsi-cm: initialize lock before | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89603 | In the Linux kernel, the following vulnerability has been resolved: entry: Fix seccomp bypass after ptrace with TSYNC | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89615 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound page_lcns[] index by the log record | HIGH | 8.4 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89744 | In the Linux kernel, the following vulnerability has been resolved: device property: fix infinite loop in fwnode_for_ea | HIGH | 8.4 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-80985 | In the Linux kernel, the following vulnerability has been resolved: net/smc: carry oversized SMC-Rv2 LLC messages in th | HIGH | 8.2 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89554 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix uninitialized local_id in syncookie MP_J | HIGH | 8.2 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89586 | In the Linux kernel, the following vulnerability has been resolved: ata: libata-scsi: fix DSM TRIM for sector sizes lar | HIGH | 8.2 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89632 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-before-check of ReparseDataLen | HIGH | 8.2 | 25%ile | NVD | 2026-09-11 |
| CVE-2026-89665 | In the Linux kernel, the following vulnerability has been resolved: nfsd: reject out-of-range useconds in NFSv2 SETATTR | HIGH | 8.2 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89711 | In the Linux kernel, the following vulnerability has been resolved: NFSD: remove flawed WARN_ON_ONCE from nfsd_mode_che | HIGH | 8.2 | 38%ile | NVD | 2026-09-11 |
| CVE-2026-81003 | In the Linux kernel, the following vulnerability has been resolved: net/iucv: filter frames in afiucv_hs_rcv() by ingre | HIGH | 8.1 | 24%ile | NVD | 2026-09-11 |
| CVE-2026-89524 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath6kl: clamp assoc request/response lengths | HIGH | 8.1 | 20%ile | NVD | 2026-09-11 |
| CVE-2026-89535 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reorder rpcrdma_rn_unregister before rdma_ | HIGH | 8.1 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89547 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Check svc pool percpu counter allocation _ | HIGH | 8.1 | 46%ile | NVD | 2026-09-11 |
| CVE-2026-89583 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix OOB read in eir_get_service_dat | HIGH | 8.1 | 20%ile | NVD | 2026-09-11 |
| CVE-2026-89667 | In the Linux kernel, the following vulnerability has been resolved: nfsd: close shrinker/GC/fsnotify vs per-net shutdow | HIGH | 8.1 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89682 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix fcache_disposal UAF by inlining dispose s | HIGH | 8.1 | 34%ile | NVD | 2026-09-11 |
| CVE-2026-89709 | In the Linux kernel, the following vulnerability has been resolved: lockd, nfsd: RCU-protect nlmsvc_ops dispatch nlmsv | HIGH | 8.1 | 26%ile | NVD | 2026-09-11 |
| CVE-2026-80928 | In the Linux kernel, the following vulnerability has been resolved: smack: fix cred UAF in smack_file_send_sigiotask() | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80929 | In the Linux kernel, the following vulnerability has been resolved: sysctl: move the "cad_pid" entry from pid_table[] t | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80931 | In the Linux kernel, the following vulnerability has been resolved: w1: ds28e17: reject an oversize length on an I2C bl | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80933 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: validate default EEPROM firmwar | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80936 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: cancel mlo_pm_work on stop mt7 | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80944 | In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: Detach sync cmd buffer on interrupte | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80947 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtl8xxxu: fix use-after-free from rx_urb_wq o | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80950 | In the Linux kernel, the following vulnerability has been resolved: i3c: renesas: Check that the transfer is valid befo | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80952 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix info leak and UAF in device unregi | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80954 | In the Linux kernel, the following vulnerability has been resolved: i3c: Fix unlocked dereference of dev->desc in i3c_d | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-80955 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: fix use-after-free and invalid seg opera | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-80959 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: bound the persisted tail-position offset | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80961 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate kset key_num and intra-segment | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80962 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate geometry fields from on-disk ca | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80971 | In the Linux kernel, the following vulnerability has been resolved: ALSA: bcd2000: clear the URB pointers on disconnect | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80975 | In the Linux kernel, the following vulnerability has been resolved: mfd: qnap-mcu: keep the reply buffer alive past a c | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80977 | In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't touch shared zerocopy state in s | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80978 | In the Linux kernel, the following vulnerability has been resolved: net: cap advertised IP tunnel headroom IP tunnel d | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80979 | In the Linux kernel, the following vulnerability has been resolved: net/smc: unregister the connection before draining | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-80982 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix use-after-free in smc_rx_pipe_buf_rele | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80991 | In the Linux kernel, the following vulnerability has been resolved: net: ravb: serialize PTP clock teardown ravb_ptp_i | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80992 | In the Linux kernel, the following vulnerability has been resolved: net: ravb: avoid dereferencing an invalid PTP clock | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80994 | In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix flow mask use-after-free on f | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80995 | In the Linux kernel, the following vulnerability has been resolved: net: mctp: hold a reference to the route device in | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-81000 | In the Linux kernel, the following vulnerability has been resolved: net: tun: bound receive headroom tun_get_user() us | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-81001 | In the Linux kernel, the following vulnerability has been resolved: slip: fix use-after-free in sl_sync() slip_devs[] | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-81006 | In the Linux kernel, the following vulnerability has been resolved: ipmi: Remove all sysfs files on registration failur | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-81008 | In the Linux kernel, the following vulnerability has been resolved: interconnect: Fix use after free in icc_get() and o | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-81010 | In the Linux kernel, the following vulnerability has been resolved: io_uring/waitid: honor task_work cancellation io_w | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-81015 | In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Fix LPS0 and debugfs leaks wh | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89436 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: panasonic-laptop: Fix sentinel write | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89440 | In the Linux kernel, the following vulnerability has been resolved: mmc: via-sdmmc: stop card-detect handling on probe | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89441 | In the Linux kernel, the following vulnerability has been resolved: mmc: via-sdmmc: cancel card-detect work on remove | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89442 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Validate socket ID in clos_asso | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89472 | In the Linux kernel, the following vulnerability has been resolved: power: supply: charger-manager: register regulators | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89486 | In the Linux kernel, the following vulnerability has been resolved: ipmi: Fix use-after-free of cmd_rcvr in _ipmi_destr | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89487 | In the Linux kernel, the following vulnerability has been resolved: openvswitch: only skb_tx_error() a packet we are ab | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89488 | In the Linux kernel, the following vulnerability has been resolved: openvswitch: Fix CT limit teardown use-after-free | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89489 | In the Linux kernel, the following vulnerability has been resolved: openrisc: fix arbitrary kernel memory access via or | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89497 | In the Linux kernel, the following vulnerability has been resolved: orangefs: skip leading spaces before parsing client | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89499 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Stop remote reader update when page sw | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89500 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Make cpu_buffer::free_page a buffer_da | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89501 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Hold cpu_buffer::lock when resizing a | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89503 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix subbuf resize race with ring_buffe | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89507 | In the Linux kernel, the following vulnerability has been resolved: RDMA/ucma: Lock the handler in ucma_write_cm_event( | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89508 | In the Linux kernel, the following vulnerability has been resolved: RDMA/ucma: Lock the handler in ucma_set_ib_path() | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89510 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Cancel reg_work before freeing device o | HIGH | 7.8 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89520 | In the Linux kernel, the following vulnerability has been resolved: sched/core: Make core-sched flips wait for in-fligh | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89522 | In the Linux kernel, the following vulnerability has been resolved: media: staging/ipu7: fix async notifier UAF on prob | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89523 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: cancel pending mlo_pm_work If | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89540 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: init gssp_lock before publishing proc entry | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89545 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: defer rq_argp and rq_resp free until after | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89548 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: always drain cache_cleaner before destroyin | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89553 | In the Linux kernel, the following vulnerability has been resolved: nouveau/gem: reserve the bo in the info ioctl aroun | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89557 | In the Linux kernel, the following vulnerability has been resolved: md: do overflow check for sb->bblog_shift in super_ | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89559 | In the Linux kernel, the following vulnerability has been resolved: libnvdimm/labels: Prevent integer overflow in __nd_ | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89562 | In the Linux kernel, the following vulnerability has been resolved: ip6_gre: fix hardware header length for NBMA tunnel | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89563 | In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: use skb_cow_head() in ip6_tnl_xmit() i | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89564 | In the Linux kernel, the following vulnerability has been resolved: ip: orphan prefetched skbs before multicast forward | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89570 | In the Linux kernel, the following vulnerability has been resolved: cxl/mce: Make the MCE notifier per-region Flavien | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89573 | In the Linux kernel, the following vulnerability has been resolved: dm array: reject an array block whose value size is | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89574 | In the Linux kernel, the following vulnerability has been resolved: dm array: validate array block headers on read arr | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89579 | In the Linux kernel, the following vulnerability has been resolved: bpf: Harden bloom filter sizing and indexing on 32- | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89580 | In the Linux kernel, the following vulnerability has been resolved: bpf: Disable preemption in __bpf_get_stack get_per | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89581 | In the Linux kernel, the following vulnerability has been resolved: bpf, x86: Fix per-CPU address resolution into an ex | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89584 | In the Linux kernel, the following vulnerability has been resolved: block: validate user space vectors during extractio | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89585 | In the Linux kernel, the following vulnerability has been resolved: auxdisplay: charlcd: cancel backlight work on regis | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89587 | In the Linux kernel, the following vulnerability has been resolved: ACPI: pfr_update: fix stack buffer overflow in quer | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89594 | In the Linux kernel, the following vulnerability has been resolved: hsi: omap_ssi_core: fix missing DMA mask setup for | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89597 | In the Linux kernel, the following vulnerability has been resolved: fbdev: uvesafb: unregister connector callback on in | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89600 | In the Linux kernel, the following vulnerability has been resolved: fanotify: fix use-after-free of file range info fs | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89602 | In the Linux kernel, the following vulnerability has been resolved: erofs: skip sufficiently large global buffers when | HIGH | 7.8 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89605 | In the Linux kernel, the following vulnerability has been resolved: ecryptfs: release message context on send failure | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89606 | In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject too-small tag 70 packets ecryptfs | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89607 | In the Linux kernel, the following vulnerability has been resolved: ecryptfs: reject oversized encrypted_key_size in pa | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89609 | In the Linux kernel, the following vulnerability has been resolved: ecryptfs: hold msg ctx list lock when cleaning daem | HIGH | 7.8 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89617 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate dirty page table on log replay | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89619 | In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-quickspi: bound GET_REPOR | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89620 | In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-quickspi: validate report | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89622 | In the Linux kernel, the following vulnerability has been resolved: HID: mcp2221: clear rxbuf after I2C/SMBus transfer | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89624 | In the Linux kernel, the following vulnerability has been resolved: HID: universal-pidff: stop the device when force-fe | HIGH | 7.8 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89641 | In the Linux kernel, the following vulnerability has been resolved: cifs: clear tcon after cifsFileInfo_put() in cifs_f | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89646 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix leaked inode reference on writeback abort | HIGH | 7.8 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89668 | In the Linux kernel, the following vulnerability has been resolved: nfsd: move nfsd_debugfs_init() after nfsd4_init_sla | HIGH | 7.8 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89670 | In the Linux kernel, the following vulnerability has been resolved: nfsd: hold rcu across localio cmpxchg retry nfsd_f | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89690 | In the Linux kernel, the following vulnerability has been resolved: nfsd: defer vfree of compound ops to fix rpc_status | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89723 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix slab-out-of-bounds in nilfs_direct_prop | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89724 | In the Linux kernel, the following vulnerability has been resolved: media: vicodec: fix out-of-bounds write in FWHT enc | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89733 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: fix dangling pointers in uvc_func | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89736 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_audio: Fix use-after-free on sound c | HIGH | 7.8 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89738 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: at91_udc: drain polled-VBUS timer/work | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89741 | In the Linux kernel, the following vulnerability has been resolved: Revert "media: v4l2-dev: fix error handling in __vi | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89742 | In the Linux kernel, the following vulnerability has been resolved: rapidio: mport_cdev: fix use-after-free in dma_req_ | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89746 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix use-after-free with same-name named tr | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89747 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix use-after-free in trace_pipe read on s | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89748 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix retry exhaustion in simple ring buffer | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89750 | In the Linux kernel, the following vulnerability has been resolved: tracing/user_events: Clear copied tracing state bef | HIGH | 7.8 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89754 | In the Linux kernel, the following vulnerability has been resolved: mm/pagewalk: fix stale walk->action escaping walk_p | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89755 | In the Linux kernel, the following vulnerability has been resolved: mm/migrate_device: clear stale mapping after freein | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89758 | In the Linux kernel, the following vulnerability has been resolved: mm/mempolicy: skip non-present PMDs when queueing f | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89760 | In the Linux kernel, the following vulnerability has been resolved: mm, swap: don't free a hibernation slot that is in | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89761 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix out-of-bounds write when null termina | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89762 | In the Linux kernel, the following vulnerability has been resolved: apparmor: fix cred UAF caused by begin_current_labe | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89763 | In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix TPM teardown ordering trusted_t | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89764 | In the Linux kernel, the following vulnerability has been resolved: rust: devres: fix race between concurrent revokers | HIGH | 7.8 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89767 | In the Linux kernel, the following vulnerability has been resolved: ovl: fix double end_creating() on the casefold-mism | HIGH | 7.8 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89771 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix subbuf resize race with ring buffe | HIGH | 7.8 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-81016 | In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Propagate SMU errors and vali | HIGH | 7.7 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89466 | In the Linux kernel, the following vulnerability has been resolved: power: supply: qcom_battmgr: terminate the strings | HIGH | 7.7 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89720 | In the Linux kernel, the following vulnerability has been resolved: ubifs: fix out-of-bounds read in signature length c | HIGH | 7.7 | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89743 | In the Linux kernel, the following vulnerability has been resolved: misc: nsm: bound the device-reported response lengt | HIGH | 7.7 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-80943 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: rtl8192du: check QoS TID before inde | HIGH | 7.6 | 16%ile | NVD | 2026-09-11 |
| CVE-2026-80987 | In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_transport: Reject oversized TX buffers nt | HIGH | 7.5 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-80997 | In the Linux kernel, the following vulnerability has been resolved: net: ipa: fix stalled modem TX queue after runtime | HIGH | 7.5 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-80998 | In the Linux kernel, the following vulnerability has been resolved: net: bnxt: ring the doorbell when SW USO exits earl | HIGH | 7.5 | 40%ile | NVD | 2026-09-11 |
| CVE-2026-89476 | In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->outcnt underflow on duplicate REC | HIGH | 7.5 | 51%ile | NVD | 2026-09-11 |
| CVE-2026-89477 | In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref on untransmitted RECONF comple | HIGH | 7.5 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89480 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: reject a read that transferred too few by | HIGH | 7.5 | 35%ile | NVD | 2026-09-11 |
| CVE-2026-89481 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix host memory disclosure on R2T for a r | HIGH | 7.5 | 35%ile | NVD | 2026-09-11 |
| CVE-2026-89483 | In the Linux kernel, the following vulnerability has been resolved: nvme: zero the discard fallback page nvme_setup_di | HIGH | 7.5 | 45%ile | NVD | 2026-09-11 |
| CVE-2026-89511 | In the Linux kernel, the following vulnerability has been resolved: qede: Fix NULL pointer dereference in TPA fragment | HIGH | 7.5 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89528 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject Read lists that exceed the page bud | HIGH | 7.5 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89544 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: fix gssx_dec_option_array error path bugs | HIGH | 7.5 | 46%ile | NVD | 2026-09-11 |
| CVE-2026-89549 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: route to a populated pool in svc_pool_for_c | HIGH | 7.5 | 52%ile | NVD | 2026-09-11 |
| CVE-2026-89561 | In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: fix NULL dereference of idev in ipv6_rpl | HIGH | 7.5 | 37%ile | NVD | 2026-09-11 |
| CVE-2026-89616 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix info-leak on partial LZNT decompress | HIGH | 7.5 | 35%ile | NVD | 2026-09-11 |
| CVE-2026-89647 | In the Linux kernel, the following vulnerability has been resolved: ceph: do not repeat ceph_trim_dentries() if no prog | HIGH | 7.5 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89648 | In the Linux kernel, the following vulnerability has been resolved: ceph: cap delegated inode count in ceph_parse_deleg | HIGH | 7.5 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89657 | In the Linux kernel, the following vulnerability has been resolved: libceph: validate OSD extent maps before cursor adv | HIGH | 7.5 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89664 | In the Linux kernel, the following vulnerability has been resolved: nfsd: release OPEN-decoded posix ACLs via op_releas | HIGH | 7.5 | 41%ile | NVD | 2026-09-11 |
| CVE-2026-89678 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix partial-write detection in nfsd_direct_wr | HIGH | 7.5 | 29%ile | NVD | 2026-09-11 |
| CVE-2026-89679 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix null dereference in nfsd4_setattr for del | HIGH | 7.5 | 51%ile | NVD | 2026-09-11 |
| CVE-2026-89680 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfsd_file leak on inter-server COPY setup | HIGH | 7.5 | 49%ile | NVD | 2026-09-11 |
| CVE-2026-89684 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix cpntf publish race in nfs4_init_cp_state | HIGH | 7.5 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89685 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix clock domain mismatch in clients_still_re | HIGH | 7.5 | 37%ile | NVD | 2026-09-11 |
| CVE-2026-89687 | In the Linux kernel, the following vulnerability has been resolved: nfsd: ensure nfsd_file_do_acquire() does not use a | HIGH | 7.5 | 40%ile | NVD | 2026-09-11 |
| CVE-2026-89692 | In the Linux kernel, the following vulnerability has been resolved: nfsd: clear CALLBACK_RUNNING on failed delegation r | HIGH | 7.5 | 37%ile | NVD | 2026-09-11 |
| CVE-2026-89695 | In the Linux kernel, the following vulnerability has been resolved: nfsd: cap decoded POSIX ACL count to bound sort cos | HIGH | 7.5 | 41%ile | NVD | 2026-09-11 |
| CVE-2026-89696 | In the Linux kernel, the following vulnerability has been resolved: nfsd: block non-SAVEFH ops after FOREIGN PUTFH to p | HIGH | 7.5 | 54%ile | NVD | 2026-09-11 |
| CVE-2026-89699 | In the Linux kernel, the following vulnerability has been resolved: nfsd: validate symlink target length in NFSv4 CREAT | HIGH | 7.5 | 42%ile | NVD | 2026-09-11 |
| CVE-2026-89704 | In the Linux kernel, the following vulnerability has been resolved: nfsd: sample writeback error cursor before async CO | HIGH | 7.5 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89706 | In the Linux kernel, the following vulnerability has been resolved: nfsd: Reset write verifier when async COPY writebac | HIGH | 7.5 | 43%ile | NVD | 2026-09-11 |
| CVE-2026-89707 | In the Linux kernel, the following vulnerability has been resolved: nfsd: release path refs on follow_down() error nfs | HIGH | 7.5 | 48%ile | NVD | 2026-09-11 |
| CVE-2026-89769 | In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/nxp-pit: Fix IRQ leak on cpuhp_ | HIGH | 7.4 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89521 | In the Linux kernel, the following vulnerability has been resolved: sched/core: Handle pick_task() releasing the rq loc | HIGH | 7.3 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-80958 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: clamp the tail kset read to the segment | HIGH | 7.1 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-81007 | In the Linux kernel, the following vulnerability has been resolved: ipmi: ipmb: validate write message length ipmb_wri | HIGH | 7.1 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-81011 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: pass validated element co | HIGH | 7.1 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89443 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Validate level in perf mask ioc | HIGH | 7.1 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89571 | In the Linux kernel, the following vulnerability has been resolved: cxl/features: bound fwctl command payload to the in | HIGH | 7.1 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89593 | In the Linux kernel, the following vulnerability has been resolved: hugetlb: only adjust reservation during unmapping i | HIGH | 7.1 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89596 | In the Linux kernel, the following vulnerability has been resolved: forcedeth: fix off-by-one when saving/restoring non | HIGH | 7.1 | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89608 | In the Linux kernel, the following vulnerability has been resolved: ecryptfs: pass packet set buffer size to parser ec | HIGH | 7.1 | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89639 | In the Linux kernel, the following vulnerability has been resolved: cifs: use cifs_invalidate_cache() in cifs_do_trunca | HIGH | 7.1 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89640 | In the Linux kernel, the following vulnerability has been resolved: cifs: fix loff_t underflow in cifs_remap_file_range | HIGH | 7.1 | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89691 | In the Linux kernel, the following vulnerability has been resolved: nfsd: clear opcnt on compound arg release to preven | HIGH | 7.1 | 2%ile | NVD | 2026-09-11 |
| CVE-2026-89705 | In the Linux kernel, the following vulnerability has been resolved: nfsd: restore rq_status_counter to even on all nfsd | HIGH | 7.1 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89731 | In the Linux kernel, the following vulnerability has been resolved: cxl/ras: Fix cxl_rch_get_aer_info() out-of-bounds A | HIGH | 7.1 | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89456 | In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Propagate partial completion length acro | HIGH | 7.0 | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89459 | In the Linux kernel, the following vulnerability has been resolved: s390/percpu: Fix MVIY_PERCPU() with older binutils | HIGH | 7.0 | 1%ile | NVD | 2026-09-11 |
| CVE-2026-80927 | In the Linux kernel, the following vulnerability has been resolved: timekeeping: Check the return value of tk_get_aux_t | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80930 | In the Linux kernel, the following vulnerability has been resolved: tpm: tpm_i2c_nuvoton: disable IRQ on wait timeout | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-80934 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix TX DMA mapping leak for Add | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80938 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7615: avoid waiting for mac work unde | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-80939 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: add .shutdown callback to stop rf | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80940 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: pci: fix resource leak on failed NAPI | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80941 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Fix potential memory leak in rtw_txq_p | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-80942 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: rtl8192du: Fix possible memory leak | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80946 | In the Linux kernel, the following vulnerability has been resolved: fuse: copy request headers via a stack buffer for i | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80951 | In the Linux kernel, the following vulnerability has been resolved: i3c: master: svc: bound IBI payload to the requeste | UNKNOWN | — | 11%ile | NVD | 2026-09-11 |
| CVE-2026-80956 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: only hand out initialized cache segments | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-80957 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: detect a cycle in the last-kset chain du | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-80960 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: validate on-media seg_num against the ca | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-80963 | In the Linux kernel, the following vulnerability has been resolved: dm-stats: fix a crash if allocation of per-cpu data | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-80964 | In the Linux kernel, the following vulnerability has been resolved: ALSA: virmidi: Check card index validity at probe | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-80965 | In the Linux kernel, the following vulnerability has been resolved: ALSA: serial-u16550: Check card index validity at p | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-80966 | In the Linux kernel, the following vulnerability has been resolved: ALSA: portman2x4: Check card index validity at prob | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-80968 | In the Linux kernel, the following vulnerability has been resolved: ALSA: mts64: Check card index validity at probe Al | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-80969 | In the Linux kernel, the following vulnerability has been resolved: ALSA: mpu401: Check card index validity at probe m | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-80970 | In the Linux kernel, the following vulnerability has been resolved: ALSA: FCP: do not copy out an uninitialised init re | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-80972 | In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Check card index validity at probe al | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-80973 | In the Linux kernel, the following vulnerability has been resolved: ALSA: 6fire: bound the MIDI event length from the d | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-80974 | In the Linux kernel, the following vulnerability has been resolved: mfd: sm501: Fix potential memory leaks during remov | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-80984 | In the Linux kernel, the following vulnerability has been resolved: net/smc: do not dereference an unset send buffer on | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-80988 | In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_transport: Fail TX enqueue when the QP lin | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-80990 | In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: Release the Rx HopID that was han | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-80993 | In the Linux kernel, the following vulnerability has been resolved: net: phylink: correctly validate returned PCS in ph | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-81009 | In the Linux kernel, the following vulnerability has been resolved: io_uring/query: cap user size passed to copy_struct | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-81013 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: fix heap OOB read on empt | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-81014 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: fix heap OOB read in sk_s | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-81018 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: think-lmi: Free system certificate si | UNKNOWN | — | 3%ile | NVD | 2026-09-11 |
| CVE-2026-89437 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: int1092: Fix potential memory leak in | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89438 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Validate logical CPU id and clo | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89439 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Add a NULL check for sst_inst[] | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89444 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Don't hex dump attri | UNKNOWN | — | 11%ile | NVD | 2026-09-11 |
| CVE-2026-89446 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Release current IOAS on xa_store() failure | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89447 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Avoid locking internal accesses during unm | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89449 | In the Linux kernel, the following vulnerability has been resolved: iommu: Fix dev_iommu memory leak when device_add fa | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89451 | In the Linux kernel, the following vulnerability has been resolved: iommu/sva: Set handle->dev before the SVA handle is | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89453 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Put PCI device after handling PPR faults | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89454 | In the Linux kernel, the following vulnerability has been resolved: PCI: plda: Fix IRQ domain leaks in the error paths | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89455 | In the Linux kernel, the following vulnerability has been resolved: PCI: plda: Fix use-after-free of event IRQs during | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89457 | In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Guard sysfs discipline callbacks against | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89458 | In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Do not complete a failed ESE read as suc | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89460 | In the Linux kernel, the following vulnerability has been resolved: s390/cpum_cf: Handle CPU hotplug via prepare/dead c | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89463 | In the Linux kernel, the following vulnerability has been resolved: power: supply: ucs1002: fix use-after-free on remov | UNKNOWN | — | 11%ile | NVD | 2026-09-11 |
| CVE-2026-89464 | In the Linux kernel, the following vulnerability has been resolved: power: supply: twl4030_charger: cancel workers via | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89467 | In the Linux kernel, the following vulnerability has been resolved: power: supply: qcom_battmgr: fix use-after-free qc | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89468 | In the Linux kernel, the following vulnerability has been resolved: power: supply: lp8788-charger: fix use-after-free o | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89474 | In the Linux kernel, the following vulnerability has been resolved: power: supply: bq256xx: drain usb_work before freei | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89475 | In the Linux kernel, the following vulnerability has been resolved: power: supply: bq24257: fix use-after-free on remov | UNKNOWN | — | 11%ile | NVD | 2026-09-11 |
| CVE-2026-89484 | In the Linux kernel, the following vulnerability has been resolved: lockd: fix NULL dereference on lockowner allocation | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89490 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix readdir position truncation on 32-bit ke | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89491 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: cluster: don't sleep while holding o2hb_live | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-89496 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: always run deallocs on copy-on-write complet | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89498 | In the Linux kernel, the following vulnerability has been resolved: orangefs: fix double-free of trailer_buf on readdir | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89502 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Free cpu_buffer::free_page with subbuf | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89505 | In the Linux kernel, the following vulnerability has been resolved: RDMA/uverbs: Guard legacy bundles without method_el | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89506 | In the Linux kernel, the following vulnerability has been resolved: RDMA/uverbs: Add UVERBS_ATTR_UHW to UVERBS_METHOD_R | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89509 | In the Linux kernel, the following vulnerability has been resolved: RDMA/ionic: Embed counter driver data in rdma_count | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89512 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: scp: Fix device reference leak on faile | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-89514 | In the Linux kernel, the following vulnerability has been resolved: scsi: fnic: Use GFP_ATOMIC for VLAN alloc under spi | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89515 | In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fill in DMA padding bytes in scsi_alloc | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89516 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Don't BUG_ON a destroyed DSQ in process_ | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89517 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix rq->core_pick corruption under core | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89518 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix this_rq() assumptions in dispatch kf | UNKNOWN | — | 9%ile | NVD | 2026-09-11 |
| CVE-2026-89519 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Replace SCX_RQ_BAL_KEEP with a dispatch | UNKNOWN | — | 9%ile | NVD | 2026-09-11 |
| CVE-2026-89525 | In the Linux kernel, the following vulnerability has been resolved: udf: reject VAT indexes equal to the entry count U | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89527 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Use svc_xprt_put to free listener on creat | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89529 | In the Linux kernel, the following vulnerability has been resolved: svcrdma: Reject oversized Read segments at decode t | UNKNOWN | — | 9%ile | NVD | 2026-09-11 |
| CVE-2026-89543 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix use-after-free in __rpc_clnt_handle_eve | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89552 | In the Linux kernel, the following vulnerability has been resolved: params: fix charp corruption on allocation failure | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89556 | In the Linux kernel, the following vulnerability has been resolved: module: validate string table section types In elf | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89566 | In the Linux kernel, the following vulnerability has been resolved: jbd2: check need_resched() when skipping busy check | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89568 | In the Linux kernel, the following vulnerability has been resolved: kho: fix size calculation in kho_preserved_memory_r | UNKNOWN | — | 9%ile | NVD | 2026-09-11 |
| CVE-2026-89572 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: apple-soc: Fix OPP table cleanup apple_so | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89575 | In the Linux kernel, the following vulnerability has been resolved: dm raid1: reserve space for NUL-terminator in build | UNKNOWN | — | 14%ile | NVD | 2026-09-11 |
| CVE-2026-89576 | In the Linux kernel, the following vulnerability has been resolved: dm-era: fix shadowed superblock leak on take-snap f | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-89577 | In the Linux kernel, the following vulnerability has been resolved: dm-io: report non-retryable errors separatedly The | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89578 | In the Linux kernel, the following vulnerability has been resolved: dm-io: clone the source bio instead of copying its | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89589 | In the Linux kernel, the following vulnerability has been resolved: acpi/apei/ghes: Use raw_spinlock_t for CXL CPER wor | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89590 | In the Linux kernel, the following vulnerability has been resolved: accel/rocket: Fix error path handling in rocket_job | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89591 | In the Linux kernel, the following vulnerability has been resolved: accel/rocket: initialize job domain before cleanup | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89592 | In the Linux kernel, the following vulnerability has been resolved: accel/rocket: fix NULL dereference and integer over | UNKNOWN | — | 11%ile | NVD | 2026-09-11 |
| CVE-2026-89595 | In the Linux kernel, the following vulnerability has been resolved: fsnotify: Fix stale object mask after concurrent ma | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-89618 | In the Linux kernel, the following vulnerability has been resolved: eventfs: Initialize ei->children and ei->list in in | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89621 | In the Linux kernel, the following vulnerability has been resolved: HID: mcp2221: validate report size in mcp2221_raw_e | UNKNOWN | — | 13%ile | NVD | 2026-09-11 |
| CVE-2026-89623 | In the Linux kernel, the following vulnerability has been resolved: HID: mcp2221: stop device IO before hid_hw_stop Qu | UNKNOWN | — | 11%ile | NVD | 2026-09-11 |
| CVE-2026-89629 | In the Linux kernel, the following vulnerability has been resolved: HID: corsair-void: Check size of status and firmwar | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89644 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix extent map leak in NOCOW direct I/O writ | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89661 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent post-shutdown use-after-free in unloc | UNKNOWN | — | 9%ile | NVD | 2026-09-11 |
| CVE-2026-89666 | In the Linux kernel, the following vulnerability has been resolved: nfsd: reject out-of-range nseconds in NFSv3 SETATTR | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89673 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix XDR padding calculation in ff_encode_getd | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89683 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix dentry ref leak on V4ROOT export filehand | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89693 | In the Linux kernel, the following vulnerability has been resolved: nfsd: check nfsd4_acl_to_attr() return value in nfs | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89698 | In the Linux kernel, the following vulnerability has been resolved: nfsd: widen nfsd_genl_rqstp address fields to socka | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89700 | In the Linux kernel, the following vulnerability has been resolved: nfsd: validate sockaddr length per family in listen | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89701 | In the Linux kernel, the following vulnerability has been resolved: nfsd: validate nseconds in TIME_DELEG decode paths | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89710 | In the Linux kernel, the following vulnerability has been resolved: NFSv4.1: fix layout segment leak on the pnfs_layout | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89714 | In the Linux kernel, the following vulnerability has been resolved: NFS: fix delegation_hash_table leak when nfs4_serve | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89715 | In the Linux kernel, the following vulnerability has been resolved: NFS/localio: fix ref leak on nfs_uuid_add_file fail | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89716 | In the Linux kernel, the following vulnerability has been resolved: zram: validate deflate params We must validate use | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89717 | In the Linux kernel, the following vulnerability has been resolved: zram: set default primary compressor in zram_destro | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89718 | In the Linux kernel, the following vulnerability has been resolved: zram: fix out-of-bounds access in writeback_store() | UNKNOWN | — | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89719 | In the Linux kernel, the following vulnerability has been resolved: zram: fix out-of-bounds access in read_block_state( | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89721 | In the Linux kernel, the following vulnerability has been resolved: phy: rockchip-samsung-dcphy: fix out-of-range max_r | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89722 | In the Linux kernel, the following vulnerability has been resolved: PCI/sysfs: Fix out-of-bounds read in pci_write_lega | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89727 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: GICv2: Don't WARN on out-of-range GICV_ | UNKNOWN | — | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89728 | In the Linux kernel, the following vulnerability has been resolved: i3c: renesas: Fix out-of-bounds access for newdevs | UNKNOWN | — | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89730 | In the Linux kernel, the following vulnerability has been resolved: fpga: altera-cvp: Avoid out-of-bounds read in trail | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-89732 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Prevent deadlock during ep0 read | UNKNOWN | — | 14%ile | NVD | 2026-09-11 |
| CVE-2026-89734 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Fix null pointer dereference in u | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89735 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: midi2: remove default configfs groups | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89737 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: thunderbolt: Disable work before freein | UNKNOWN | — | 6%ile | NVD | 2026-09-11 |
| CVE-2026-89739 | In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: gadget: Fix use-after-free in dwc3_gadge | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89745 | In the Linux kernel, the following vulnerability has been resolved: debugfs: Fix lockdown check for mmap_prepare Commi | UNKNOWN | — | 5%ile | NVD | 2026-09-11 |
| CVE-2026-89749 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix crash passing ERR_PTR to kthread_stop( | UNKNOWN | — | 12%ile | NVD | 2026-09-11 |
| CVE-2026-89751 | In the Linux kernel, the following vulnerability has been resolved: x86/tdx: Fix off-by-one in port I/O handling handl | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89752 | In the Linux kernel, the following vulnerability has been resolved: mm: memcg: stop reclaim when a limit update is supe | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89759 | In the Linux kernel, the following vulnerability has been resolved: mm/kmemleak: avoid soft lockup when scanning task s | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89765 | In the Linux kernel, the following vulnerability has been resolved: timers/itimer: Zero-init old itimerval before copy | UNKNOWN | — | 10%ile | NVD | 2026-09-11 |
| CVE-2026-89766 | In the Linux kernel, the following vulnerability has been resolved: pidfd: hold exec_update_lock around namespace ioctl | UNKNOWN | — | 8%ile | NVD | 2026-09-11 |
| CVE-2026-89770 | In the Linux kernel, the following vulnerability has been resolved: iomap: don't free integrity payload that doesn't ex | UNKNOWN | — | 4%ile | NVD | 2026-09-11 |
| CVE-2026-89772 | In the Linux kernel, the following vulnerability has been resolved: btrfs: write-protect folios during data writeback | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| CVE-2026-89773 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Skip Update HDCP Config In Transit | UNKNOWN | — | 7%ile | NVD | 2026-09-11 |
| ionstack-2026 | IonStack Part 2: Linux kernel io_uring privilege escalation exploit chain | HIGH | 7.8 | — | Featured | 2026-07-07 |
| CVE-2026-45476 | Microsoft Azure Network Adapter Elevation of Privilege Vulnerability | HIGH | 8.2 | 26%ile | Microsoft | 2026-06-09 |
| FG-IR-26-144 | Linux Kernel vulnerability Dirty Frag | HIGH | 7.8 | — | Fortinet | 2026-06-03 |
| FG-IR-26-139 | Linux Kernel Vulnerability copy.fail - CVE-2026-31431 | UNKNOWN | — | — | Fortinet | 2026-05-13 |
| CVE-2023-1829 | Use-after-free in tcindex (traffic control index filter) in the Linux Kernel | HIGH | 7.8 | 62%ile | Microsoft | 2023-04-11 |
| CVE-2023-2008 | A flaw was found in the Linux kernel's udmabuf device driver. The specific flaw exists within a fault handler. The issue | HIGH | 7.8 | 62%ile | Microsoft | 2023-04-11 |
| CVE-2023-31436 | qfq_change_class in net/sched/sch_qfq.c in the Linux kernel before 6.2.13 allows an out-of-bounds write because lmax can | HIGH | 7.8 | 47%ile | Microsoft | 2023-04-11 |
| CVE-2023-1838 | A use-after-free flaw was found in vhost_net_set_backend in drivers/vhost/net.c in virtio network subcomponent in the Li | HIGH | 7.1 | 17%ile | Microsoft | 2023-04-11 |
| CVE-2023-1872 | Use-after-free in Linux kernel's io_uring subsystem | HIGH | 7.0 | 21%ile | Microsoft | 2023-04-11 |
| CVE-2023-1989 | A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw a call | HIGH | 7.0 | 33%ile | Microsoft | 2023-04-11 |
| CVE-2023-2006 | A race condition was found in the Linux kernel's RxRPC network protocol within the processing of RxRPC bundles. This iss | HIGH | 7.0 | 30%ile | Microsoft | 2023-04-11 |
| CVE-2023-2194 | An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver. The userspace "data->blo | MEDIUM | 6.7 | 16%ile | Microsoft | 2023-04-11 |
| CVE-2023-30456 | An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency | MEDIUM | 6.5 | 40%ile | Microsoft | 2023-04-11 |
| CVE-2023-30772 | The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/power/supply/da9150-charger.c | MEDIUM | 6.4 | 40%ile | Microsoft | 2023-04-11 |
| CVE-2023-1855 | A use-after-free flaw was found in xgene_hwmon_remove in drivers/hwmon/xgene-hwmon.c in the Hardware Monitoring Linux Ke | MEDIUM | 6.3 | 14%ile | Microsoft | 2023-04-11 |
| CVE-2023-1998 | Spectre v2 SMT mitigations problem in Linux kernel | MEDIUM | 5.6 | 71%ile | Microsoft | 2023-04-11 |
| CVE-2023-2162 | A use-after-free vulnerability was found in iscsi_sw_tcp_session_create in drivers/scsi/iscsi_tcp.c in SCSI sub-componen | MEDIUM | 5.5 | 17%ile | Microsoft | 2023-04-11 |
| CVE-2023-2177 | A null pointer dereference issue was found in the sctp network protocol in net/sctp/stream_sched.c in Linux Kernel. If s | MEDIUM | 5.5 | 11%ile | Microsoft | 2023-04-11 |
| CVE-2023-28327 | A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Ke | MEDIUM | 5.5 | 9%ile | Microsoft | 2023-04-11 |
| CVE-2023-28328 | A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel | MEDIUM | 5.5 | 13%ile | Microsoft | 2023-04-11 |
| CVE-2023-31084 | An issue was discovered in drivers/media/dvb-core/dvb_frontend.c in the Linux kernel 6.2. There is a blocking operation | MEDIUM | 5.5 | 35%ile | Microsoft | 2023-04-11 |
| CVE-2023-0458 | Spectre V1 Gadget in do_prlimit in the Linux Kernel | MEDIUM | 4.7 | 52%ile | Microsoft | 2023-04-11 |
| CVE-2023-1382 | A data race flaw was found in the Linux kernel between where con is allocated and con->sock is set. This issue leads to | MEDIUM | 4.7 | 8%ile | Microsoft | 2023-04-11 |
| CVE-2023-1990 | A use-after-free flaw was found in ndlc_remove in drivers/nfc/st-nci/ndlc.c in the Linux Kernel. This flaw could allow a | MEDIUM | 4.7 | 14%ile | Microsoft | 2023-04-11 |
| CVE-2023-2019 | A flaw was found in the Linux kernel's netdevsim device driver within the scheduling of events. This issue results from | MEDIUM | 4.4 | 28%ile | Microsoft | 2023-04-11 |