Search
450 CVEs · published 2026-07-27 to 2026-07-27
CVEs (450)
Showing 101–125 of 450
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-64692 | NONE | Patched | — | 2026-07-27 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 2… |
| CVE-2026-64691 | NONE | Patched | — | 2026-07-27 | A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Tahoe 26.6. An app may be able to cause unexpected system termination. |
| CVE-2026-64555 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops() kvm_hyp_handle_mops() resets the single-… | |
| CVE-2026-64554 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment() br_ip6_fragment() gets prevhdr, a po… | |
| CVE-2026-64553 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: net: psample: fix info leak in PSAMPLE_ATTR_DATA psample open codes nla_put() presumably to avoid wipi… | |
| CVE-2026-64552 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix len check in receive_big() receive_big() bounds the device-announced length by (big_pa… | |
| CVE-2026-64551 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: sctp: validate STALE_COOKIE cause length before reading staleness When an ERROR chunk with a STALE_COO… | |
| CVE-2026-64550 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: validate MAP frame length before ingress parsing When ingress deaggregation is d… | |
| CVE-2026-64549 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup() bpa10x_setup() sends the vendor… | |
| CVE-2026-64548 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data() When the scatterlist ring is full o… | |
| CVE-2026-64547 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: net: usb: net1080: validate packet_len before pad-byte access in rx_fixup For an even packet_len, net1… | |
| CVE-2026-64546 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: drm/edid: fix OOB read in drm_parse_tiled_block() drm_parse_tiled_block() casts the DisplayID block to… | |
| CVE-2026-64545 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: net, bpf: check master for NULL in xdp_master_redirect() xdp_master_redirect() dereferences the result… | |
| CVE-2026-64544 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents pefile_digest_pe_contents() comput… | |
| CVE-2026-64543 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: tipc: fix use-after-free of the discoverer in tipc_disc_rcv() bearer_disable() frees b->disc with tipc… | |
| CVE-2026-64542 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: ipv6: ndisc: fix NULL deref in accept_untracked_na() accept_untracked_na() re-fetches the inet6_dev wi… | |
| CVE-2026-64541 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket smc_cdc_rx_handler() looks up the conne… | |
| CVE-2026-64540 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup() genelink_rx_fixup() splits an aggregated… | |
| CVE-2026-64539 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD eir_create_adv_data() builds the adve… | |
| CVE-2026-64538 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change(). fib6_nh_mtu_change() re-fetches idev via __in6_dev_g… | |
| CVE-2026-64537 | NONE | — | 2026-07-27 | In the Linux kernel, the following vulnerability has been resolved: bridge: cfm: reject invalid CCM interval at configuration time ccm_tx_work_expired() re-arms itself vi… | |
| CVE-2026-59730 | NONE | Patched | — | 2026-07-27 | Astro is a web framework for content-driven websites. In versions 8.1.0 through 11.0.1, when trailingSlash: 'always' is configured, the @astrojs/node standalone server's st… |
| CVE-2026-59728 | MEDIUM | Patched | 4.3 | 2026-07-27 | Astro is a web framework for content-driven websites. In versions 1.0.0 through 4.0.18, the source.title and enclosure.type item fields in packages/astro-rss/src/index.ts a… |
| CVE-2026-43822 | NONE | Patched | — | 2026-07-27 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Taho… |
| CVE-2026-43821 | NONE | Patched | — | 2026-07-27 | An access issue was addressed with improved access restrictions. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, w… |