Search
565 CVEs · published 2026-09-24 to 2026-09-24
CVEs (565, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 176–200 of 565 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-97440 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: net: qrtr: fix node refcount leak on ctrl packet alloc failure qrtr_send_resume_tx() calls qrtr_node_l… | |
| CVE-2026-97439 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: preserve non-DOS attribute bits in system.dos_attrib [BUG] A corrupted ntfs3 image can hit a… | |
| CVE-2026-97438 | HIGH | 7.1 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate index entry key bounds [BUG] A malformed NTFS directory index entry can advertise a… | |
| CVE-2026-97437 | HIGH | 7.1 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: ntfs3: fix out-of-bounds read in ntfs_dir_emit() and hdr_find_e() The bounds check in ntfs_dir_emit() … | |
| CVE-2026-97436 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: rework FDB management on the bridge leave path On bridge leave, the dpaa2_switch_port_se… | |
| CVE-2026-97435 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: net: dsa: sja1105: flower: reject cross-chip redirect dsa_port_from_netdev() may return a valid port f… | |
| CVE-2026-97434 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: fix handling of NAPI on the remove path All the NAPI instances for a DPSW device are att… | |
| CVE-2026-97433 | HIGH | 8.2 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: nvme: validate FDP configuration descriptor sizes Validate descriptor sizes while walking the FDP conf… | |
| CVE-2026-97432 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix P2P-Device binding handling Our binding handling for P2P-Device can run into t… | |
| CVE-2026-97431 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid DPMS-on for phantom stream [Why & How] Calling dc_update_planes_and_stream sepa… | |
| CVE-2026-97430 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: xhci: Prevent queuing new commands if xhci is inaccessible Refuse to queue a new command on the comman… | |
| CVE-2026-97429 | HIGH | 7.8 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix UAF race in destroy_queue_cpsch wait_on_destroy_queue() drops locks to wait for queue … | |
| CVE-2026-97428 | HIGH | 7.7 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: harden FRU PIA parsing with bounded helpers Replace the open-coded TLV walk with fru_pia_a… | |
| CVE-2026-97427 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: bound pp_dpm_set_pp_table() memcpy The powerplay path allocates hardcode_pp_table once wit… | |
| CVE-2026-97426 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm: fix SmartShift bias sysfs store PM refcount on parse error Return the parse error befor… | |
| CVE-2026-97425 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix buffer overflow during vBIOS update Clamp the buffer postion to write by setting the b… | |
| CVE-2026-97424 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/ras: add ras_suspend callback and use it for cp_ecc_error_irq cp_ecc_error_irq is acquired … | |
| CVE-2026-97423 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: cxl/region: Validate partition index before array access construct_region() reads cxled->part and uses… | |
| CVE-2026-97422 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix SMI event cross-process information leak kfd_smi_ev_enabled() skips the suser privileg… | |
| CVE-2026-97421 | HIGH | 7.8 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Be careful about boundary conditions in ib_umem_find_best_pgsz() Several corner cases, espe… | |
| CVE-2026-97420 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: bpf: NUL-terminate replaced sysctl value When writing to sysctls, proc_sys_call_handler() guarantees t… | |
| CVE-2026-97419 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: hsr: broadcast netlink notifications in the device's net namespace The HSR generic netlink family sets… | |
| CVE-2026-97418 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: ALSA: es18xx: check control allocation before private data setup snd_es18xx_mixer() creates controls w… | |
| CVE-2026-97417 | HIGH | 7.5 | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack() The timestamp-only fast path dereferen… | |
| CVE-2026-97416 | NONE | — | 2026-09-24 | In the Linux kernel, the following vulnerability has been resolved: btrfs: balance: fix potential bg lookup failure in btrfs_may_alloc_data_chunk() [BUG] Running btrfs ba… |