CVE-2026-98143 |
accel: ethosu: Don't read the U65 rounding mode as a storage mode |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98130 |
sctp: fix a TOCTOU race in SCTP_CMD_TIMER_START |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98122 |
vxlan: mdb: Fix use-after-free in vxlan_mdb_remote_src_del() |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98116 |
ALSA: pcm: Serialize PCM mmap with buffer reallocation to fix page UAF |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98115 |
ksmbd: safely drain sessions during logoff |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98112 |
ksmbd: fix listener task lifetime on netdev events |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98108 |
Bluetooth: L2CAP: fix chan mode for LE_CONN_REQ + EXT_FLOWCTL pchan |
high |
cve |
0 |
0 |
|
|
|
MB-081634d57d2e273d36c03aaf2b1812db682e213a14894e0263820de6a69067c9 |
Mirai: bot.amd64 |
high |
Mirai |
1 |
10 |
|
|
|
MB-231150ad0b8f5638028e2215c433fec7eb10c900241ef7e2cd52f179c2f467bb |
Mirai: stub.armv6l |
high |
Mirai |
1 |
10 |
|
|
|
MB-189b86c11ba1d53815f08a2fdece876b2582027fcb35ca0cbc6765d5b6f96f66 |
Mirai: stub.aarch64_be |
high |
Mirai |
1 |
10 |
|
|
|
MB-c2fcfb7c509368f993142de09103a341f100ab4eb930fe889099a42b41beb83a |
Unknown: PDA-Domains.zip |
high |
Unknown |
1 |
10 |
|
|
|
TF-1932790 |
php.shin_webshell: Domain that is used for botnet Command&control (C&C) e5ufcx9x6e.workers.dev |
medium |
php.shin_webshell |
2 |
10 |
|
|
|
TF-1932789 |
XWorm: Domain that is used for botnet Command&control (C&C) loganwolverin2042.webredirect.org |
high |
XWorm |
3 |
10 |
|
|
|
CVE-2026-98096 |
ipv6: sr: restore network header before routing and forwarding |
high |
cve |
0 |
0 |
|
|
|
MB-8ef45f564b590b344c6254e92e9046960544450353debb9172540449cbe60a14 |
Mirai: bot.i486 |
high |
Mirai |
1 |
10 |
|
|
|
CVE-2026-98083 |
btrfs: fix transaction use-after-free in raid stripe insertion |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98073 |
net: Remove conflicting altnames for dying netns in __dev_change_net_namespace(). |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98070 |
net/rds: acquire RDS_IN_XMIT in rds_tcp_reset_callbacks() |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98069 |
net/rds: acquire the fastpath locks in rds_conn_shutdown() |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98056 |
nvme: remove stale namespaces by NSID range during scan |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98052 |
net: bcmasp: clear txcb->last before writing each descriptor |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98050 |
mlxsw: spectrum_ptp: Fix napi_gro_receive() call from GC workqueue context |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98041 |
bpf: Don't predict JMP32 pointer vs zero comparisons |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98030 |
net: dsa: bcm_sf2: bound the CFP rule dump by the caller's buffer size |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98029 |
eth: nfp: bound the ntuple rule dump by the caller's buffer size |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98027 |
net: dsa: mv88e6xxx: bound the policy rule dump by the caller's buffer size |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98023 |
vxlan: reject dynamic fdb entries that reference a nexthop id |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98017 |
net/sched: defer qdisc freeing after failed creation |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-98002 |
iommu/amd: Fix ineffective error check in nested domain allocation |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97991 |
vdpa_sim_blk: reject out-of-range sector starts |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97990 |
vdpa_sim_net: check TX pull result before RX copy |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97971 |
nstree: check listing permission before taking a namespace reference |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97957 |
net: hinic: fix mailbox segment buffer overflow |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97953 |
net: stmmac: fix TX descriptor availability check for TSO traffic |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97941 |
mm/slab: take n->list_lock in __slab_try_return_freelist() to avoid race |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97940 |
ipv6: fix fib6 walker UAF on seq stop |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97937 |
ftrace: fork: Initialize function graph state before copy_exec_state() |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97931 |
ALSA: us122l: Prevent write upgrades for read mappings |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97926 |
ufs: validate cylinder group metadata before caching it |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97911 |
accel: ethosu: Ensure SRAM region size matches job |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97910 |
ASoC: sprd: validate compress buffer sizes against fixed allocations |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97903 |
exit: hold a reference to thread_pid across proc_flush_pid |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97612 |
net: mpls: clear inner_protocol when the last label is popped |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97611 |
net: openvswitch: fix use-after-free of the flow table mask array |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97609 |
netfilter: cttimeout: prevent UAF during module unload |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97608 |
netfilter: nf_log: unregister loggers before per-net teardown |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97602 |
inet: frags: invalidate queues before flushing them |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97595 |
mac802154: fix use-after-free of sdata via queued RX frames |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97594 |
landlock: Fix use-after-free of the source's parent directory |
high |
cve |
0 |
0 |
|
|
|
CVE-2026-97589 |
s390/crypto: Fix wrong return code to engine in asynch callbacks |
high |
cve |
0 |
0 |
|
|
|