87,929 indexed
CVECVE vulnerabilities
87,929 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 501–550 of 87,929 · page 11 of 1759
| ID | Title | Summary |
|---|---|---|
| CVE-2026-98037 | CVE-2026-98037 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject untrusted allocated-object pointers When the final RCU read-side critical sec… |
| CVE-2026-98036 | CVE-2026-98036 | In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve special fields in recycled rhtab elements rhtab_map_update_elem() initializ… |
| CVE-2026-98035 | CVE-2026-98035 | In the Linux kernel, the following vulnerability has been resolved: bpf: Cancel special fields when recycling rhtab elements rhtab_map_update_existing() and … |
| CVE-2026-98034 | CVE-2026-98034 | In the Linux kernel, the following vulnerability has been resolved: bpf: Mark NULL kptr stores precise check_map_kptr_access() permits a scalar store into an… |
| CVE-2026-98033 | CVE-2026-98033 | In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve inner map identity in callback frames Callback frame constructors initializ… |
| CVE-2026-98032 | CVE-2026-98032 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix subbuf resize races with trace_pipe_raw readers Concurrent subbuffer resizes… |
| CVE-2026-98031 | CVE-2026-98031 | In the Linux kernel, the following vulnerability has been resolved: nexthop: Initialize extack in remove_nh_grp_entry() remove_nh_grp_entry() prints the exta… |
| CVE-2026-98030 | CVE-2026-98030 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: net: dsa: bcm_sf2: bound the CFP rule dump by the caller's buffer size bcm_sf2_cfp_rule_g… |
| CVE-2026-9803 | CVE-2026-9803 CVSS 5.3redhat | A flaw was found in Keycloak's ClientRegistrationAuth component. A remote unauthenticated attacker can exploit this vulnerability by sending a specially crafte… |
| CVE-2026-98029 | CVE-2026-98029 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: eth: nfp: bound the ntuple rule dump by the caller's buffer size nfp_net_get_fs_loc() dum… |
| CVE-2026-98028 | CVE-2026-98028 | In the Linux kernel, the following vulnerability has been resolved: eth: nfp: drop the replaced rule from the list when reprogramming fails nfp_net_fs_add() … |
| CVE-2026-98027 | CVE-2026-98027 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: net: dsa: mv88e6xxx: bound the policy rule dump by the caller's buffer size mv88e6xxx_get… |
| CVE-2026-98026 | CVE-2026-98026 | In the Linux kernel, the following vulnerability has been resolved: net: bridge: mcast: properly convert mglist to rcu Sashiko reported a bug [1] that br_mul… |
| CVE-2026-98025 | CVE-2026-98025 | In the Linux kernel, the following vulnerability has been resolved: net: usb: cx82310_eth: drop URB after 0xffff reboot sentinel to prevent partial_data heap … |
| CVE-2026-98024 | CVE-2026-98024 | In the Linux kernel, the following vulnerability has been resolved: s390/ism: folio_put() after error dmb->cpu_addr was allocated via folio_alloc(). Use foli… |
| CVE-2026-98023 | CVE-2026-98023 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: vxlan: reject dynamic fdb entries that reference a nexthop id The commit cited in the Fix… |
| CVE-2026-98022 | CVE-2026-98022 | In the Linux kernel, the following vulnerability has been resolved: net: cap tx_queue_len at S16_MAX to prevent oversized ring allocations Several subsystems… |
| CVE-2026-98021 | CVE-2026-98021 | In the Linux kernel, the following vulnerability has been resolved: net: reject oversized tx_queue_len at netlink parse time rtnl_create_link() assigns IFLA_… |
| CVE-2026-98020 | CVE-2026-98020 | In the Linux kernel, the following vulnerability has been resolved: pds_core: fix cmd_regs access racing BAR unmap on reset pdsc_reset_prepare() and pdsc_res… |
| CVE-2026-9802 | CVE-2026-9802 CVSS 6.8redhat | A flaw was found in Keycloak. When revokeRefreshToken=true is enabled and persistent session storage is in use, a server restart can reset internal timing mech… |
| CVE-2026-98019 | CVE-2026-98019 | In the Linux kernel, the following vulnerability has been resolved: bpf: mark a NULL call argument precise check_func_arg() allows bpf_register_is_null() for… |
| CVE-2026-98018 | CVE-2026-98018 | In the Linux kernel, the following vulnerability has been resolved: net: mctp: i3c: serialize probe with bus removal mctp_i3c_probe() drops busdevs_lock afte… |
| CVE-2026-98017 | CVE-2026-98017 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: net/sched: defer qdisc freeing after failed creation An RTM_NEWQDISC request can make cls… |
| CVE-2026-98016 | CVE-2026-98016 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free race in sample_restore_put() Concurrent teardown of TC samp… |
| CVE-2026-98015 | CVE-2026-98015 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5: E-Switch: fix use-after-free in mlx5_eswitch_termtbl_put In mlx5_eswitch_termtb… |
| CVE-2026-98014 | CVE-2026-98014 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5: E-Switch, prevent mc_list repopulation during vport disable In mlx5_esw_vport_d… |
| CVE-2026-98013 | CVE-2026-98013 | In the Linux kernel, the following vulnerability has been resolved: net/sched: fq_pie: clamp quantum in change path fq_pie_change() accepts any quantum value… |
| CVE-2026-98012 | CVE-2026-98012 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sfq: clamp quantum in change path sfq_change() accepts any non-negative quantu… |
| CVE-2026-98011 | CVE-2026-98011 | In the Linux kernel, the following vulnerability has been resolved: net/sched: hhf: clamp quantum in change and init paths hhf_change() accepts any quantum f… |
| CVE-2026-98010 | CVE-2026-98010 | In the Linux kernel, the following vulnerability has been resolved: net/sched: drr: clamp quantum in change class drr_change_class() rejects explicit quantum… |
| CVE-2026-9801 | CVE-2026-9801 CVSS 4.9redhat | A flaw was found in Keycloak. A remote attacker with high privileges, such as a realm administrator configuring a malicious Lightweight Directory Access Protoc… |
| CVE-2026-98009 | CVE-2026-98009 | In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: clamp quantum in parse and fallback paths ets_qdisc_change() falls back t… |
| CVE-2026-98008 | CVE-2026-98008 | In the Linux kernel, the following vulnerability has been resolved: net: macb: fix NULL pointer dereference on unbind with fixed-link When the device tree de… |
| CVE-2026-98007 | CVE-2026-98007 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject non-scalar bpf_loop iteration counts bpf_loop() declares its nr_loops argumen… |
| CVE-2026-98006 | CVE-2026-98006 | In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: Decoupling ep1_in_urb in caiaq dev The epq_in_urb object belonging to the ca… |
| CVE-2026-98005 | CVE-2026-98005 | In the Linux kernel, the following vulnerability has been resolved: erofs: delimit inode_share cache key components Previously, inode_share keys were encoded… |
| CVE-2026-98004 | CVE-2026-98004 | In the Linux kernel, the following vulnerability has been resolved: iommu/riscv: Serialize command queue publishing Serialize command queue publishing so sof… |
| CVE-2026-98003 | CVE-2026-98003 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Do not reallocate GA log buffers on resume Commit c5e1a1eb9279 ("iommu/amd: Si… |
| CVE-2026-98002 | CVE-2026-98002 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix ineffective error check in nested domain allocation amd_iommu_pdom_id_allo… |
| CVE-2026-98001 | CVE-2026-98001 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (ltc4282) Make sure clk_init_data is fully initialized The clk_init_data structure… |
| CVE-2026-98000 | CVE-2026-98000 | In the Linux kernel, the following vulnerability has been resolved: hwmon: Fix potential UAF in pec_store Sashiko reports: In pec_store(), a guard(mutex)(&h… |
| CVE-2026-9800 | CVE-2026-9800 CVSS 8.1redhat | A flaw was found in Keycloak Policy Enforcer. This vulnerability allows any authenticated user to bypass all authorization policies, including role, scope, and… |
| CVE-2026-97998 | CVE-2026-97998 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_log: cope with concurrent instance destruction Instances are refcoun… |
| CVE-2026-97997 | CVE-2026-97997 | In the Linux kernel, the following vulnerability has been resolved: virtio_ring: fix stale descriptor flags after a failed packed add In a packed ring the AV… |
| CVE-2026-97996 | CVE-2026-97996 | In the Linux kernel, the following vulnerability has been resolved: virtio: fix use-after-free in unregister_virtio_device() device_unregister() is device_de… |
| CVE-2026-97995 | CVE-2026-97995 | In the Linux kernel, the following vulnerability has been resolved: virtio_console: do not free control-out buffers on remove __send_control_msg() publishes … |
| CVE-2026-97994 | CVE-2026-97994 | In the Linux kernel, the following vulnerability has been resolved: vhost/vdpa: reject VRING_NUM larger than device max vhost_vring_set_num() accepts any non… |
| CVE-2026-97993 | CVE-2026-97993 | In the Linux kernel, the following vulnerability has been resolved: vhost-vdpa: don't install the eventfd_ctx_fdget() error in config_ctx vhost_vdpa_set_conf… |
| CVE-2026-97992 | CVE-2026-97992 | In the Linux kernel, the following vulnerability has been resolved: vhost-vdpa: protect config_ctx from being freed under the config callback vhost_vdpa_conf… |
| CVE-2026-97991 | CVE-2026-97991 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: vdpa_sim_blk: reject out-of-range sector starts vdpasim_blk_check_range() logs an invalid… |