87,929 indexed
CVECVE vulnerabilities
87,929 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 551–600 of 87,929 · page 12 of 1759
| ID | Title | Summary |
|---|---|---|
| CVE-2026-97990 | CVE-2026-97990 CVSS 7.5 | In the Linux kernel, the following vulnerability has been resolved: vdpa_sim_net: check TX pull result before RX copy vringh_iov_pull_iotlb() returns a signe… |
| CVE-2026-9799 | CVE-2026-9799 CVSS 4.6redhat | A flaw was found in org.keycloak.authorization. An authenticated user with a granted User-Managed Access (UMA) permission ticket for one resource can exploit t… |
| CVE-2026-97989 | CVE-2026-97989 | In the Linux kernel, the following vulnerability has been resolved: vduse: validate virtqueue alignment vduse_validate_config() only checks the upper bound o… |
| CVE-2026-97988 | CVE-2026-97988 | In the Linux kernel, the following vulnerability has been resolved: vhost: invalidate vring access on IOTLB transitions When VIRTIO_F_ACCESS_PLATFORM changes… |
| CVE-2026-97987 | CVE-2026-97987 | In the Linux kernel, the following vulnerability has been resolved: virtio_input: reset device if input_register_device() fails Probe marks the device DRIVER… |
| CVE-2026-97986 | CVE-2026-97986 | In the Linux kernel, the following vulnerability has been resolved: virtio_input: stop callbacks before unregistering input device virtinput_remove() unregis… |
| CVE-2026-97985 | CVE-2026-97985 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Update last skb marker in manage_oob(). Fahad Alharbi reported that blocking rec… |
| CVE-2026-97984 | CVE-2026-97984 | In the Linux kernel, the following vulnerability has been resolved: net: ipv6: Fix UDP length overflow with PMTU discover and big MTU This commit bounds cork… |
| CVE-2026-97983 | CVE-2026-97983 | In the Linux kernel, the following vulnerability has been resolved: vduse: return compat ioctl results directly The compat handler handles VDUSE_IOTLB_GET_FD… |
| CVE-2026-97982 | CVE-2026-97982 | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Fix budget accounting The gmac_rx() function returns the remainin… |
| CVE-2026-97981 | CVE-2026-97981 | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Count dropped frames as NAPI work The RX loop only consumes budge… |
| CVE-2026-97980 | CVE-2026-97980 | In the Linux kernel, the following vulnerability has been resolved: s390/debug: Fix NULL pointer dereference in debug_set_level() Commit a2cec6863709 ("s390/… |
| CVE-2026-9798 | CVE-2026-9798 CVSS 4.3redhat | A flaw was found in Keycloak, an open-source identity and access management solution. When a user account is temporarily locked due to repeated failed login at… |
| CVE-2026-97979 | CVE-2026-97979 | In the Linux kernel, the following vulnerability has been resolved: ice: add missing xa_destroy for sched_node_ids Commit 16dfa49406bc ("ice: Introduce new p… |
| CVE-2026-97978 | CVE-2026-97978 | In the Linux kernel, the following vulnerability has been resolved: eth: ice: don't dereference pointers from TP_printk() After forwarding net-next during th… |
| CVE-2026-97977 | CVE-2026-97977 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: Fix UAF of btusb_data by rx_work btusb_close() and btusb_flush() cancel… |
| CVE-2026-97976 | CVE-2026-97976 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel_pcie: validate packet_len before skb_put_data btintel_pcie_submit_rx_w… |
| CVE-2026-97975 | CVE-2026-97975 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sysfs: Fix NULL pointer dereference in device_del() A NULL pointer derefer… |
| CVE-2026-97974 | CVE-2026-97974 | In the Linux kernel, the following vulnerability has been resolved: ipv6: null-check fib6_node before accessing in __ip6_del_rt_siblings() syzbot reported a … |
| CVE-2026-97973 | CVE-2026-97973 | In the Linux kernel, the following vulnerability has been resolved: net: macb: destroy the phylink instance on the probe error path macb_mii_init() creates a… |
| CVE-2026-97972 | CVE-2026-97972 | In the Linux kernel, the following vulnerability has been resolved: net: macb: put the "mdio" child node reference on success macb_mii_init() holds the refer… |
| CVE-2026-97971 | CVE-2026-97971 CVSS 7.8 | In the Linux kernel, the following vulnerability has been resolved: nstree: check listing permission before taking a namespace reference legitimize_ns() take… |
| CVE-2026-97970 | CVE-2026-97970 | In the Linux kernel, the following vulnerability has been resolved: watchdog: msc313e: Avoid division by zero clk_get_rate() could return 0. Avoid a divisio… |
| CVE-2026-97969 | CVE-2026-97969 | In the Linux kernel, the following vulnerability has been resolved: watchdog: msc313e: Fix clock leak and spurious timer in settimeout() msc313e_wdt_settimeo… |
| CVE-2026-97968 | CVE-2026-97968 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (corsair-cpro) Create debugfs entries after hwmon registration ccp_debugfs_init() … |
| CVE-2026-97967 | CVE-2026-97967 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (corsair-cpro) Remove debugfs entries when probe fails ccp_debugfs_init() register… |
| CVE-2026-97966 | CVE-2026-97966 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: reset HTB scheduler topology before freeing queues HTB offload programs NIX… |
| CVE-2026-97965 | CVE-2026-97965 | In the Linux kernel, the following vulnerability has been resolved: vxlan: initialize _md in vxlan_xmit_one() If a VXLAN device is configured with both VXLAN… |
| CVE-2026-97964 | CVE-2026-97964 | In the Linux kernel, the following vulnerability has been resolved: ppp_synctty: ensure a writeable skb header ppp_sync_txmunge() checks headroom before prep… |
| CVE-2026-97963 | CVE-2026-97963 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: initialize ptp_lock at probe time priv->ptp_lock is only initialized in stmm… |
| CVE-2026-97962 | CVE-2026-97962 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Move representor vnic reporter to eswitch devlink port The representor vnic de… |
| CVE-2026-97961 | CVE-2026-97961 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Allow list_del during perf_event_overflow() A PMU might use perf_sched_cb_inc(… |
| CVE-2026-97960 | CVE-2026-97960 | In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel: Prevent drain_pebs() reentry The PEBS buffer is shared by all events on a… |
| CVE-2026-9796 | CVE-2026-9796 CVSS 6.5redhat | A flaw was found in Keycloak. An authenticated administrator with the `manage-clients` role can exploit a Time-of-check to time-of-use (TOCTOU) vulnerability i… |
| CVE-2026-97959 | CVE-2026-97959 | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_route: free emptied bucket on filter move route4_change can move an existi… |
| CVE-2026-97958 | CVE-2026-97958 | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: Don't replay RTM_GETCHAIN in tc_ctl_chain(). If a netlink socket send… |
| CVE-2026-97957 | CVE-2026-97957 CVSS 8.8 | In the Linux kernel, the following vulnerability has been resolved: net: hinic: fix mailbox segment buffer overflow check_mbox_seq_id_and_seg_len() validates… |
| CVE-2026-97956 | CVE-2026-97956 | In the Linux kernel, the following vulnerability has been resolved: net: net_failover: Fix the deadlock in net_failover_slave_name_change() This is a sibling… |
| CVE-2026-97955 | CVE-2026-97955 | In the Linux kernel, the following vulnerability has been resolved: net: mana: restore the XDP program pointer when pre-allocation fails mana_xdp_set() publi… |
| CVE-2026-97954 | CVE-2026-97954 | In the Linux kernel, the following vulnerability has been resolved: net/rds: fix tcp stream corruption with large pages rds_message_map_pages() assigns PAGE_… |
| CVE-2026-97953 | CVE-2026-97953 CVSS 7.0 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix TX descriptor availability check for TSO traffic stmmac_tso_xmit() estim… |
| CVE-2026-97952 | CVE-2026-97952 | In the Linux kernel, the following vulnerability has been resolved: sunvdc: unmap LDC cookies when the descriptor send fails __send_request() maps the reques… |
| CVE-2026-97951 | CVE-2026-97951 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix hang for aborted WRITE_PENDING commands When a LUN_RESET aborts … |
| CVE-2026-97950 | CVE-2026-97950 | In the Linux kernel, the following vulnerability has been resolved: configfs: pin the symlink target's dirent instead of chasing ->ci_dentry create_link() re… |
| CVE-2026-9795 | CVE-2026-9795 CVSS 7.3redhat | A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. An administrator with limited client management permissions can exploit this vu… |
| CVE-2026-97949 | CVE-2026-97949 | In the Linux kernel, the following vulnerability has been resolved: configfs: unhash the dentry before dropping the item in rmdir configfs_get_config_item() … |
| CVE-2026-97948 | CVE-2026-97948 | In the Linux kernel, the following vulnerability has been resolved: powerpc/eeh: Fix recursive locking on devices without EEH sensitive driver The commit 101… |
| CVE-2026-97947 | CVE-2026-97947 | In the Linux kernel, the following vulnerability has been resolved: x86/amd_node: Fix potential NULL pointer dereference amd_smn_read/write() are exported fu… |
| CVE-2026-97946 | CVE-2026-97946 | In the Linux kernel, the following vulnerability has been resolved: x86/amd_node: Fix PCI device reference counting in amd_smn_init() The local "root" pointe… |
| CVE-2026-97945 | CVE-2026-97945 | In the Linux kernel, the following vulnerability has been resolved: x86/mm: Fix user-space data loss with MADV_FREE and THP Some of users of Polars (a data a… |