linux

15,098 tracked vulnerabilities.

CVE-2026-31639 MEDIUM
rxrpc: Fix key reference count leak from call->key
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31638 HIGH
rxrpc: Only put the call ref if one was acquired
Apr 24, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-31637 CRITICAL
rxrpc: reject undecryptable rxkad response tickets
Apr 24, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-31636 CRITICAL
rxrpc: fix RESPONSE authenticator parser OOB read
Apr 24, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-31635 HIGH
rxrpc: fix oversized RESPONSE authenticator length check
Apr 24, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-31634 MEDIUM
rxrpc: fix reference count leak in rxrpc_server_keyring()
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31633 CRITICAL
rxrpc: Fix integer overflow in rxgk_verify_response()
Apr 24, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-31632 MEDIUM
rxrpc: Fix leak of rxgk context in rxgk_verify_response()
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31631 HIGH
rxrpc: Fix buffer overread in rxgk_do_verify_authenticator()
Apr 24, 2026
CVSS 8.2
EPSS 0.00
CVE-2026-31630 HIGH
rxrpc: proc: size address buffers for %pISpc output
Apr 24, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-31629 HIGH
nfc: llcp: add missing return after LLCP_CLOSED checks
Apr 24, 2026
CVSS 8.8
EPSS 0.00
CVE-2026-31628 MEDIUM
x86/CPU: Fix FPDSS on Zen1
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31627 HIGH
i2c: s3c24xx: check the size of the SMBUS message before using it
Apr 24, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-31626 HIGH
staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_verify()
Apr 24, 2026
CVSS 7.1
EPSS 0.00
CVE-2026-31625 MEDIUM
HID: alps: fix NULL pointer dereference in alps_raw_event()
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31624 MEDIUM
HID: core: clamp report_size in s32ton() to avoid undefined shift
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31623 MEDIUM
net: usb: cdc-phonet: fix skb frags[] overflow in rx_complete()
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31622 HIGH
NFC: digital: Bounds check NFC-A cascade depth in SDD response handler
Apr 24, 2026
CVSS 8.8
EPSS 0.00
CVE-2026-31621 MEDIUM
bnge: return after auxiliary_device_uninit() in error path
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31620 MEDIUM
ALSA: usx2y: us144mkii: fix NULL deref on missing interface 0
Apr 24, 2026
CVSS 4.6
EPSS 0.00
CVE-2026-31619 MEDIUM
ALSA: fireworks: bound device-supplied status before string array lookup
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31618 MEDIUM
fbdev: tdfxfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31617 MEDIUM
usb: gadget: f_ncm: validate minimum block_len in ncm_unwrap_ntb()
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31616 MEDIUM
usb: gadget: f_phonet: fix skb frags[] overflow in pn_rx_complete()
Apr 24, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-31615 MEDIUM
usb: gadget: renesas_usb3: validate endpoint index in standard request handlers
Apr 24, 2026
CVSS 5.5
EPSS 0.00