CVE-2026-64584 usb: gadget: f_midi: cancel pending IN work before freeing the midi object MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64583 usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64604 KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64590 dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64577 gtp: check skb_pull_data() return in gtp1u_send_echo_resp() MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64567 btrfs: reject free space cache with more entries than pages MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64569 mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n MSRC Security Update Guide 9 août 2026 à 10:43 Information published.
CVE-2026-64572 ipv4: fib: free fib_alias with kfree_rcu() on insert error path MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64573 Bluetooth: qca: fix NVM tag length underflow in TLV parser MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64574 wifi: mac80211: tear down new links on vif update error path MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64580 xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst() MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64576 nexthop: initialize extack in nh_res_bucket_migrate() MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64579 xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64571 wifi: p54: validate RX frame length in p54_rx_eeprom_readback() MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64578 ksmbd: validate compound request size before reading StructureSize2 MSRC Security Update Guide 9 août 2026 à 10:42 Information published.
CVE-2026-64562 KVM: nVMX: Hide shadow VMCS right after VMCLEAR MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-64565 Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-64564 sctp: don't free the ASCONF's own transport in DEL-IP processing MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-64561 KVM: x86: Check for invalid/obsolete root *after* making MMU pages available MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-64560 posix-cpu-timers: Prevent UAF caused by non-leader exec() race MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-64542 ipv6: ndisc: fix NULL deref in accept_untracked_na() MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-15788 WCOW cache mount source selector resolves NTFS junctions outside of cache root MSRC Security Update Guide 9 août 2026 à 10:41 Information published.
CVE-2026-26081 HAProxy Community Edition 3.0 through 3.3 before 3.3.3 lacks a length check for the NEW_TOKEN format. HAProxy Enterprise and ALOHA are also affected. MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-26080 HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected. MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-15588 Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-63308 Helm Files.Lines Denial of Service via Empty Chart Files MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-53910 Heap-based Buffer Overflow in GNU diffutils MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-62994 CoreDNS `k8s_external` headless AXFR can emit an empty transfer batch that panics the `transfer` plugin MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-63136 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-63263 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-63140 Reachable Assertion in Elasticsearch Leading to Denial of Service MSRC Security Update Guide 9 août 2026 à 10:40 Information published.
CVE-2026-18839 Popt-devel: popt-static: size_t underflow in singleoptionhelp MSRC Security Update Guide 9 août 2026 à 10:03 Information published.
CVE-2026-44605 Rpm: heap buffer overflow in ndb slot table parsing MSRC Security Update Guide 9 août 2026 à 10:03 Information published.
CVE-2026-71227 Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return MSRC Security Update Guide 9 août 2026 à 10:03 Information published.
CVE-2026-71226 Libkcapi: memory corruption via uncanceled aio requests on error in libkcapi's one-shot aio path MSRC Security Update Guide 9 août 2026 à 10:03 Information published.
CVE-2026-71225 Libkcapi: iv reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries MSRC Security Update Guide 9 août 2026 à 10:03 Information published.
CVE-2026-54876 Client-Side Memory Leak in OCSP Response Checking MSRC Security Update Guide 9 août 2026 à 10:03 Information published.
CVE-2026-68082 libceph: fix two unsafe bare decodes in decode_lockers() MSRC Security Update Guide 9 août 2026 à 10:02 Information published.
CVE-2026-68081 KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state MSRC Security Update Guide 9 août 2026 à 10:02 Information published.
CVE-2026-34502 Apache Portable Runtime Utility: Heap buffer overflow in APR memcached client MSRC Security Update Guide 9 août 2026 à 10:02 Information published.