<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Linux Kernel</title>
  <link>https://cvedaily.com/pages/tags/linux.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/linux.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Linux Kernel</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:28 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-45702 – OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45702</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45702</guid>
    <pubDate>Wed, 03 Jun 2026 19:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-45702</strong></p>
  <p>OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 4.3.0 and prior to version 4.11.0, a type confusion vulnerability exists in OP-TEE OS when processing an FFA_MEM_SHARE request from the normal world. This only applies when OP-TEE is configured as an SPMC for S-EL0 SP…</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-843</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45702">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-45614 – OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45614</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45614</guid>
    <pubDate>Wed, 03 Jun 2026 19:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-45614</strong></p>
  <p>OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Prior to version 4.11.0, on many of the ECDH shared secret paths, the public key isn't verified to be a point on the correct curve. By passing approximately 30-40 crafted public keys to OP-TEE, the private key can be reconstructed by a n…</p>
  <p><strong>CVSS:</strong> 4.7 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45614">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46273 – In the Linux kernel, the following vulnerability has been resolved:

ibmveth: Di...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46273</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46273</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46273</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  ibmveth: Disable GSO for packets with small MSS  Some physical adapters on Power systems do not support segmentation offload when the MSS is less than 224 bytes. Attempting to send such packets causes the adapter to freeze, stopping all traffic until manually reset.  Implement ndo_features_check to disable GSO for packets with s…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46273">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46272 – In the Linux kernel, the following vulnerability has been resolved:

coresight: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46272</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46272</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46272</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  coresight: tmc-etr: Fix race condition between sysfs and perf mode  When trying to run perf and sysfs mode simultaneously, the WARN_ON() in tmc_etr_enable_hw() is triggered sometimes:   WARNING: CPU: 42 PID: 3911571 at drivers/hwtracing/coresight/coresight-tmc-etr.c:1060 tmc_etr_enable_hw+0xc0/0xd8 [coresight_tmc]  [..snip..]  C…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46272">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46271 – In the Linux kernel, the following vulnerability has been resolved:

wifi: ath12...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46271</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46271</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46271</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  wifi: ath12k: do WoW offloads only on primary link  In case of multi-link connection, WCN7850 firmware crashes due to WoW offloads enabled on both primary and secondary links.  Change to do it only on primary link to fix it.  Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.1.c5-00284-QCAHMTSWPL_V1.0_V2.0_SILICONZ-1</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46271">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46270 – In the Linux kernel, the following vulnerability has been resolved:

power: supp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46270</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46270</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46270</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  power: supply: rt9455: Fix use-after-free in power_supply_changed()  Using the `devm_` variant for requesting IRQ _before_ the `devm_` variant for allocating/registering the `power_supply` handle, means that the `power_supply` handle will be deallocated/unregistered _before_ the interrupt handler (since `devm_` naturally dealloc…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46270">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46269 – In the Linux kernel, the following vulnerability has been resolved:

pinctrl: ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46269</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46269</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46269</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  pinctrl: canaan: k230: Fix NULL pointer dereference when parsing devicetree  When probing the k230 pinctrl driver, the kernel triggers a NULL pointer dereference. The crash trace showed: [    0.732084] Unable to handle kernel NULL pointer dereference at virtual address 0000000000000068 [    0.740737] ... [    0.776296] epc : k23…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46269">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46268 – In the Linux kernel, the following vulnerability has been resolved:

PCI/P2PDMA:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46268</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46268</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46268</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  PCI/P2PDMA: Fix p2pmem_alloc_mmap() warning condition  Commit b7e282378773 has already changed the initial page refcount of p2pdma page from one to zero, however, in p2pmem_alloc_mmap() it uses "VM_WARN_ON_ONCE_PAGE(!page_ref_count(page))" to assert the initial page refcount should not be zero and the following will be reported…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46268">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46267 – In the Linux kernel, the following vulnerability has been resolved:

nfc: hci: s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46267</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46267</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46267</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  nfc: hci: shdlc: Stop timers and work before freeing context  llc_shdlc_deinit() purges SHDLC skb queues and frees the llc_shdlc structure while its timers and state machine work may still be active.  Timer callbacks can schedule sm_work, and sm_work accesses SHDLC state and the skb queues. If teardown happens in parallel with a…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46267">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46266 – In the Linux kernel, the following vulnerability has been resolved:

inet: RAW s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46266</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46266</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46266</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP  Yizhou Zhao reported that simply having one RAW socket on protocol IPPROTO_RAW (255) was dangerous.    socket(AF_INET, SOCK_RAW, 255);  A malicious incoming ICMP packet can set the protocol field to 255 and match this socket, leading to FNHE cache changes.  inner = IP(…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46266">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46265 – In the Linux kernel, the following vulnerability has been resolved:

RDMA/hns: F...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46265</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46265</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46265</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  RDMA/hns: Fix WQ_MEM_RECLAIM warning  When sunrpc is used, if a reset triggered, our wq may lead the following trace:  workqueue: WQ_MEM_RECLAIM xprtiod:xprt_rdma_connect_worker [rpcrdma] is flushing !WQ_MEM_RECLAIM hns_roce_irq_workq:flush_work_handle [hns_roce_hw_v2] WARNING: CPU: 0 PID: 8250 at kernel/workqueue.c:2644 check_f…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46265">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46264 – In the Linux kernel, the following vulnerability has been resolved:

drm/xe/pf: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46264</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46264</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46264</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/xe/pf: Fix sysfs initialization  In case of devm_add_action_or_reset() failure the provided cleanup action will be run immediately on the not yet initialized kobject. This may lead to errors like:   [ ] kobject: '(null)' (ff110001393608e0): is not initialized, yet kobject_put() is being called.  [ ] WARNING: lib/kobject.c:73…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46264">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46263 – In the Linux kernel, the following vulnerability has been resolved:

drm/amd/dis...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46263</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46263</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46263</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amd/display: Fix out-of-bounds stream encoder index v3  eng_id can be negative and that stream_enc_regs[] can be indexed out of bounds.  eng_id is used directly as an index into stream_enc_regs[], which has only 5 entries. When eng_id is 5 (ENGINE_ID_DIGF) or negative, this can access memory past the end of the array.  Add a…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46263">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46262 – In the Linux kernel, the following vulnerability has been resolved:

ASoC: fsl_x...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46262</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46262</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46262</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  ASoC: fsl_xcvr: Revert fix missing lock in fsl_xcvr_mode_put()  This reverts commit f51424872760 ("ASoC: fsl_xcvr: fix missing lock in fsl_xcvr_mode_put()").  The original patch attempted to acquire the card->controls_rwsem lock in fsl_xcvr_mode_put(). However, this function is called from the upper ALSA core function snd_ctl_el…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46262">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46261 – In the Linux kernel, the following vulnerability has been resolved:

spi: wpcm-f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46261</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46261</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46261</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: wpcm-fiu: Fix potential NULL pointer dereference in wpcm_fiu_probe()  platform_get_resource_byname() can return NULL, which would cause a crash when passed the pointer to resource_size().  Move the fiu->memory_size assignment after the error check for devm_ioremap_resource() to prevent the potential NULL pointer dereference.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46261">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46260 – In the Linux kernel, the following vulnerability has been resolved:

ipv6: Fix o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46260</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46260</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46260</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  ipv6: Fix out-of-bound access in fib6_add_rt2node().  syzbot reported out-of-bound read in fib6_add_rt2node(). [0]  When IPv6 route is created with RTA_NH_ID, struct fib6_info does not have the trailing struct fib6_nh.  The cited commit started to check !iter->fib6_nh->fib_nh_gw_family to ensure that rt6_qualify_for_ecmp() will…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46260">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46259 – In the Linux kernel, the following vulnerability has been resolved:

procfs: fix...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46259</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46259</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46259</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  procfs: fix missing RCU protection when reading real_parent in do_task_stat()  When reading /proc/[pid]/stat, do_task_stat() accesses task->real_parent without proper RCU protection, which leads to:    cpu 0                               cpu 1   -----                               -----   do_task_stat     var = task->real_parent…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46259">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46258 – In the Linux kernel, the following vulnerability has been resolved:

gpio: cdev:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46258</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46258</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46258</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  gpio: cdev: Avoid NULL dereference in linehandle_create()  In linehandle_create(), there is a statement like this:   retain_and_null_ptr(lh);  Soon after, there is a debug printout that dereferences "lh", which will crash things.  Avoid the crash by using handlereq.lines, which is the same value.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46258">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46257 – In the Linux kernel, the following vulnerability has been resolved:

clocksource...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46257</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46257</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46257</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  clocksource/drivers/timer-sp804: Fix an Oops when read_current_timer is called on ARM32 platforms where the SP804 is not registered as the sched_clock.  On SP804, the delay timer shares the same clkevt instance with sched_clock. On some platforms, when sp804_clocksource_and_sched_clock_init is called with use_sched_clock not set…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46257">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46256 – In the Linux kernel, the following vulnerability has been resolved:

NFS/localio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46256</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46256</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46256</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  NFS/localio: prevent direct reclaim recursion into NFS via nfs_writepages  LOCALIO is an NFS loopback mount optimization that avoids using the network for READ, WRITE and COMMIT if the NFS client and server are determined to be on the same system. But because LOCALIO is still fundamentally "just NFS loopback mount" it is suscept…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46256">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46255 – In the Linux kernel, the following vulnerability has been resolved:

dmaengine: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46255</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46255</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46255</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  dmaengine: fsl-edma: don't explicitly disable clocks in .remove()  The clocks in fsl_edma_engine::muxclk are allocated and enabled with devm_clk_get_enabled(), which automatically cleans these resources up, but these clocks are also manually disabled in fsl_edma_remove(). This causes warnings on driver removal for each clock:…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46255">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46254 – In the Linux kernel, the following vulnerability has been resolved:

AppArmor: A...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46254</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46254</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46254</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  AppArmor: Allow apparmor to handle unaligned dfa tables  The dfa tables can originate from kernel or userspace and 8-byte alignment isn't always guaranteed and as such may trigger unaligned memory accesses on various architectures. Resulting in the following  [   73.901376] WARNING: CPU: 0 PID: 341 at security/apparmor/match.c:3…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46254">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46253 – In the Linux kernel, the following vulnerability has been resolved:

pstore/ram:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46253</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46253</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  pstore/ram: fix buffer overflow in persistent_ram_save_old()  persistent_ram_save_old() can be called multiple times for the same persistent_ram_zone (e.g., via ramoops_pstore_read -> ramoops_get_next_prz for PSTORE_TYPE_DMESG records).  Currently, the function only allocates prz->old_log when it is NULL, but it unconditionally…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46253">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46252 – In the Linux kernel, the following vulnerability has been resolved:

regulator: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46252</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46252</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46252</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  regulator: core: fix locking in regulator_resolve_supply() error path  If late enabling of a supply regulator fails in regulator_resolve_supply(), the code currently triggers a lockdep warning:      WARNING: drivers/regulator/core.c:2649 at _regulator_put+0x80/0xa0, CPU#6: kworker/u32:4/596     ...     Call trace:      _regulato…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46252">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46251 – In the Linux kernel, the following vulnerability has been resolved:

btrfs: fix ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46251</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46251</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46251</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  btrfs: fix block_group_tree dirty_list corruption  When the incompat flag EXTENT_TREE_V2 is set, we unconditionally add the block group tree to the switch_commits list before calling switch_commit_roots, as we do for the tree root and the chunk root. However, the block group tree uses normal root dirty tracking and in any transa…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46251">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46250 – In the Linux kernel, the following vulnerability has been resolved:

MIPS: Work ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46250</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46250</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46250</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  MIPS: Work around LLVM bug when gp is used as global register variable  On MIPS, __current_thread_info is defined as global register variable locating in $gp, and is simply assigned with new address during kernel relocation.  This however is broken with LLVM, which always restores $gp if it finds $gp is clobbered in any form, in…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46250">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46249 – In the Linux kernel, the following vulnerability has been resolved:

octeontx2-a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46249</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46249</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46249</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  octeontx2-af: Fix PF driver crash with kexec kernel booting  During a kexec reboot the hardware is not power-cycled, so AF state from the old kernel can persist into the new kernel. When AF and PF drivers are built as modules, the PF driver may probe before AF reinitializes the hardware.  The PF driver treats the RVUM block revi…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46249">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46248 – In the Linux kernel, the following vulnerability has been resolved:

wifi: ath12...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46248</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46248</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46248</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  wifi: ath12k: clear stale link mapping of ahvif->links_map  When an arvif is initialized in non-AP STA mode but MLO connection preparation fails before the arvif is created (arvif->is_created remains false), the error path attempts to delete all links. However, link deletion only executes when arvif->is_created is true. As a res…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46248">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46247 – In the Linux kernel, the following vulnerability has been resolved:

clk: qcom: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46247</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46247</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46247</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  clk: qcom: gfx3d: add parent to parent request map  After commit d228ece36345 ("clk: divider: remove round_rate() in favor of determine_rate()") determining GFX3D clock rate crashes, because the passed parent map doesn't provide the expected best_parent_hw clock (with the roundd_rate path before the offending commit the best_par…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46247">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46246 – In the Linux kernel, the following vulnerability has been resolved:

power: supp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46246</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46246</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46246</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  power: supply: pm8916_lbc: Fix use-after-free for extcon in IRQ handler  Using the `devm_` variant for requesting IRQ _before_ the `devm_` variant for allocating/registering the `extcon` handle, means that the `extcon` handle will be deallocated/unregistered _before_ the interrupt handler (since `devm_` naturally deallocates in…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46246">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46245 – In the Linux kernel, the following vulnerability has been resolved:

drm/amd/dis...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46245</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46245</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46245</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amd/display: Fix dc_link NULL handling in HPD init  amdgpu_dm_hpd_init() may see connectors without a valid dc_link.  The code already checks dc_link for the polling decision, but later unconditionally dereferences it when setting up HPD interrupts.  Assign dc_link early and skip connectors where it is NULL.  Fixes the below…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46245">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46244 – In the Linux kernel, the following vulnerability has been resolved:

netfilter: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46244</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46244</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46244</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  netfilter: nft_inner: Fix IPv6 inner_thoff desync  In nft_inner_parse_l2l3(), when processing inner IPv6 packets, ipv6_find_hdr() correctly computes the transport header offset traversing all extension headers, but the result is immediately overwritten with nhoff + sizeof(_ip6h) (40 bytes), which only accounts for the IPv6 base…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46244">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40290 – OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40290</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40290</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40290</strong></p>
  <p>OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.16.0 and prior to 4.11.0, a user-after-free (UAF) race condition exists in the shared memory teardown logic of FF-A  within OP-TEE SPMC/SP flows. This only applies when OP-TEE is configured as an SPMC for S-EL0 SPs,…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40290">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2025-71314 – In the Linux kernel, the following vulnerability has been resolved:

drm/panthor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-71314</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-71314</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2025-71314</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/panthor: Recover from panthor_gpu_flush_caches() failures  We have seen a few cases where the whole memory subsystem is blocked and flush operations never complete. When that happens, we want to:  - schedule a reset, so we can recover from this situation - in the reset path, we need to reset the pending_reqs so we can send…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-71314">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2025-71313 – In the Linux kernel, the following vulnerability has been resolved:

PCI: endpoi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-71313</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-71313</guid>
    <pubDate>Wed, 03 Jun 2026 18:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2025-71313</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  PCI: endpoint: Add missing NULL check for alloc_workqueue()  alloc_workqueue() can return NULL on memory allocation failure. Without proper error checking, this may lead to a NULL pointer dereference when queue_work() is later called with the NULL workqueue pointer in epf_ntb_epc_init().  Add a NULL check immediately after alloc…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-71313">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8036 – Improper input validation in NI-PAL may allow a local authenticated user to acce...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8036</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8036</guid>
    <pubDate>Tue, 02 Jun 2026 20:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8036</strong></p>
  <p>Improper input validation in NI-PAL may allow a local authenticated user to access arbitrary system memory, potentially leading to privilege escalation. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-1285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8036">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8035 – Improper input validation in the NI-PAL kernel driver may allow a local authenti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8035</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8035</guid>
    <pubDate>Tue, 02 Jun 2026 20:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8035</strong></p>
  <p>Improper input validation in the NI-PAL kernel driver may allow a local authenticated user to cause a denial of service by triggering a crash due to a NULL pointer dereference. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8035">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46243 – In the Linux kernel, the following vulnerability has been resolved:

smb: client...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46243</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46243</guid>
    <pubDate>Mon, 01 Jun 2026 17:17:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46243</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  smb: client: reject userspace cifs.spnego descriptions  cifs.spnego key descriptions contain authority-bearing fields such as pid, uid, creduid, and upcall_target that cifs.upcall treats as kernel-originating inputs. However, userspace can also create keys of this type through request_key(2) or add_key(2), allowing those fields…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46243">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-0826 – In certain scenarios when the admin has enabled Interactive Connectivity Establi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-0826</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-0826</guid>
    <pubDate>Mon, 01 Jun 2026 15:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-0826</strong></p>
  <p>In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could enable                remote code execution on Poly Voice products on the Linux platform.</p>
  <p><strong>CVSS:</strong> 9.2 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0826">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46242 – In the Linux kernel, the following vulnerability has been resolved:

eventpoll: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46242</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46242</guid>
    <pubDate>Sat, 30 May 2026 13:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46242</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  eventpoll: fix ep_remove struct eventpoll / struct file UAF  ep_remove() (via ep_remove_file()) cleared file->f_ep under file->f_lock but then kept using @file inside the critical section (is_file_epoll(), hlist_del_rcu() through the head, spin_unlock). A concurrent __fput() taking the eventpoll_release() fastpath in that window…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46242">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-10056 – CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-10056</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-10056</guid>
    <pubDate>Fri, 29 May 2026 09:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-10056</strong></p>
  <p>CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when running in the default Standard security mode, on Linux and Windows allows an unauthenticated remote attacker to steal the session token of an authenticated user and perform Administrator Account Takeover via a malicious cross-origin web page visited by the victim. The High security mode is not affect…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-942</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-10056">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-9988 – Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9988</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9988</guid>
    <pubDate>Thu, 28 May 2026 23:16:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-9988</strong></p>
  <p>Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9988">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-47337 – Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47337</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47337</guid>
    <pubDate>Thu, 28 May 2026 19:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-47337</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the handling of AF_INET/AF_INET6 socket mediation. The bug can be triggered by an unprivileged local user. This can lead to a kernel oops.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47337">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-47336 – Ubuntu Linux 6.8 contains SAUCE patches with a possible use of an uninitialized ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47336</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47336</guid>
    <pubDate>Thu, 28 May 2026 19:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-47336</strong></p>
  <p>Ubuntu Linux 6.8 contains SAUCE patches with a possible use of an uninitialized variable in AppArmor AF_INET/AF_INET6 socket mediation code. The bug can be triggered by an unprivileged local user and could result in incorrect fine-grained mediation of network sockets.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-457</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47336">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-47335 – Ubuntu Linux 6.8 contains SAUCE patches with a possible NULL pointer dereference...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47335</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47335</guid>
    <pubDate>Thu, 28 May 2026 19:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-47335</strong></p>
  <p>Ubuntu Linux 6.8 contains SAUCE patches with a possible NULL pointer dereference in the handling of AppArmor notifications. The bug can be triggered by an unprivileged local user. This can lead to a kernel panic.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47335">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-47334 – Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47334</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47334</guid>
    <pubDate>Thu, 28 May 2026 19:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-47334</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly sleep while holding a spinlock in notification handling code. The bug can be triggered by an unprivileged local user and can result in kernel panic or deadlock.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-833</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47334">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-47333 – Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentia...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47333</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47333</guid>
    <pubDate>Thu, 28 May 2026 19:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-47333</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly compute the size of an internal buffer, leading to a heap memory out-of-bounds read in notification handling code. The bug can be triggered by an unprivileged local user and can result in invalid data being processed by the AppArmor DFA policy engine.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47333">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-47332 – Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47332</guid>
    <pubDate>Thu, 28 May 2026 19:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-47332</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly validate the size of an internal structure, leading to an out-of-bounds read in notification handling code. The bug can be triggered by an unprivileged local user and can result in information disclosure from adjacent slab objects.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-47331 – Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock wh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47331</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47331</guid>
    <pubDate>Thu, 28 May 2026 19:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-47331</strong></p>
  <p>Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linked list. An unprivileged local user could trigger the race condition that can lead to a use-after-free (UAF) and, theoretically, arbitrary code execution.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47331">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-47330 – Ubuntu Linux 6.8, 7.17 and 7.0 contain AppArmor SAUCE patches which can, under c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47330</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47330</guid>
    <pubDate>Thu, 28 May 2026 19:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-47330</strong></p>
  <p>Ubuntu Linux 6.8, 7.17 and 7.0 contain AppArmor SAUCE patches which can, under certain circumstances, use an uninitialized variable in notification handling code. The bug can be triggered by an unprivileged local user and can result in the incorrect caching of AppArmor notification responses.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-457</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47330">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-47329 – Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to validate inva...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47329</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47329</guid>
    <pubDate>Thu, 28 May 2026 19:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-47329</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to validate invalid sizes of the name field in AppAmor notification responses. The bug can be triggered by an unprivileged local user and could result in handling of crafted responses.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47329">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-47328 – Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47328</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47328</guid>
    <pubDate>Thu, 28 May 2026 19:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-47328</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly attempt to free a pointer which was not previously kmalloc()d, while at the same time leaking allocated memory. The bug can be triggered by an unprivileged local user and can result in the corruption of slab metadata and could lead to resource exhaustion.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-590</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47328">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-47327 – Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47327</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47327</guid>
    <pubDate>Thu, 28 May 2026 19:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-47327</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible NULL pointer dereference in the handling of AppArmor notifications. The bug can be triggered by an unprivileged local user. This can lead to a kernel oops.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47327">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-47326 – Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a memory leak in the h...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47326</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47326</guid>
    <pubDate>Thu, 28 May 2026 19:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-47326</strong></p>
  <p>Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a memory leak in the handling of big responses to AppArmor notifications. The bug can be triggered by an unprivileged local user. The memory leak could lead to resource exhaustion.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47326">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44543 – Local Path Provisioner provides a way for the Kubernetes users to utilize the lo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44543</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44543</guid>
    <pubDate>Thu, 28 May 2026 17:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44543</strong></p>
  <p>Local Path Provisioner provides a way for the Kubernetes users to utilize the local storage in each node. Prior to 0.0.36, a malicious user with permission to edit the local-path-config ConfigMap in the local-path-storage namespace can manipulate the helperPod.yaml template used by rancher/local-path-provisioner. The helperPod.yaml template is loaded by the provisioner and used to create HelperPo…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44543">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46241 – In the Linux kernel, the following vulnerability has been resolved:

spi: mpc52x...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46241</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46241</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46241</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: mpc52xx: fix use-after-free on registration failure  Make sure to disable and free the interrupts in case controller registration fails to avoid a potential use-after-free and resource leak.  This issue was flagged by Sashiko when reviewing a controller deregistration fix.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46241">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46240 – In the Linux kernel, the following vulnerability has been resolved:

media: iris...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46240</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46240</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46240</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  media: iris: Fix use-after-free in iris_release_internal_buffers()  The recent change in commit 1dabf00ee206 ("media: iris: gen1: Destroy internal buffers after FW releases") introduced a regression where session_release_buf() may free the buffer. The caller, iris_release_internal_buffers(), continued to access `buffer` after th…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46240">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46239 – In the Linux kernel, the following vulnerability has been resolved:

media: i2c:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46239</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46239</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46239</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  media: i2c: ov5647: Fix runtime PM refcount leak in s_ctrl  Three control cases (AUTOGAIN, EXPOSURE_AUTO, ANALOGUE_GAIN) directly return without calling pm_runtime_put(), causing runtime PM reference count leaks.  Change these cases from 'return' to 'ret = ... break' pattern to ensure pm_runtime_put() is always called before fun…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46239">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46238 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46238</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46238</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46238</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: stop caching unowned originator pointers in BAT IV  BAT IV keeps the last-hop neighbor address in each neigh_node, but some paths also cache an originator pointer derived from a temporary lookup. That pointer is not owned by the neigh_node and may no longer refer to a live originator entry after purge handling runs.…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46238">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46237 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46237</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46237</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu/vcn3: Avoid overflow on msg bound check  As pointed out by SDL, the previous condition may be vulnerable to overflow.  (cherry picked from commit db00257ac9e4a51eb2515aaea161a019f7125e10)</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46236 – In the Linux kernel, the following vulnerability has been resolved:

media: rc: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46236</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46236</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46236</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  media: rc: xbox_remote: heed DMA restrictions  The buffer for IO must not be part of the device structure because that violates the DMA coherency rules.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46236">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46235 – In the Linux kernel, the following vulnerability has been resolved:

media: saa7...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46235</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46235</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46235</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  media: saa7164: add ioremap return checks and cleanups  Add checks for ioremap return values in saa7164_dev_setup(). If ioremap for BAR0 or BAR2 fails, release the already allocated PCI memory regions, remove the device from the global list, decrement the device count, and return -ENODEV.  This prevents potential null pointer de…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46235">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46234 – In the Linux kernel, the following vulnerability has been resolved:

vsock: fix ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46234</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46234</guid>
    <pubDate>Thu, 28 May 2026 10:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46234</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  vsock: fix buffer size clamping order  In vsock_update_buffer_size(), the buffer size was being clamped to the maximum first, and then to the minimum. If a user sets a minimum buffer size larger than the maximum, the minimum check overrides the maximum check, inverting the constraint.  This breaks the intended socket memory boun…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46234">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46233 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46233</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46233</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46233</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: bla: only purge non-released claims  When batadv_bla_purge_claims() goes through the list of claims, it is only traversing the hash list with an rcu_read_lock(). Due to a potential parallel batadv_claim_put(), it can happen that it encounters a claim which was actually in the process of being released+freed by batadv…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46233">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46232 – In the Linux kernel, the following vulnerability has been resolved:

HID: playst...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46232</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46232</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46232</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  HID: playstation: Clamp num_touch_reports  A device would never lie about the number of touch reports would it?  If it does the loop in dualshock4_parse_report will read off the end of the touch_reports array, up to about 2 KiB for the maximum number of 256 loop iteraions. The data that is read is emitted via evdev if the DS4_TO…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46232">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46231 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46231</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46231</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46231</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: bla: put backbone reference on failed claim hash insert  When batadv_bla_add_claim() fails to insert a new claim into the hash, it leaked a reference to the backbone_gw for which the claim was intended. Call batadv_backbone_gw_put() on the error path to release the reference and avoid leaking the backbone_gw object.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46231">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46230 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46230</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46230</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46230</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg  Check bounds against the end of the BO whenever we access the msg.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46230">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46229 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46229</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46229</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdkfd: Clear VRAM on allocation to prevent stale data exposure  KFD VRAM allocations set AMDGPU_GEM_CREATE_VRAM_WIPE_ON_RELEASE but not AMDGPU_GEM_CREATE_VRAM_CLEARED, leaving freshly allocated VRAM with stale data from prior use observable by compute kernels.  The GEM ioctl path already sets VRAM_CLEARED for all userspace…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46228 – In the Linux kernel, the following vulnerability has been resolved:

spi: ch341:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46228</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46228</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: ch341: fix devres lifetime  USB drivers bind to USB interfaces and any device managed resources should have their lifetime tied to the interface rather than parent USB device. This avoids issues like memory leaks when drivers are unbound without their devices being physically disconnected (e.g. on probe deferral or configur…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46227 – In the Linux kernel, the following vulnerability has been resolved:

sctp: reval...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46227</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46227</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46227</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL  The SCTP_SENDALL path in sctp_sendmsg() iterates ep->asocs with list_for_each_entry_safe(), which caches the next entry in @tmp before the loop body runs.  The body calls sctp_sendmsg_to_asoc(), which may drop the socket lock inside sctp_wait_for_sndbuf()…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46227">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46226 – In the Linux kernel, the following vulnerability has been resolved:

spi: fsl: f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46226</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46226</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46226</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: fsl: fix controller deregistration  Make sure to deregister the controller before releasing underlying resources like DMA during driver unbind.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46226">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46225 – In the Linux kernel, the following vulnerability has been resolved:

spi: rspi: ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46225</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46225</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46225</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: rspi: fix controller deregistration  Make sure to deregister the controller before releasing underlying resources like DMA during driver unbind.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46225">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46224 – In the Linux kernel, the following vulnerability has been resolved:

drm/xe: Fix...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46224</guid>
    <pubDate>Thu, 28 May 2026 10:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46224</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/xe: Fix bo leak in xe_dma_buf_init_obj() on allocation failure  When drm_gpuvm_resv_object_alloc() fails, the pre-allocated storage bo is not freed. Add xe_bo_free(storage) before returning the error.  xe_dma_buf_init_obj() calls xe_bo_init_locked(), which frees the bo on error. Therefore, xe_dma_buf_init_obj() must also fre…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46223 – In the Linux kernel, the following vulnerability has been resolved:

cgroup: Def...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46223</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46223</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46223</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  cgroup: Defer css percpu_ref kill on rmdir until cgroup is depopulated  A chain of commits going back to v7.0 reworked rmdir to satisfy the controller invariant that a subsystem's ->css_offline() must not run while tasks are still doing kernel-side work in the cgroup.  [1] d245698d727a ("cgroup: Defer task cgroup unlink until af…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46223">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46222 – In the Linux kernel, the following vulnerability has been resolved:

media: rock...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46222</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46222</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  media: rockchip: rkcif: Add missing MUST_CONNECT flag to pads  The pads missed checks for connected devices which may a null dereference when the stream is enabled.  Unable to handle kernel NULL pointer dereference at virtual address 0000000000000020 pc : rkcif_interface_enable_streams+0x48/0xf0 lr : rkcif_interface_enable_strea…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46221 – In the Linux kernel, the following vulnerability has been resolved:

EDAC/versal...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46221</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46221</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46221</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  EDAC/versalnet: Fix device name memory leak  The device name allocated via kzalloc() in init_one_mc() is assigned to dev->init_name but never freed on the normal removal path.  device_register() copies init_name and then sets dev->init_name to NULL, so the name pointer becomes unreachable from the device. Thus leaking memory.  U…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46221">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46220 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46220</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46220</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46220</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu/sdma4: replace BUG_ON with WARN_ON in fence emission  sdma_v4_0_ring_emit_fence() contains two BUG_ON(addr & 0x3) assertions that verify fence writeback addresses are dword-aligned.  These assertions can be reached from unprivileged userspace via crafted DRM_IOCTL_AMDGPU_CS submissions, causing a fatal kernel panic in…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46220">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46219 – In the Linux kernel, the following vulnerability has been resolved:

spi: mpc52x...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46219</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46219</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46219</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: mpc52xx: fix use-after-free on unbind  The state machine work is scheduled by the interrupt handler and therefore needs to be cancelled after disabling interrupts to avoid a potential use-after-free.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46219">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46218 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46218</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46218</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46218</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu: Add bounds checking to ib_{get,set}_value  The uvd/vce/vcn code accesses the IB at predefined offsets without checking that the IB is large enough. Check the bounds here. The caller is responsible for making sure it can handle arbitrary return values.  Also make the idx a uint32_t to prevent overflows causing the con…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46218">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46217 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46217</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46217</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46217</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu/vcn4: Avoid overflow on msg bound check  As pointed out by SDL, the previous condition may be vulnerable to overflow.  (cherry picked from commit 3c5367d950140d4ec7af830b2268a5a6fdaa3885)</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46217">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46216 – In the Linux kernel, the following vulnerability has been resolved:

drm/xe/hdcp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46216</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46216</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46216</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/xe/hdcp: Add NULL check for media_gt in intel_hdcp_gsc_check_status()  When media GT is disabled via configfs, there is no allocation for media_gt, which is kept as NULL.  In such scenario, intel_hdcp_gsc_check_status() results in a kernel pagefault error due to &gt->uc.gsc being evaluated as an invalid memory address.  Fix…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46216">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46215 – In the Linux kernel, the following vulnerability has been resolved:

drm: Set ol...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46215</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46215</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46215</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm: Set old handle to NULL before prime swap in change_handle  There was a potential race condition in change_handle. The ioctl briefly had a single object with two idr entries; a concurrent gem_close could delete the object and remove one of the handles while leaving the other one dangling, which could subsequently be derefere…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46215">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46214 – In the Linux kernel, the following vulnerability has been resolved:

vsock/virti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46214</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46214</guid>
    <pubDate>Thu, 28 May 2026 10:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46214</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  vsock/virtio: fix accept queue count leak on transport mismatch  virtio_transport_recv_listen() calls sk_acceptq_added() before vsock_assign_transport(). If vsock_assign_transport() fails or selects a different transport, the error path returns without calling sk_acceptq_removed(), permanently incrementing sk_ack_backlog.  After…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46214">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46213 – In the Linux kernel, the following vulnerability has been resolved:

HID: applet...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46213</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46213</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46213</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  HID: appletb-kbd: fix UAF in inactivity-timer cleanup path  Commit 38224c472a03 ("HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe") added timer_delete_sync(&kbd->inactivity_timer) to both the probe close_hw error path and appletb_kbd_remove(), but the way it was wired in left the inactivity timer reachable dur…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46213">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46212 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46212</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46212</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46212</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: bla: prevent use-after-free when deleting claims  When batadv_bla_del_backbone_claims() removes all claims for a backbone, it does this by dropping the link entry in the hash list. This list entry itself was one of the references which need to be dropped at the same time via batadv_claim_put().  But the batadv_claim_…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46212">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46211 – In the Linux kernel, the following vulnerability has been resolved:

drm/msm/gem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46211</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46211</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46211</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/msm/gem: fix error handling in msm_ioctl_gem_info_get_metadata()  msm_ioctl_gem_info_get_metadata() always returns 0 regardless of errors. When copy_to_user() fails or the user buffer is too small, the error code stored in ret is ignored because the function unconditionally returns 0. This causes userspace to believe the ioc…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46211">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46210 – In the Linux kernel, the following vulnerability has been resolved:

media: iris...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46210</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46210</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46210</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  media: iris: fix use-after-free of fmt_src during MBPF check  During concurrency testing, multiple instances can run in parallel, and each instance uses its own inst->lock while the core->lock protects the list of active instances. The race happens because these locks cover different scopes, inst->lock protects only the internal…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46210">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46209 – In the Linux kernel, the following vulnerability has been resolved:

drm/gem: Fi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46209</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46209</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46209</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs()  drm_gem_fb_init_with_funcs() computes sub-sampled plane dimensions using plain integer division:    unsigned int width  = mode_cmd->width  / (i ? info->hsub : 1);   unsigned int height = mode_cmd->height / (i ? info->vsub : 1);  However, the i…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46209">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46208 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46208</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46208</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46208</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: stop tp_meter sessions during mesh teardown  TP meter sessions remain linked on bat_priv->tp_list after the netlink request has already finished. When the mesh interface is removed, batadv_mesh_free() currently tears down the mesh without first draining these sessions.  A running sender thread or a late incoming tp_m…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46208">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46207 – In the Linux kernel, the following vulnerability has been resolved:

vsock/virti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46207</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46207</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46207</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  vsock/virtio: fix empty payload in tap skb for non-linear buffers  For non-linear skbs, virtio_transport_build_skb() goes through virtio_transport_copy_nonlinear_skb() to copy the original payload in the new skb to be delivered to the vsockmon tap device. This manually initializes an iov_iter but does not set iov_iter.count. Sin…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46207">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46206 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46206</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46206</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46206</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: reject new tp_meter sessions during teardown  Prevent tp_meter from starting new sender or receiver sessions after mesh_state has left BATADV_MESH_ACTIVE.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46206">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46205 – In the Linux kernel, the following vulnerability has been resolved:

staging: me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46205</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46205</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46205</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  staging: media: atomisp: Disallow all private IOCTLs  Disallow all private IOCTLs. These aren't quite as safe as one could assume of IOCTL handlers; disable them for now. Instead of removing the code, return in the beginning of the function if cmd is non-zero in order to keep static checkers happy.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46205">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46204 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46204</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46204</guid>
    <pubDate>Thu, 28 May 2026 10:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46204</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu/vcn4: Prevent OOB reads when parsing IB  Rewrite the IB parsing to use amdgpu_ib_get_value() which handles the bounds checks.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46204">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46203 – In the Linux kernel, the following vulnerability has been resolved:

spi: cadenc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46203</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46203</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46203</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: cadence-quadspi: fix unclocked access on unbind  Make sure that the controller is runtime resumed before disabling it during driver unbind to avoid an unclocked register access.  This issue was flagged by Sashiko when reviewing a controller deregistration fix.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46203">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46202 – In the Linux kernel, the following vulnerability has been resolved:

HID: applet...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46202</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46202</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  HID: appletb-kbd: run inactivity autodim from workqueues  The autodim code in hid-appletb-kbd takes backlight_device->ops_lock via backlight_device_set_brightness() -> mutex_lock() from two different atomic contexts:   * appletb_inactivity_timer() is a struct timer_list callback, so it    runs in softirq context.  Every expiry t…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46201 – In the Linux kernel, the following vulnerability has been resolved:

drm/xe: Fix...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46201</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46201</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import()  When xe_dma_buf_init_obj() fails, the attachment from dma_buf_dynamic_attach() is not detached. Add dma_buf_detach() before returning the error. Note: we cannot use goto out_err here because xe_dma_buf_init_obj() already frees bo on failure, and out_err would double-f…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-46200 – In the Linux kernel, the following vulnerability has been resolved:

spi: mpc52x...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46200</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46200</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-46200</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  spi: mpc52xx: fix controller deregistration  Make sure to deregister the controller before disabling and releasing underlying resources like interrupts and gpios during driver unbind.</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46200">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46199 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46199</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46199</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46199</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg  Check bounds against the end of the BO whenever we access the msg.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46199">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46198 – In the Linux kernel, the following vulnerability has been resolved:

batman-adv:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46198</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46198</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46198</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  batman-adv: fix integer overflow on buff_pos  Fixing an integer overflow present in batadv_iv_ogm_send_to_if. The size check is done using the int type in batadv_iv_ogm_aggr_packet whereas the buff_pos variable uses the s16 type. This could lead to an out-of-bound read.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46198">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46197 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46197</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46197</guid>
    <pubDate>Thu, 28 May 2026 10:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46197</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdkfd: validate SVM ioctl nattr against buffer size  Validate nattr field against the buffer size, preventing out-of-bounds buffer access via user-controlled attribute count.  (cherry picked from commit 5eca8bfdfa456c3304ca77523718fe24254c172f)</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46197">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
