<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – nvm (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/nvm.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/nvm-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – nvm (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:00 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-23162 – In the Linux kernel, the following vulnerability has been resolved:

drm/xe/nvm:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23162</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23162</guid>
    <pubDate>Sat, 14 Feb 2026 16:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23162</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/xe/nvm: Fix double-free on aux add failure  After a successful auxiliary_device_init(), aux_dev->dev.release (xe_nvm_release_dev()) is responsible for the kfree(nvm). When there is failure with auxiliary_device_add(), driver will call auxiliary_device_uninit(), which call put_device(). So that the .release callback will be t…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23162">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-52531 – In the Linux kernel, the following vulnerability has been resolved:

wifi: iwlwi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-52531</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-52531</guid>
    <pubDate>Sat, 02 Mar 2024 22:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-52531</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  wifi: iwlwifi: mvm: Fix a memory corruption issue  A few lines above, space is kzalloc()'ed for: 	sizeof(struct iwl_nvm_data) + 	sizeof(struct ieee80211_channel) + 	sizeof(struct ieee80211_rate)  'mvm->nvm_data' is a 'struct iwl_nvm_data', so it is fine.  At the end of this structure, there is the 'channels' flex array. Each ele…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-52531">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3929 – A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3929</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3929</guid>
    <pubDate>Thu, 25 Aug 2022 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3929</strong></p>
  <p>A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU. This CVE is similar to CVE-2021-3750 and, just like it, when the reentrancy write triggers the reset function nvme_ctrl_reset(), data structs will be freed leading to a use-after-free issue. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3929">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-16847 – An OOB heap buffer r/w access issue was found in the NVM Express Controller emul...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-16847</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-16847</guid>
    <pubDate>Fri, 02 Nov 2018 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-16847</strong></p>
  <p>An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cmb_ops routines in nvme device. A guest user/process could use this flaw to crash the QEMU process resulting in DoS or potentially run arbitrary code with privileges of the QEMU process.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-16847">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
