CVE-2026-23162
In the Linux kernel, the following vulnerability has been resolved: drm/xe/nvm: Fix double-free on aux add failure After a successful auxiliary_device_init(), aux_dev->dev.release (xe_nvm_release_d…
All CVEs associated with "nvm". Page 1/1 • 19 CVEs.
A curated feed of “nvm”-related CVEs appears below. We currently track 19 CVEs for this tag (all time). In the last 365 days, 8 were published. Average CVSS is 6.2 (all time; 5.8 over 365d), and 21% are rated High/Critical (all time). Top CWEs (last 365 days): CWE-415 - Double Free, CWE-782 - Exposed IOCTL with Insufficient Access Control, CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection').
In our taxonomy this topic maps to a LOW impact class. Vendor advisories and release notes are key. Verify compatibility matrices, prefer supported long term versions, and stage rollouts with monitoring. Use the filters below to sort by CVSS, risk and CWE. Each detail page highlights vendor advisories and mitigation tips.
This table shows recent release cycles and their projected end-of-life. Data source: endoflife.date.
| Cycle | Release | Latest | EOL | LTS |
|---|---|---|---|---|
| 0.40 | 0.40.4 | - | ||
| 0.39 | 0.39.7 | Expired | ||
| 0.38 | 0.38.0 | Expired | ||
| 0.37 | 0.37.2 | Expired | ||
| 0.36 | 0.36.0 | Expired | ||
| 0.35 | 0.35.3 | Expired | ||
| 0.34 | 0.34.0 | Expired | ||
| 0.33 | 0.33.11 | Expired | ||
| 0.32 | 0.32.1 | Expired | ||
| 0.31 | 0.31.7 | Expired | ||
| 0.30 | 0.30.2 | Expired | ||
| 0.29 | 0.29.0 | Expired | ||
| 0.28 | 0.28.0 | Expired | ||
| 0.27 | 0.27.1 | Expired | ||
| 0.26 | 0.26.1 | Expired | ||
| 0.25 | 0.25.4 | Expired | ||
| 0.24 | 0.24.2 | Expired | ||
| 0.23 | 0.23.3 | Expired | ||
| 0.22 | 0.22.2 | Expired | ||
| 0.21 | 0.21.0 | Expired | ||
| 0.20 | 0.20.0 | Expired | ||
| 0.19 | 0.19.0 | Expired | ||
| 0.18 | 0.18.0 | Expired | ||
| 0.17 | 0.17.3 | Expired | ||
| 0.16 | 0.16.1 | Expired | ||
| 0.15 | 0.15.0 | Expired | ||
| 0.14 | 0.14.0 | Expired | ||
| 0.13 | 0.13.1 | Expired | ||
| 0.12 | 0.12.2 | Expired | ||
| 0.11 | 0.11.2 | Expired | ||
| 0.10 | 0.10.0 | Expired | ||
| 0.9 | 0.9.0 | Expired | ||
| 0.8 | 0.8.0 | Expired | ||
| 0.7 | 0.7.0 | Expired | ||
| 0.6 | 0.6.1 | Expired | ||
| 0.5 | 0.5.1 | Expired | ||
| 0.4 | 0.4.0 | Expired | ||
| 0.3 | 0.3.0 | Expired | ||
| 0.2 | 0.2.0 | Expired | ||
| 0.1 | 0.1.0 | Expired |
Maintained Soon (≤ 180 days) Expired
Subscribe lifecycle: RSS (expired) · ICS
Subscribe CVEs: RSS for “nvm” · RSS (High+Critical only)
CVEs tagged with this topic. Filters apply to the whole list (loaded from JSON).
In the Linux kernel, the following vulnerability has been resolved: drm/xe/nvm: Fix double-free on aux add failure After a successful auxiliary_device_init(), aux_dev->dev.release (xe_nvm_release_d…
Exposed ioctl with insufficient access control in the firmware for some Intel(R) Ethernet Connection E825-C. before version NVM ver. 3.84 within Ring 0: Bare Metal OS may allow a denial of service. S…
A command injection vulnerability exists in nvm (Node Version Manager) versions 0.40.3 and below. The nvm_download() function uses eval to execute wget commands, and the NVM_AUTH_HEADER environment v…
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: fix memory leak in bnxt_nvm_test() Free the kzalloc'ed buffer before returning in the success path.
In the Linux kernel, the following vulnerability has been resolved: ice: fix PTP cleanup on driver removal in error path Improve the cleanup on releasing PTP resources in error path. The error case…
In the Linux kernel, the following vulnerability has been resolved: mtd: lpddr2_nvm: Fix possible null-ptr-deref It will cause null-ptr-deref when resource_size(add_range) invoked, if platform_get_…
In the Linux kernel, the following vulnerability has been resolved: qed: allow sleep in qed_mcp_trace_dump() By default, qed_mcp_cmd_and_union() delays 10us at a time in a loop that can run 500K ti…
In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: fix suspicious RCU usage warning When I run the NVME over TCP test in virtme-ng, I get the following "suspicious…
Insecure inherited permissions in the NVM Update Utility for some Intel(R) Ethernet Network Adapter E810 Series before version 4.60 may allow an authenticated user to potentially enable escalation of…
In the Linux kernel, the following vulnerability has been resolved: i40e: Fix kernel crash during reboot when adapter is in recovery mode If the driver detects during probe that firmware is in reco…
In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Mark XDomain as unplugged when router is removed I noticed that when we do discrete host router NVM upgrade and it g…
In the Linux kernel, the following vulnerability has been resolved: iwlwifi: mvm: check debugfs_dir ptr before use When "debugfs=off" is used on the kernel command line, iwiwifi's mvm module uses a…
A bug exists in the API, mesh_node_power_off(), which fails to copy the contents of the Replay Protection List (RPL) from RAM to NVM before powering down, resulting in the ability to replay unsaved…
A voltage glitch during the startup of EEFC NVM controllers on Microchip SAM E70/S70/V70/V71, SAM G55, SAM 4C/4S/4N/4E, and SAM 3S/3N/3U microcontrollers allows access to the memory bus via the debug…
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: Fix a memory corruption issue A few lines above, space is kzalloc()'ed for: sizeof(struct iwl_nvm_data) + s…
A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel. Only privileged user could specify a small meta buffer and let the device perform larger Direct Memory…
A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU. This CVE is similar to CVE-2021-3750 and, just like it, when the reentrancy write triggers the reset function…
An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cmb_ops routines in nvme device. A guest user/process could use this flaw to cras…
Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local users to affect availability via vectors related to NVM Express SSD driver.