| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-89643 | audit: avoid dropping live tree ref on fsnotify rule autoremove | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:36 | Deep Dive |
| CVE-2026-89637 | smb: client: fix UAF and buffer leak in cifs_check_trans2() for malformed secondary T2 | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:31 | Deep Dive |
| CVE-2026-89636 | smb: client: clear ce->tgthint in free_tgts() | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:30 | Deep Dive |
| CVE-2026-89635 | ksmbd: only rebind the reopened file's own oplock on durable reconnect | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:30 | Deep Dive |
| CVE-2026-89634 | smb: client: fix ALIGN() overflow in symlink_data() error context loop | Linux | Linux | Critical | 9.1 | 2026-09-11 19:45:29 | Deep Dive |
| CVE-2026-89633 | smb: client: fix OOB read/write from unvalidated DataOffset in coalesce_t2() | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:28 | Deep Dive |
| CVE-2026-89630 | smb: client: restore the data_offset bound in is_valid_oplock_break() | Linux | Linux | Critical | 9.1 | 2026-09-11 19:45:26 | Deep Dive |
| CVE-2026-89631 | smb: client: reject a tree connect response whose byte count is too small | Linux | Linux | Critical | 9.1 | 2026-09-11 19:45:26 | Deep Dive |
| CVE-2026-89614 | ntfs: bound the free-cluster bitmap scan to the volume | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:15 | Deep Dive |
| CVE-2026-89613 | ntfs: reject invalid empty mapping pairs | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:14 | Deep Dive |
| CVE-2026-89611 | ntfs: validate non-resident attribute offsets | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:13 | Deep Dive |
| CVE-2026-89612 | ntfs: reject invalid MFT LCNs from boot sector | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:13 | Deep Dive |
| CVE-2026-89610 | ntfs: verify run length exceeding volume boundary | Linux | Linux | Critical | 9.8 | 2026-09-11 19:45:12 | Deep Dive |
| CVE-2026-89558 | md/raid10: fix still_degraded being inverted in raid10_sync_request() | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:31 | Deep Dive |
| CVE-2026-89555 | mpls: reload header after pskb_may_pull() | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:28 | Deep Dive |
| CVE-2026-89550 | SUNRPC: svcauth_gss: enforce krb5 token minimum length | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:25 | Deep Dive |
| CVE-2026-89551 | SUNRPC: xdr_buf_trim: clamp buf->len to avoid underflow | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:25 | Deep Dive |
| CVE-2026-89546 | SUNRPC: close backchannel before destroying callback service | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:22 | Deep Dive |
| CVE-2026-89542 | SUNRPC: harden gss_krb5_unwrap_v2 against short tokens | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:19 | Deep Dive |
| CVE-2026-89541 | SUNRPC: harden gss_unwrap_resp_priv length checks | Linux | Linux | Critical | 9.8 | 2026-09-11 19:44:18 | Deep Dive |