Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ioam6中当trace->type.bit6设置时,在RX路径上可能发生越界访问和缺少锁保护,导致dev->_tx[]数组越界访问。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | b63c5478e9cb1d1504eb02d9dac827ad24612b32< 6d1d9ed9b409e0662241e3d245d574a18f643494 |
affected |
b63c5478e9cb1d1504eb02d9dac827ad24612b32< 95a1334748c95dd15546056280ade0c4b8dd7b78 |
affected | ||
b63c5478e9cb1d1504eb02d9dac827ad24612b32< b30b1675aa2bcf0491fd3830b051df4e08a7c8ca |
affected | ||
5.17 |
affected | ||
< 5.17 |
unaffected | ||
6.18.24≤ 6.18.* |
unaffected | ||
6.19.14≤ 6.19.* |
unaffected | ||
7.0≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-43208 | 9.8 CRITICAL | net: do not pass flow_id to set_rps_cpu() |
| CVE-2026-43198 | 9.8 CRITICAL | tcp: fix potential race in tcp_v6_syn_recv_sock() |
| CVE-2026-43125 | 9.8 CRITICAL | dlm: validate length in dlm_search_rsb_tree |
| CVE-2026-43186 | 9.8 CRITICAL | ipv6: ioam: fix heap buffer overflow in __ioam6_fill_trace_data() |
| CVE-2026-43185 | 9.8 CRITICAL | ksmbd: fix signededness bug in smb_direct_prepare_negotiation() |
| CVE-2026-43114 | 9.4 CRITICAL | netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry |
| CVE-2026-43197 | 9.1 CRITICAL | netconsole: avoid OOB reads, msg is not nul-terminated |
| CVE-2026-43117 | 9.1 CRITICAL | btrfs: tracepoints: get correct superblock from dentry in event btrfs_sync_file() |
| CVE-2026-43239 | 8.8 HIGH | smb: client: prevent races in ->query_interfaces() |
| CVE-2026-43113 | 8.8 HIGH | wifi: wl1251: validate packet IDs before indexing tx_frames |
| CVE-2026-43158 | 8.8 HIGH | xfs: fix freemap adjustments when adding xattrs to leaf blocks |
| CVE-2026-43232 | 8.8 HIGH | net: wan: farsync: Fix use-after-free bugs caused by unfinished tasklets |
| CVE-2026-43172 | 8.8 HIGH | wifi: iwlwifi: fix 22000 series SMEM parsing |
| CVE-2026-43283 | 8.8 HIGH | net: ethernet: ec_bhf: Fix dma_free_coherent() dma handle |
| CVE-2026-43176 | 8.8 HIGH | wifi: rtw89: pci: validate release report content before using for RTL8922DE |
| CVE-2026-43112 | 8.8 HIGH | fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath |
| CVE-2026-43187 | 8.8 HIGH | xfs: delete attr leaf freemap entries when empty |
| CVE-2026-43249 | 8.8 HIGH | 9p/xen: protect xen_9pfs_front_free against concurrent calls |
| CVE-2026-43110 | 8.8 HIGH | wifi: brcmfmac: validate bsscfg indices in IF events |
| CVE-2026-43215 | 8.8 HIGH | cifs: Fix locking usage for tcon fields |
Showing top 20 of 224 CVEs. View all on vendor page → →
No comments yet