Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于rtw_restruct_wmm_ie中在长度检查前访问in_ie[i + 5],可能导致越界读取。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 554c0a3abf216c991c5ebddcdb2c08689ecd290b< 6ff2243d5e05a5239e39d4ba61d96b0ea3bf7259 |
affected |
554c0a3abf216c991c5ebddcdb2c08689ecd290b< 12cc6e8f8d4245b7b5a408c6fc8ab1d098d67020 |
affected | ||
554c0a3abf216c991c5ebddcdb2c08689ecd290b< 209644e25757c499e1c1f08c071ea0386d4448b6 |
affected | ||
554c0a3abf216c991c5ebddcdb2c08689ecd290b< 768f25613a9fe6766d15a4a72979657adfc1c6d8 |
affected | ||
554c0a3abf216c991c5ebddcdb2c08689ecd290b< e14a1148f02e8cf1ca380d57e4b95ca36c97f45d |
affected | ||
554c0a3abf216c991c5ebddcdb2c08689ecd290b< 4dd2d9cf563c54e09d5f7eacf95c5b8f538b513b |
affected | ||
554c0a3abf216c991c5ebddcdb2c08689ecd290b< d97fc1b29513010b60fde874c7f0ba816744e18c |
affected | ||
554c0a3abf216c991c5ebddcdb2c08689ecd290b< a75281626fc8fa6dc6c9cc314ee423e8bc45203b |
affected | ||
| … +10 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-43384 | 9.8 CRITICAL | net/tcp-ao: Fix MAC comparison to be constant-time |
| CVE-2026-43341 | 9.8 CRITICAL | net/ipv6: ioam6: prevent schema length wraparound in trace fill |
| CVE-2026-43304 | 9.8 CRITICAL | libceph: define and enforce CEPH_MAX_KEY_LEN |
| CVE-2026-43379 | 9.8 CRITICAL | ksmbd: fix use-after-free in smb_lazy_parent_lease_break_close() |
| CVE-2026-43414 | 9.8 CRITICAL | scsi: qla2xxx: Completely fix fcport double free |
| CVE-2026-43378 | 9.8 CRITICAL | smb: server: fix use-after-free in smb2_open() |
| CVE-2026-43465 | 9.8 CRITICAL | net/mlx5e: RX, Fix XDP multi-buf frag counting for striding RQ |
| CVE-2026-43402 | 9.8 CRITICAL | kthread: consolidate kthread exit paths to prevent use-after-free |
| CVE-2026-43376 | 9.8 CRITICAL | ksmbd: fix use-after-free by using call_rcu() for oplock_info |
| CVE-2026-43383 | 9.4 CRITICAL | net/tcp-md5: Fix MAC comparison to be constant-time |
| CVE-2026-43406 | 9.1 CRITICAL | libceph: prevent potential out-of-bounds reads in process_message_header() |
| CVE-2026-43407 | 9.1 CRITICAL | libceph: Fix potential out-of-bounds access in ceph_handle_auth_reply() |
| CVE-2026-43403 | 8.8 HIGH | nsfs: tighten permission checks for ns iteration ioctls |
| CVE-2026-43334 | 8.8 HIGH | Bluetooth: SMP: force responder MITM requirements before building the pairing response |
| CVE-2026-43284 | 8.8 HIGH | xfrm: esp: avoid in-place decrypt on shared skb frags |
| CVE-2026-43322 | 8.8 HIGH | Bluetooth: hci_sync: Fix UAF in le_read_features_complete |
| CVE-2026-43391 | 8.8 HIGH | nsfs: tighten permission checks for handle opening |
| CVE-2026-43291 | 8.3 HIGH | net: nfc: nci: Fix parameter validation for packet data |
| CVE-2026-43466 | 8.2 HIGH | net/mlx5e: Fix DMA FIFO desync on error CQE SQ recovery |
| CVE-2026-43365 | 8.2 HIGH | xfs: fix undersized l_iclog_roundoff values |
Showing top 20 of 197 CVEs. View all on vendor page → →
No comments yet