Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ovpn中ovpn_net_xmit函数在构建skb_list时skb_share_check释放原始skb后继续使用过期指针,可能导致释放后重用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 08857b5ec5d91d83e69e40a36554a8c7557b7301< 3e4fbcb4e078915367ba5576cd70d76dbc970f95 |
affected |
08857b5ec5d91d83e69e40a36554a8c7557b7301< 442915c96a9bff1c7080e2aedabb1c03faa28d81 |
affected | ||
08857b5ec5d91d83e69e40a36554a8c7557b7301< a5ec7baa44ea3a1d6aa0ca31c0ad82edf9affe41 |
affected | ||
6.16 |
affected | ||
< 6.16 |
unaffected | ||
6.18.14≤ 6.18.* |
unaffected | ||
6.19.4≤ 6.19.* |
unaffected | ||
7.0≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-46039 | 9.8 CRITICAL | rxgk: Fix potential integer overflow in length check |
| CVE-2026-45988 | 9.8 CRITICAL | rxrpc: Fix re-decryption of RESPONSE packets |
| CVE-2026-45972 | 9.8 CRITICAL | smb: client: fix potential UAF and double free in smb2_open_file() |
| CVE-2026-45898 | 9.8 CRITICAL | RDMA/iwcm: Fix workqueue list corruption by removing work_list |
| CVE-2026-46043 | 9.1 CRITICAL | RDMA/rxe: Validate pad and ICRC before payload_size() in rxe_rcv |
| CVE-2026-45945 | 8.8 HIGH | iommu/vt-d: Fix race condition during PASID entry replacement |
| CVE-2026-46056 | 8.8 HIGH | Bluetooth: hci_event: fix potential UAF in SSP passkey handlers |
| CVE-2026-46037 | 8.2 HIGH | ipv4: icmp: validate reply type before using icmp_pointers |
| CVE-2025-71311 | 8.2 HIGH | fs/ntfs3: Initialize new folios before use |
| CVE-2026-45843 | 8.2 HIGH | slip: bound decode() reads against the compressed packet length |
| CVE-2026-46010 | 8.1 HIGH | rxrpc: Fix error handling in rxgk_extract_token() |
| CVE-2026-46099 | 8.1 HIGH | net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels |
| CVE-2026-46076 | 7.9 HIGH | KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 |
| CVE-2026-45935 | 7.8 HIGH | fs/ntfs3: Fix slab-out-of-bounds read in DeleteIndexEntryRoot |
| CVE-2026-46065 | 7.8 HIGH | fbdev: defio: Disconnect deferred I/O from the lifetime of struct fb_info |
| CVE-2026-45909 | 7.8 HIGH | clk: mediatek: Drop __initconst from gates |
| CVE-2026-45956 | 7.8 HIGH | drm/exynos: vidi: use priv->vidi_dev for ctx lookup in vidi_connection_ioctl() |
| CVE-2026-46062 | 7.8 HIGH | ntfs3: fix integer overflow in run_unpack() volume boundary check |
| CVE-2026-45862 | 7.8 HIGH | iommu/vt-d: Flush cache for PASID table before using it |
| CVE-2026-45933 | 7.8 HIGH | bpf: Preserve id of register in sync_linked_regs() |
Showing top 20 of 275 CVEs. View all on vendor page → →
No comments yet