Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于smb client中smb2_compound_op()函数存在越界读取,可能导致相邻内核堆内存泄漏。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 7449d736bbbd160c76b01b8fcdf72f58a8757d4b< dffb44b2e06a2908e249f0f93156fc987eee1d1c |
affected |
ea41367b2a602f602ea6594fc4a310520dcc64f4< 9b3af35645ff9cd334edc130249f9a2fb2bea25f |
affected | ||
ea41367b2a602f602ea6594fc4a310520dcc64f4< 512d33bc8ea4ea5c19728ee118715f4b1f4d1926 |
affected | ||
ea41367b2a602f602ea6594fc4a310520dcc64f4< a16f70a71be4b5a4eccf39a9bf09b47285f4cb7c |
affected | ||
ea41367b2a602f602ea6594fc4a310520dcc64f4< 8d09328dfda089675e4c049f3f256064a1d1996b |
affected | ||
6.6.32< 6.6.140 |
affected | ||
6.9 |
affected | ||
< 6.9 |
unaffected | ||
| … +5 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-46135 | 9.8 CRITICAL | nvmet-tcp: fix race between ICReq handling and queue teardown |
| CVE-2026-46195 | 9.8 CRITICAL | smb: client: validate dacloffset before building DACL pointers |
| CVE-2026-46137 | 9.8 CRITICAL | mptcp: pm: ADD_ADDR rtx: fix potential data-race |
| CVE-2026-46115 | 9.8 CRITICAL | block: add pgmap check to biovec_phys_mergeable |
| CVE-2026-46185 | 9.1 CRITICAL | smb/client: fix out-of-bounds read in symlink_data() |
| CVE-2026-46119 | 9.1 CRITICAL | libceph: Fix slab-out-of-bounds access in auth message processing |
| CVE-2026-46238 | 8.8 HIGH | batman-adv: stop caching unowned originator pointers in BAT IV |
| CVE-2026-46174 | 8.8 HIGH | x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache |
| CVE-2026-46125 | 8.8 HIGH | wifi: mac80211: remove station if connection prep fails |
| CVE-2026-46198 | 8.8 HIGH | batman-adv: fix integer overflow on buff_pos |
| CVE-2026-46166 | 8.8 HIGH | wifi: mac80211: use safe list iteration in radar detect work |
| CVE-2026-46113 | 8.8 HIGH | KVM: x86: Fix shadow paging use-after-free due to unexpected GFN |
| CVE-2026-46212 | 8.8 HIGH | batman-adv: bla: prevent use-after-free when deleting claims |
| CVE-2026-46152 | 8.8 HIGH | wifi: mac80211: drop stray 'static' from fast-RX rx_result |
| CVE-2026-46232 | 8.1 HIGH | HID: playstation: Clamp num_touch_reports |
| CVE-2026-46138 | 8.1 HIGH | Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_complete_evt |
| CVE-2026-46227 | 7.8 HIGH | sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL |
| CVE-2026-46215 | 7.8 HIGH | drm: Set old handle to NULL before prime swap in change_handle |
| CVE-2026-46157 | 7.8 HIGH | ALSA: pcm: oss: Fix data race at accessing runtime.oss.trigger |
| CVE-2026-46201 | 7.8 HIGH | drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import() |
Showing top 20 of 135 CVEs. View all on vendor page → →
No comments yet