Linux kernel是美国Linux基金会开源的操作系统Linux所使用的内核。 Linux kernel 2.6.34之前版本存在安全漏洞,该漏洞源于ebtables的compat_mtw_from_user函数对match_size/target_size验证不足,可能导致攻击者利用比扩展所需更小的用户提供大小触发越界读取。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 81e675c227ec60a0bdcbb547dc530ebee23ff931< d7a8fb6f10d55a1c37b0bf8c20cca24dffd76e00 |
affected |
81e675c227ec60a0bdcbb547dc530ebee23ff931< 21af4c030567d2e6c89bb927bc18b51fba52a400 |
affected | ||
81e675c227ec60a0bdcbb547dc530ebee23ff931< dad9ebf8107955bb54bd3f9cf22591b6ff37bac1 |
affected | ||
81e675c227ec60a0bdcbb547dc530ebee23ff931< a27cb7325a6c69970041c7f8541fafed5a1ea3ec |
affected | ||
81e675c227ec60a0bdcbb547dc530ebee23ff931< 7ad0e463fc7eafae2141cc38054264636f8b3e94 |
affected | ||
81e675c227ec60a0bdcbb547dc530ebee23ff931< bf8e8eac7ede51dc318e06acef5a896dcbba7595 |
affected | ||
81e675c227ec60a0bdcbb547dc530ebee23ff931< fcc4c043d137e7f1de4673dba1f3116e45377c67 |
affected | ||
81e675c227ec60a0bdcbb547dc530ebee23ff931< f438d1786d657d57790c5d138d6db3fc9fdac392 |
affected | ||
| … +10 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-53088 | 9.8 CRITICAL | net: bcmgenet: fix off-by-one in bcmgenet_put_txcb |
| CVE-2026-53046 | 9.8 CRITICAL | ksmbd: fix use-after-free from async crypto on Qualcomm crypto engine |
| CVE-2026-53049 | 9.8 CRITICAL | gfs2: add some missing log locking |
| CVE-2026-52955 | 9.8 CRITICAL | libceph: Fix potential out-of-bounds access in crush_decode() |
| CVE-2026-53045 | 9.8 CRITICAL | memory: tegra124-emc: Fix dll_change check |
| CVE-2026-52982 | 9.8 CRITICAL | net: usb: rtl8150: fix use-after-free in rtl8150_start_xmit() |
| CVE-2026-52986 | 9.8 CRITICAL | netfilter: nf_conntrack_sip: don't use simple_strtoul |
| CVE-2026-52989 | 9.8 CRITICAL | nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers |
| CVE-2026-52993 | 9.8 CRITICAL | tipc: fix double-free in tipc_buf_append() |
| CVE-2026-53002 | 9.8 CRITICAL | netfilter: conntrack: remove sprintf usage |
| CVE-2026-52931 | 9.8 CRITICAL | batman-adv: tp_meter: avoid use of uninit sender vars |
| CVE-2026-52924 | 9.8 CRITICAL | sctp: purge outqueue on stale COOKIE-ECHO handling |
| CVE-2026-53055 | 9.8 CRITICAL | crypto: hisilicon/sec2 - prevent req used-after-free for sec |
| CVE-2026-53006 | 9.8 CRITICAL | ipv6: fix possible UAF in icmpv6_rcv() |
| CVE-2026-52914 | 9.8 CRITICAL | batman-adv: fix fragment reassembly length accounting |
| CVE-2026-53086 | 9.8 CRITICAL | net: bcmgenet: fix racing timeout handler |
| CVE-2026-53010 | 9.8 CRITICAL | ksmbd: fix use-after-free in smb2_open during durable reconnect |
| CVE-2026-52999 | 9.1 CRITICAL | netfilter: nfnetlink_osf: fix out-of-bounds read on option matching |
| CVE-2026-52958 | 9.1 CRITICAL | libceph: Fix potential out-of-bounds access in osdmap_decode() |
| CVE-2026-53043 | 9.1 CRITICAL | ocfs2/dlm: validate qr_numregions in dlm_match_regions() |
Showing top 20 of 219 CVEs. View all on vendor page → →
No comments yet