Linux kernel是美国Linux基金会开源的一款操作系统内核。 Linux kernel存在安全漏洞,该漏洞源于node_desc数组在struct ib_device中未保证以NUL结尾,导致ionic hca_type_show()处理函数使用无边界格式说明符读取超出数组范围,可能造成信息泄露。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 2075bbe8ef03914aa2211035eec45d1d3a5c4ff2< 61df14f306f153bffa2f3c74a94ff5a85c99fa39 |
affected |
2075bbe8ef03914aa2211035eec45d1d3a5c4ff2< a3e9372203afde2c62576356bb9a17890bc7fd6c |
affected | ||
2075bbe8ef03914aa2211035eec45d1d3a5c4ff2< 654a27f25530d052eeedf086e6c3e2d585c203bd |
affected | ||
6.18 |
affected | ||
< 6.18 |
unaffected | ||
6.18.30≤ 6.18.* |
unaffected | ||
7.0.7≤ 7.0.* |
unaffected | ||
7.1≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-63795 | 10.0 CRITICAL | 9p: avoid putting oldfid in p9_client_walk() error path |
| CVE-2026-64046 | 9.8 CRITICAL | net: tls: prevent chain-after-chain in plain text SG |
| CVE-2026-63984 | 9.8 CRITICAL | ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() |
| CVE-2026-63800 | 9.8 CRITICAL | pNFS: Fix use-after-free in pnfs_update_layout() |
| CVE-2026-63979 | 9.8 CRITICAL | net/handshake: hand off the pinned file reference to accept_doit |
| CVE-2026-64142 | 9.8 CRITICAL | ksmbd: close durable scavenger races against m_fp_list lookups |
| CVE-2026-63978 | 9.8 CRITICAL | net/handshake: Drain pending requests at net namespace exit |
| CVE-2026-64056 | 9.8 CRITICAL | net: ethernet: cortina: Make RX SKB per-port |
| CVE-2026-63808 | 9.8 CRITICAL | exfat: fix potential use-after-free in exfat_find_dir_entry() |
| CVE-2026-64055 | 9.8 CRITICAL | net: ethernet: cortina: Carry over frag counter |
| CVE-2026-63922 | 9.8 CRITICAL | ipv6: exthdrs: refresh nh after handling HAO option |
| CVE-2026-64033 | 9.8 CRITICAL | RDMA/rtrs: Fix use-after-free in path file creation cleanup |
| CVE-2026-64113 | 9.8 CRITICAL | ixgbevf: fix use-after-free in VEPA multicast source pruning |
| CVE-2026-63825 | 9.8 CRITICAL | gcov: use atomic counter updates to fix concurrent access crashes |
| CVE-2026-64016 | 9.8 CRITICAL | ksmbd: fix durable reconnect error path file lifetime |
| CVE-2026-64122 | 9.8 CRITICAL | net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover |
| CVE-2026-64047 | 9.8 CRITICAL | net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring |
| CVE-2026-64035 | 9.8 CRITICAL | igc: set tx buffer type for SMD frames |
| CVE-2026-64025 | 9.8 CRITICAL | bpf, skmsg: fix verdict sk_data_ready racing with ktls rx |
| CVE-2026-64150 | 9.8 CRITICAL | netfilter: nft_inner: release local_lock before re-enabling softirqs |
Showing top 20 of 429 CVEs. View all on vendor page → →
No comments yet