Linux kernel是美国Linux基金会开源的一款操作系统内核。 Linux kernel 6.17版本存在安全漏洞,该漏洞源于ena_phc_gettimex64()函数在设置时间戳输出前未检查返回码,可能导致未初始化的栈内存或无效硬件值泄露给用户空间,造成信息泄露。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | e0ea34158ee8c4f7536cd781010339ff28c0d24c< bddf59818ae5102e6d82a4dae5add6df8da38fb0 |
affected |
e0ea34158ee8c4f7536cd781010339ff28c0d24c< edcb049d836e175e7b3d5e0d05657104545b5e65 |
affected | ||
e0ea34158ee8c4f7536cd781010339ff28c0d24c< 24a08d7d6218d60c033015cf4870b6096446e734 |
affected | ||
6.17 |
affected | ||
< 6.17 |
unaffected | ||
6.18.33≤ 6.18.* |
unaffected | ||
7.0.10≤ 7.0.* |
unaffected | ||
7.1≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-63795 | 10.0 CRITICAL | 9p: avoid putting oldfid in p9_client_walk() error path |
| CVE-2026-64056 | 9.8 CRITICAL | net: ethernet: cortina: Make RX SKB per-port |
| CVE-2026-63887 | 9.8 CRITICAL | scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf |
| CVE-2026-53399 | 9.8 CRITICAL | nfsd: release layout stid on setlease failure |
| CVE-2026-53398 | 9.8 CRITICAL | NFSD: Fix SECINFO_NO_NAME decode error cleanup |
| CVE-2026-63984 | 9.8 CRITICAL | ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() |
| CVE-2026-63886 | 9.8 CRITICAL | scsi: target: iscsi: Validate CHAP_R length before base64 decode |
| CVE-2026-64035 | 9.8 CRITICAL | igc: set tx buffer type for SMD frames |
| CVE-2026-64150 | 9.8 CRITICAL | netfilter: nft_inner: release local_lock before re-enabling softirqs |
| CVE-2026-63924 | 9.8 CRITICAL | ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() |
| CVE-2026-63979 | 9.8 CRITICAL | net/handshake: hand off the pinned file reference to accept_doit |
| CVE-2026-63800 | 9.8 CRITICAL | pNFS: Fix use-after-free in pnfs_update_layout() |
| CVE-2026-64132 | 9.8 CRITICAL | ipv6: ioam: refresh hdr pointer before ioam6_event() |
| CVE-2026-64037 | 9.8 CRITICAL | wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled |
| CVE-2026-63978 | 9.8 CRITICAL | net/handshake: Drain pending requests at net namespace exit |
| CVE-2026-63825 | 9.8 CRITICAL | gcov: use atomic counter updates to fix concurrent access crashes |
| CVE-2026-64125 | 9.8 CRITICAL | net: bcmgenet: keep RBUF EEE/PM disabled |
| CVE-2026-63857 | 9.8 CRITICAL | net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit() |
| CVE-2026-64113 | 9.8 CRITICAL | ixgbevf: fix use-after-free in VEPA multicast source pruning |
| CVE-2026-64046 | 9.8 CRITICAL | net: tls: prevent chain-after-chain in plain text SG |
Showing top 20 of 429 CVEs. View all on vendor page → →
No comments yet