Linux kernel是美国Linux基金会开源的一款操作系统内核。 Linux kernel存在安全漏洞,该漏洞源于在解析注入帧的radiotap标头时,未对天线索引值进行限制,直接将其用作移位计数,可能导致越界移位,容易受到越界移位攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | ef246a1480cc484cd2aeda75737cb0848616ddf3< f6d3dc8e8492bf8435e0b23c99472af7bafd6b44 |
affected |
ef246a1480cc484cd2aeda75737cb0848616ddf3< 9b40c59bab08f2a99abf969cc0bb92fa49de004b |
affected | ||
ef246a1480cc484cd2aeda75737cb0848616ddf3< 033ce021a220913ac02416fcb5ac883a9ff8b6c7 |
affected | ||
ef246a1480cc484cd2aeda75737cb0848616ddf3< 6c0cf89f36ac0c0fd8687a4ccdce2efb23a9c663 |
affected | ||
6.7 |
affected | ||
< 6.7 |
unaffected | ||
6.12.94≤ 6.12.* |
unaffected | ||
6.18.36≤ 6.18.* |
unaffected | ||
| … +2 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-63795 | 10.0 CRITICAL | 9p: avoid putting oldfid in p9_client_walk() error path |
| CVE-2026-64091 | 9.8 CRITICAL | batman-adv: tt: fix TOCTOU race for reported vlans |
| CVE-2026-63984 | 9.8 CRITICAL | ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() |
| CVE-2026-64025 | 9.8 CRITICAL | bpf, skmsg: fix verdict sk_data_ready racing with ktls rx |
| CVE-2026-63922 | 9.8 CRITICAL | ipv6: exthdrs: refresh nh after handling HAO option |
| CVE-2026-63979 | 9.8 CRITICAL | net/handshake: hand off the pinned file reference to accept_doit |
| CVE-2026-64056 | 9.8 CRITICAL | net: ethernet: cortina: Make RX SKB per-port |
| CVE-2026-63800 | 9.8 CRITICAL | pNFS: Fix use-after-free in pnfs_update_layout() |
| CVE-2026-63978 | 9.8 CRITICAL | net/handshake: Drain pending requests at net namespace exit |
| CVE-2026-64055 | 9.8 CRITICAL | net: ethernet: cortina: Carry over frag counter |
| CVE-2026-63808 | 9.8 CRITICAL | exfat: fix potential use-after-free in exfat_find_dir_entry() |
| CVE-2026-64033 | 9.8 CRITICAL | RDMA/rtrs: Fix use-after-free in path file creation cleanup |
| CVE-2026-63888 | 9.8 CRITICAL | scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() |
| CVE-2026-63887 | 9.8 CRITICAL | scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf |
| CVE-2026-64113 | 9.8 CRITICAL | ixgbevf: fix use-after-free in VEPA multicast source pruning |
| CVE-2026-63825 | 9.8 CRITICAL | gcov: use atomic counter updates to fix concurrent access crashes |
| CVE-2026-63857 | 9.8 CRITICAL | net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit() |
| CVE-2026-64125 | 9.8 CRITICAL | net: bcmgenet: keep RBUF EEE/PM disabled |
| CVE-2026-64160 | 9.8 CRITICAL | netfs: Fix potential for tearing in ->remote_i_size and ->zero_point |
| CVE-2026-63924 | 9.8 CRITICAL | ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() |
Showing top 20 of 429 CVEs. View all on vendor page → →
No comments yet