Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel 5.3版本存在安全漏洞,该漏洞源于overlayfs在执行copy_file_range操作时,对源文件的读取权限检查使用了错误的挂载凭据,可能导致拒绝访问或允许读取未授权文件。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 5dae222a5ff0c269730393018a5539cc970a4726< 9ec22c8113d8cf72ed7197bb61037dcad09e50d8 |
affected |
5dae222a5ff0c269730393018a5539cc970a4726< 1f4a107439d2e43db176e34919933e617cb7f2c5 |
affected | ||
5dae222a5ff0c269730393018a5539cc970a4726< a1e0eb8f55cfe09bb31a202a388babc411292656 |
affected | ||
5.3 |
affected | ||
< 5.3 |
unaffected | ||
6.18.42≤ 6.18.* |
unaffected | ||
7.1.6≤ 7.1.* |
unaffected | ||
7.2≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-68431 | 9.1 CRITICAL | ksmbd: validate minimum PDU size for transform requests |
| CVE-2026-68432 | 8.8 HIGH | vxlan: require CAP_NET_ADMIN in the device netns for changelink |
| CVE-2026-68433 | 8.6 HIGH | libceph: bound get_version reply decode to front len |
| CVE-2026-68446 | 7.8 HIGH | drm/vmwgfx: Validate vmw_surface_metadata::array_size |
| CVE-2026-68445 | 7.8 HIGH | drm/vc4: Prevent shader BO mappings from becoming writable |
| CVE-2026-68440 | 7.8 HIGH | net: txgbe: fix heap overflow when reading module EEPROM |
| CVE-2026-68442 | 7.8 HIGH | btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps |
| CVE-2026-68447 | 7.1 HIGH | drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size |
| CVE-2026-68439 | wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() | |
| CVE-2026-68450 | btrfs: free mapping node on duplicate reloc root insert | |
| CVE-2026-68449 | ata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning | |
| CVE-2026-68444 | firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get() | |
| CVE-2026-68443 | hwmon: (gigabyte_waterforce) Stop device IO before calling hid_hw_stop | |
| CVE-2026-68441 | net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains | |
| CVE-2026-68429 | drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue_probe() | |
| CVE-2026-68438 | smp: Make CSD lock acquisition atomic for debug mode | |
| CVE-2026-68437 | drm/imagination: Fit paired fragment job in the correct CCCB | |
| CVE-2026-68436 | drm/amd/display: use kvzalloc to allocate struct dc | |
| CVE-2026-68435 | LoongArch: Fix address space mismatch in kexec command line lookup | |
| CVE-2026-68434 | serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet