Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel 6.16版本存在安全漏洞,该漏洞源于scratch size未按CMA_MIN_ALIGNMENT_BYTES对齐,可能导致内核释放部分scratch的页块。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 3dc92c311498c4d307cfdd0c6c3ac9355b50f683< b8271be34bce151597da5b5179e0648c281322a4 |
affected |
3dc92c311498c4d307cfdd0c6c3ac9355b50f683< 9fefab759f59bf891bef7be15aee4bc7caec7ec3 |
affected | ||
3dc92c311498c4d307cfdd0c6c3ac9355b50f683< 0e39380a7316122e1b00012b3f3cd3e318b3e7d3 |
affected | ||
6.16 |
affected | ||
< 6.16 |
unaffected | ||
6.18.42≤ 6.18.* |
unaffected | ||
7.1.5≤ 7.1.* |
unaffected | ||
7.2≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-74475 | 10.0 CRITICAL | vxlan: use neigh_ha_snapshot() in route_shortcircuit() |
| CVE-2026-74280 | 10.0 CRITICAL | crypto: marvell/octeontx - fix DMA cleanup using wrong loop index |
| CVE-2026-74279 | 10.0 CRITICAL | crypto: cavium/cpt - fix DMA cleanup using wrong loop index |
| CVE-2026-72408 | 10.0 CRITICAL | geneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint |
| CVE-2026-74309 | 10.0 CRITICAL | vdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler |
| CVE-2026-72421 | 10.0 CRITICAL | ipv4: fib: Don't ignore error route in local/main tables. |
| CVE-2026-72407 | 10.0 CRITICAL | geneve: validate inner network offset in geneve_gro_complete() |
| CVE-2026-72493 | 9.9 CRITICAL | net: serialize netif_running() check in enqueue_to_backlog() |
| CVE-2026-72201 | 9.8 CRITICAL | ntfs: validate index entries on reading |
| CVE-2026-72065 | 9.8 CRITICAL | net: mana: Validate the packet length reported by the NIC |
| CVE-2026-72064 | 9.8 CRITICAL | net: mana: Sync page pool RX frags for CPU |
| CVE-2026-74480 | 9.8 CRITICAL | net: bridge: stop fast-leave after deleting a port group |
| CVE-2026-72191 | 9.8 CRITICAL | ntfs3: validate split-point offset in indx_insert_into_buffer |
| CVE-2026-72192 | 9.8 CRITICAL | ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head |
| CVE-2026-74478 | 9.8 CRITICAL | um: vector: fix use-after-free in vector_mmsg_rx() |
| CVE-2026-72194 | 9.8 CRITICAL | fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow |
| CVE-2026-74269 | 9.8 CRITICAL | bnxt: fix head underflow on XDP head-grow |
| CVE-2026-72209 | 9.8 CRITICAL | ntfs: validate attribute values on lookup |
| CVE-2026-72211 | 9.8 CRITICAL | ntfs: grow index root value before reparent header update |
| CVE-2026-72210 | 9.8 CRITICAL | ntfs: fix off-by-one in mapping pairs decoding bounds checks |
Showing top 20 of 845 CVEs. View all on vendor page → →
No comments yet