目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2026-74490— Linux kernel 安全漏洞

CVSS 8.8 · High EPSS 0.40% · P34

Affected Version Matrix 12

ベンダープロダクトVersion Rangeステータス
LinuxLinuxb4b9771bcbbd5839b0f77aba55e2f85989ed6779< d7940bb6a8e7ab28f972c2875cb05783216312dcaffected
b4b9771bcbbd5839b0f77aba55e2f85989ed6779< 5e82beba4bc1f91d0e64c9c43f2b2fa9cd1c2a7daffected
b4b9771bcbbd5839b0f77aba55e2f85989ed6779< bed792737b5f1ba773054dbe984502958bdfe6ceaffected
b4b9771bcbbd5839b0f77aba55e2f85989ed6779< ac2f787980fdf4364cd5651a4c8128e59b8de3aaaffected
b4b9771bcbbd5839b0f77aba55e2f85989ed6779< b4f1719dfea023220e0e6bd892b087d76b2a6a49affected
5.0affected
< 5.0unaffected
6.6.151≤ 6.6.*unaffected
… +4 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2026-74490の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
tipc: avoid use-after-free in poll trace queue dumps
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: tipc: avoid use-after-free in poll trace queue dumps TIPC socket tracepoints dump queue state through tipc_sk_dump(). Most queue-dump callsites already serialize that walk under the socket lock or sk->sk_lock.slock, but tipc_poll() calls trace_tipc_sk_poll(..., TIPC_DUMP_ALL, ...) without holding either lock. That lets the poll trace path reach tipc_list_dump() and backlog head/tail dumping while another context dequeues and frees an skb, leaving the trace helper dereferencing a stale queue entry. Stop the unlocked poll trace site from requesting queue dumps. Other queue dump trace callsites keep their existing output under the locking they already provide, while poll still emits the event itself without walking live queue members from an unlocked context.
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel 5.0版本存在安全漏洞,该漏洞源于tipc_poll在未持有套接字锁的情况下访问队列转储,可能导致释放后重用。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux b4b9771bcbbd5839b0f77aba55e2f85989ed6779 ~ d7940bb6a8e7ab28f972c2875cb05783216312dc -
LinuxLinux 5.0 -

II. CVE-2026-74490の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2026-74490のインテリジェンス情報

登录查看更多情报信息。

CVE-2026-74490 补丁与修复 (4)

Same Patch Batch · Linux · 2026-08-15 · 846 CVEs total

CVE-2026-7240710.0 CRITICALgeneve: validate inner network offset in geneve_gro_complete()
CVE-2026-7240810.0 CRITICALgeneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint
CVE-2026-7427910.0 CRITICALcrypto: cavium/cpt - fix DMA cleanup using wrong loop index
CVE-2026-7242110.0 CRITICALipv4: fib: Don't ignore error route in local/main tables.
CVE-2026-7428010.0 CRITICALcrypto: marvell/octeontx - fix DMA cleanup using wrong loop index
CVE-2026-7430910.0 CRITICALvdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler
CVE-2026-7447510.0 CRITICALvxlan: use neigh_ha_snapshot() in route_shortcircuit()
CVE-2026-724939.9 CRITICALnet: serialize netif_running() check in enqueue_to_backlog()
CVE-2026-724369.8 CRITICALnetfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types
CVE-2026-743949.8 CRITICALRDMA/srpt: fix integer overflow in immediate data length check
CVE-2026-724179.8 CRITICALnetfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto()
CVE-2026-720699.8 CRITICALlocking/rt: Fix the incorrect RCU protection in rt_spin_unlock()
CVE-2026-724229.8 CRITICALksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE
CVE-2026-720659.8 CRITICALnet: mana: Validate the packet length reported by the NIC
CVE-2026-720649.8 CRITICALnet: mana: Sync page pool RX frags for CPU
CVE-2026-724299.8 CRITICALipv6: ioam: fix type confusion of dst_entry
CVE-2026-722519.8 CRITICALnetfilter: nf_nat_sip: reload possible stale data pointer
CVE-2026-720469.8 CRITICALgve: fix header buffer corruption with header-split and HW-GRO
CVE-2026-722269.8 CRITICALbatman-adv: tt: prevent TVLV OOB check overflow
CVE-2026-724519.8 CRITICALxfrm: Fix xfrm state cache insertion race

Showing 20 of 846 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2026-74490へのコメント

まだコメントはありません


コメントを残す