在 Linux 内核中,以下漏洞已得到修复: dibs:在 中初始化 原本由 进行初始化,但在该函数调用之前,一个 dibs 设备就已经可能接收中断了: 会先调用 ,进而调用 ,之后才会调用 。 在此阶段,尚无任何客户端注册过 dmb,因此不会发生 dmb 中断;但可能会发生 GID 事件中断。而 在进入时总是无条件地获取 ,在此之前不会进行任何其他检查。 因此,改为在 中初始化锁,以确保从驱动程序可以向其中断处理程序发布设备的那一刻起,该锁即处于有效状态。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | cc21191b584c6f7836b0f10774f8278b7cbfba10< fe79571f40434b257d68cbfb7b3ae93a794d8a11 |
affected |
cc21191b584c6f7836b0f10774f8278b7cbfba10< 2926031acba100d0c18fcfaa7a2ed29609318848 |
affected | ||
cc21191b584c6f7836b0f10774f8278b7cbfba10< c27e360545373b7aee9862a5beef3b9fb3df0c25 |
affected | ||
6.18 |
affected | ||
< 6.18 |
unaffected | ||
6.18.45≤ 6.18.* |
unaffected | ||
7.1.9≤ 7.1.* |
unaffected | ||
7.2≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-74612 | 10.0 CRITICAL | veth: fix skb length accounting after XDP frag adjustment |
| CVE-2026-74705 | 10.0 CRITICAL | udp: fix potential use-after-free in tunnel segmentation |
| CVE-2026-74730 | 9.8 CRITICAL | NFS: Pin the 'struct nfs_server' during a FREE_STATEID call |
| CVE-2026-74616 | 9.8 CRITICAL | xdp: reject clones that overrun skb_shared_info tailroom |
| CVE-2026-74727 | 9.8 CRITICAL | ovpn: skip rehash for peers already removed from by_id |
| CVE-2026-74586 | 9.8 CRITICAL | sctp: clear new_transport when removing a peer |
| CVE-2026-74597 | 9.8 CRITICAL | ip6_tunnel: clear skb2->cb[] in ip6ip6_err() |
| CVE-2026-74688 | 9.8 CRITICAL | sctp: clear control chunk transport if it is being removed |
| CVE-2026-74611 | 9.8 CRITICAL | tls: rx: restore msg_iter before TLS 1.3 optimistic retry |
| CVE-2026-74723 | 9.8 CRITICAL | btrfs: lzo: reject inline extents without valid headers |
| CVE-2026-74588 | 9.8 CRITICAL | sctp: keep chunk->transport in step with the list it is queued on |
| CVE-2026-74628 | 9.8 CRITICAL | net/x25: fix use-after-free of the socket by its timers |
| CVE-2026-74587 | 9.8 CRITICAL | sctp: fix use-after-free of cached ASCONF chunk |
| CVE-2026-74591 | 9.8 CRITICAL | mm/filemap: __filemap_add_folio() restore index before retrying |
| CVE-2026-74662 | 9.8 CRITICAL | inet: frags: publish queues before arming timer |
| CVE-2026-74669 | 9.8 CRITICAL | ipvs: clear IPv4 options after rebasing tunnel ICMP errors |
| CVE-2026-74608 | 9.8 CRITICAL | smb: client: Fix use-after-free in cifs_try_adding_channels() |
| CVE-2026-74712 | 9.3 CRITICAL | vdpa/mlx5: Fix buffer length in create_direct_keys() |
| CVE-2026-74665 | 9.1 CRITICAL | net: fix skb length accounting after generic XDP frag adjustment |
| CVE-2026-74629 | 8.8 HIGH | net/dibs: Correct freeing of dmb_clientid_arr |
Showing top 20 of 150 CVEs. View all on vendor page → →
No comments yet