在 Linux 内核中,已修复以下漏洞: crypto: tegra - 修复 tegra_gcm_do_one_req() 中 rctx->cryptlen 的计算 在 中,以与 中相同的方式计算 。当前的计算公式可能导致崩溃:如果调用者未调用 , 将保持为 0。此时,使用不正确的 执行解密操作,会导致对 缓冲区发生越界写入。 作为后续的清理工作,删除了 中的 字段,因为该字段似乎完全未被使用。同时,分别简化了 和 函数。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 0880bb3b00c855fc244b7177ffdaafef4d0aa1e0< cd6991001bf0681ed0bcf21f9cc3d261d749b2bb |
affected |
0880bb3b00c855fc244b7177ffdaafef4d0aa1e0< 99a18e1d979e0fad3aaf9c65ae6696897c1d9869 |
affected | ||
0880bb3b00c855fc244b7177ffdaafef4d0aa1e0< c6237834d9994de209cb90c7a2c461247bce8e90 |
affected | ||
0880bb3b00c855fc244b7177ffdaafef4d0aa1e0< 360f2974fcea49c61f6d6f81554741a9eeee7168 |
affected | ||
6.10 |
affected | ||
< 6.10 |
unaffected | ||
6.12.105≤ 6.12.* |
unaffected | ||
6.18.46≤ 6.18.* |
unaffected | ||
| … +2 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-74752 | 9.8 CRITICAL | sctp: validate cookie AUTH state before use |
| CVE-2026-80589 | 9.8 CRITICAL | block: stop the timeout timer when releasing a never added disk |
| CVE-2026-74737 | 9.8 CRITICAL | net: ethernet: ti: am65-cpsw-nuss: Fix port_id extraction from SRC TAG |
| CVE-2026-80528 | 9.8 CRITICAL | ceph: avoid fs reclaim while using current->journal_info |
| CVE-2026-80587 | 9.8 CRITICAL | mptcp: avoid combining some incoming suboptions |
| CVE-2026-80558 | 9.8 CRITICAL | libceph: Avoid using invalid osd indices from primary_temp |
| CVE-2026-74743 | 9.8 CRITICAL | macvlan: inherit needed_headroom and needed_tailroom from lowerdev |
| CVE-2026-74744 | 9.8 CRITICAL | ipvlan: inherit needed_headroom and needed_tailroom from phy_dev |
| CVE-2026-80561 | 9.8 CRITICAL | libceph: fix multiple unsafe decodes in decode_locker() |
| CVE-2026-74746 | 9.8 CRITICAL | netfilter: flowtable: publish GC-visible tuple last |
| CVE-2026-80557 | 9.8 CRITICAL | libceph: fix OOB read in decode_watchers() via missing bounds check |
| CVE-2026-80519 | 9.8 CRITICAL | ovpn: finish crypto callback cleanup before peer release |
| CVE-2026-80586 | 9.8 CRITICAL | mptcp: options: reset DSS fields in case of unexpected size |
| CVE-2026-74751 | 9.4 CRITICAL | riscv: lib: Fix ZBB strnlen reading past count boundary |
| CVE-2026-80585 | 9.4 CRITICAL | mptcp: fastopen: only mark MPTFO subflows with SYN data |
| CVE-2026-80554 | 9.3 CRITICAL | s390/vfio_ccw: Limit the number of channel program segments |
| CVE-2026-80551 | 9.3 CRITICAL | s390/vfio_ccw: Ensure first IDAW remains constant |
| CVE-2026-80576 | 8.8 HIGH | drm/amdgpu: reject oversized IBs with per-ring packet limits |
| CVE-2026-80553 | 8.8 HIGH | s390/vfio_ccw: Cancel existing workqueues |
| CVE-2026-80547 | 8.8 HIGH | s390/vfio_ccw: Implement a crw lock |
Showing top 20 of 92 CVEs. View all on vendor page → →
No comments yet