Linux 内核中的以下漏洞已修复: ASoC: tas2562: 对音量写入的值进行校验 函数没有对用户空间写入的控制值进行任何校验,而是直接使用该值作为索引,在一个固定大小的数组中查找对应值。该数组很容易发生越界访问,随后将查到的值直接写入设备。本次修复增加了校验逻辑,确保只加载数组中实际存在的值。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | bf726b1c86f2caab70ad614cdf7da3b81ad08e69< 1f389ecd0c35e9e281036e44c121df904f3164c1 |
affected |
bf726b1c86f2caab70ad614cdf7da3b81ad08e69< 20bdbb1376457ecbf418bf677fd285820d1fc011 |
affected | ||
bf726b1c86f2caab70ad614cdf7da3b81ad08e69< db488d653d896fcf9ac87e15239924c2928bbc3c |
affected | ||
bf726b1c86f2caab70ad614cdf7da3b81ad08e69< c37a0461c0d0a70c5de4fdbd70449a7f53c12dda |
affected | ||
bf726b1c86f2caab70ad614cdf7da3b81ad08e69< 8fb41964f7e4e4207c8999af2056894caa7a252a |
affected | ||
5.7 |
affected | ||
< 5.7 |
unaffected | ||
6.6.153≤ 6.6.* |
unaffected | ||
| … +4 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80561 | 9.8 CRITICAL | libceph: fix multiple unsafe decodes in decode_locker() |
| CVE-2026-80587 | 9.8 CRITICAL | mptcp: avoid combining some incoming suboptions |
| CVE-2026-74737 | 9.8 CRITICAL | net: ethernet: ti: am65-cpsw-nuss: Fix port_id extraction from SRC TAG |
| CVE-2026-80589 | 9.8 CRITICAL | block: stop the timeout timer when releasing a never added disk |
| CVE-2026-74743 | 9.8 CRITICAL | macvlan: inherit needed_headroom and needed_tailroom from lowerdev |
| CVE-2026-74744 | 9.8 CRITICAL | ipvlan: inherit needed_headroom and needed_tailroom from phy_dev |
| CVE-2026-80557 | 9.8 CRITICAL | libceph: fix OOB read in decode_watchers() via missing bounds check |
| CVE-2026-80558 | 9.8 CRITICAL | libceph: Avoid using invalid osd indices from primary_temp |
| CVE-2026-74752 | 9.8 CRITICAL | sctp: validate cookie AUTH state before use |
| CVE-2026-80586 | 9.8 CRITICAL | mptcp: options: reset DSS fields in case of unexpected size |
| CVE-2026-80519 | 9.8 CRITICAL | ovpn: finish crypto callback cleanup before peer release |
| CVE-2026-80528 | 9.8 CRITICAL | ceph: avoid fs reclaim while using current->journal_info |
| CVE-2026-74746 | 9.8 CRITICAL | netfilter: flowtable: publish GC-visible tuple last |
| CVE-2026-80585 | 9.4 CRITICAL | mptcp: fastopen: only mark MPTFO subflows with SYN data |
| CVE-2026-74751 | 9.4 CRITICAL | riscv: lib: Fix ZBB strnlen reading past count boundary |
| CVE-2026-80551 | 9.3 CRITICAL | s390/vfio_ccw: Ensure first IDAW remains constant |
| CVE-2026-80554 | 9.3 CRITICAL | s390/vfio_ccw: Limit the number of channel program segments |
| CVE-2026-80553 | 8.8 HIGH | s390/vfio_ccw: Cancel existing workqueues |
| CVE-2026-80552 | 8.8 HIGH | s390/vfio_ccw: Ensure index for read/write regions are within range |
| CVE-2026-80548 | 8.8 HIGH | s390/vfio_ccw: Selectively expand io_mutex |
Showing top 20 of 92 CVEs. View all on vendor page → →
No comments yet