在 Linux 内核中,已修复以下漏洞: s390/vfio_ccw:选择性扩展 io_mutex 的保护范围 最初定义用于序列化 ,但由于 I/O 区域与 I/O 操作之间存在紧密关联,该互斥量也被间接用于同步 I/O 操作本身。 针对当前可能存在的若干竞态条件,有两种处理方案: A) 扩展 的保护范围,以覆盖剩余的竞态窗口;或 B) 将 的作用范围缩小至仅 ,并为剩余的 I/O 资源引入新的锁定机制。 本补丁采用方案 A,因为方案 B 会引入更多需要跟踪并维持正确层级关系的交互逻辑。此外,该补丁还利用了 中工作
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 4f76617378ee97c557b526cb58d3c61eb0a9c963< f72a51810d49411bd8cad0c2df8592320a2fe5cc |
affected |
4f76617378ee97c557b526cb58d3c61eb0a9c963< 2ba9efdf9ebedc4e54df4b56aa3b43a65f7967cd |
affected | ||
4f76617378ee97c557b526cb58d3c61eb0a9c963< b6aecea4b2b246f9fbd98a5712daa1193a60818e |
affected | ||
4f76617378ee97c557b526cb58d3c61eb0a9c963< 2a5ac0c0f1f7da33929211a2e41911bf72ee35d8 |
affected | ||
4f76617378ee97c557b526cb58d3c61eb0a9c963< 34f4feff3e90bd09308fad0974e97113b23b812a |
affected | ||
5.2 |
affected | ||
< 5.2 |
unaffected | ||
6.6.153≤ 6.6.* |
unaffected | ||
| … +4 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80519 | 9.8 CRITICAL | ovpn: finish crypto callback cleanup before peer release |
| CVE-2026-80586 | 9.8 CRITICAL | mptcp: options: reset DSS fields in case of unexpected size |
| CVE-2026-80587 | 9.8 CRITICAL | mptcp: avoid combining some incoming suboptions |
| CVE-2026-80589 | 9.8 CRITICAL | block: stop the timeout timer when releasing a never added disk |
| CVE-2026-74737 | 9.8 CRITICAL | net: ethernet: ti: am65-cpsw-nuss: Fix port_id extraction from SRC TAG |
| CVE-2026-74743 | 9.8 CRITICAL | macvlan: inherit needed_headroom and needed_tailroom from lowerdev |
| CVE-2026-74746 | 9.8 CRITICAL | netfilter: flowtable: publish GC-visible tuple last |
| CVE-2026-80557 | 9.8 CRITICAL | libceph: fix OOB read in decode_watchers() via missing bounds check |
| CVE-2026-80558 | 9.8 CRITICAL | libceph: Avoid using invalid osd indices from primary_temp |
| CVE-2026-80561 | 9.8 CRITICAL | libceph: fix multiple unsafe decodes in decode_locker() |
| CVE-2026-80528 | 9.8 CRITICAL | ceph: avoid fs reclaim while using current->journal_info |
| CVE-2026-74752 | 9.8 CRITICAL | sctp: validate cookie AUTH state before use |
| CVE-2026-74744 | 9.8 CRITICAL | ipvlan: inherit needed_headroom and needed_tailroom from phy_dev |
| CVE-2026-80585 | 9.4 CRITICAL | mptcp: fastopen: only mark MPTFO subflows with SYN data |
| CVE-2026-74751 | 9.4 CRITICAL | riscv: lib: Fix ZBB strnlen reading past count boundary |
| CVE-2026-80554 | 9.3 CRITICAL | s390/vfio_ccw: Limit the number of channel program segments |
| CVE-2026-80551 | 9.3 CRITICAL | s390/vfio_ccw: Ensure first IDAW remains constant |
| CVE-2026-80552 | 8.8 HIGH | s390/vfio_ccw: Ensure index for read/write regions are within range |
| CVE-2026-80553 | 8.8 HIGH | s390/vfio_ccw: Cancel existing workqueues |
| CVE-2026-80547 | 8.8 HIGH | s390/vfio_ccw: Implement a crw lock |
Showing top 20 of 92 CVEs. View all on vendor page → →
No comments yet