在 Linux 内核中,已修复以下漏洞: KVM: s390: pci: 修复 AIBV 分配失败时的 NULL 指针解引用问题 函数在失败时会返回 NULL,但调用方从未检查其返回值。如果该函数调用失败, 将为 NULL,随后在 中解引用时会导致崩溃。修复方法是添加 NULL 检查,并在分配失败时释放先前已分配的 AISB 位域及 资源。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc< 96099486b63985801c9c6ef22505e9aa635b2d20 |
affected |
3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc< 0a95abe964400771ad82b027d7b84a0d183cd0db |
affected | ||
3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc< df947d85e164a50a29d43a96e814f69ab1d0f7ed |
affected | ||
3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc< e137d082325bbcae780087b57501d38585e625d9 |
affected | ||
3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc< d1a103dc9016c25e7423ce5841a5cc2df76d59f3 |
affected | ||
3c5a1b6f0a18520a0edd0600fef6f1a8553b8fdc< 8bf09b9b7d3232806df95f409581f8a9fd99a3fa |
affected | ||
6.0 |
affected | ||
< 6.0 |
unaffected | ||
| … +6 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80694 | 9.8 CRITICAL | net: ethernet: mtk_eth_soc: pass eth to mtk_handle_irq_rx in poll_controller |
| CVE-2026-80668 | 9.8 CRITICAL | netfilter: nf_conntrack_expect: use conntrack GC to reap expectations |
| CVE-2026-80634 | 9.8 CRITICAL | netfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag |
| CVE-2026-80673 | 9.8 CRITICAL | ntfs: bound the look-ahead attribute-list entry in ntfs_external_attr_find() |
| CVE-2026-80630 | 9.8 CRITICAL | net/sched: sch_fq_codel: Do not call qdisc_tree_reduce_backlog during peek before restorin |
| CVE-2026-80617 | 9.8 CRITICAL | net: airoha: fix foe_check_time allocation size |
| CVE-2026-80612 | 9.8 CRITICAL | net: lwtunnel: Drop skb metadata before LWT encapsulation |
| CVE-2026-80714 | 9.8 CRITICAL | ipvs: do not propagate one-packet flag to synced conns |
| CVE-2026-80609 | 9.8 CRITICAL | qede: fix out-of-bounds check for cqe->len_list[] |
| CVE-2026-80681 | 9.8 CRITICAL | vxlan: re-fetch eth header after route_shortcircuit() |
| CVE-2026-80600 | 9.8 CRITICAL | batman-adv: dat: acquire ARP hw source only after skb realloc |
| CVE-2026-80674 | 9.8 CRITICAL | ntfs: validate resident attribute lists and harden the validator |
| CVE-2026-80671 | 9.3 CRITICAL | perf sched: Fix register_pid() overflow, strcpy, and BUG_ON |
| CVE-2026-80693 | 9.3 CRITICAL | idpf: bound interrupt-vector register fill to the allocated array |
| CVE-2026-80670 | 9.1 CRITICAL | perf tools: Use perf_env__get_cpu_topology() in machine__resolve() |
| CVE-2026-80603 | 9.1 CRITICAL | netfilter: nf_conntrack_irc: fix parse_dcc() off-by-one OOB read |
| CVE-2026-80633 | 8.8 HIGH | iommufd: Take dma_resv lock before dma_buf_unpin() in release path |
| CVE-2026-80683 | 8.8 HIGH | Bluetooth: SCO: give the socket its own sco_conn reference |
| CVE-2026-80672 | 8.8 HIGH | ntfs: fix u16 truncation of restart-area length check |
| CVE-2026-80692 | 8.8 HIGH | Bluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacks |
Showing top 20 of 135 CVEs. View all on vendor page → →
No comments yet