Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel存在安全漏洞,该漏洞源于pmdomain的mediatek驱动在处理设备节点时,错误路径在检查regmap查找结果前释放设备节点,后续使用%pOF格式化时可能引用已释放的设备节点,导致释放后重用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | c29345fa5f66bea0790cf2219f57b974d4fc177b< 970b9c83a07c405fdd32bcce7cc4c9e670e58875 |
affected |
c29345fa5f66bea0790cf2219f57b974d4fc177b< 10bf2d7261d7f724ed43a09eea4c90c19c0230a0 |
affected | ||
c29345fa5f66bea0790cf2219f57b974d4fc177b< 3e013bc8b941bd52c8e3a99798d0ae8792cb71ca |
affected | ||
6.18 |
affected | ||
< 6.18 |
unaffected | ||
6.18.46≤ 6.18.* |
unaffected | ||
7.1.10≤ 7.1.* |
unaffected | ||
7.2≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80726 | 9.3 CRITICAL | KVM: x86/mmu: WARN and clear role.invalid when creating a child shadow page |
| CVE-2026-80734 | 8.8 HIGH | btrfs: initialize inode mapping flags for cached inodes |
| CVE-2026-80753 | 8.4 HIGH | ovpn: run deferred work on a module-owned workqueue |
| CVE-2026-80752 | 8.4 HIGH | Input: psxpad-spi - set driver data before use |
| CVE-2026-80745 | 8.4 HIGH | regulator: fp9931: Fix VPOS/VNEG voltage selector table |
| CVE-2026-80747 | 8.0 HIGH | drm/amdkfd: Add bounds check for CRAT subtype length |
| CVE-2026-80737 | 7.8 HIGH | serial: amba-pl011: synchronize DMA teardown |
| CVE-2026-80732 | 7.8 HIGH | ata: pata_sl82c105: fix bridge revision use-after-free |
| CVE-2026-80731 | 7.8 HIGH | net: remove CAP_SYS_RAWIO zero-padding in dev_validate_header |
| CVE-2026-80736 | 7.8 HIGH | thunderbolt: Fix bandwidth group reservation indexing |
| CVE-2026-80748 | 7.8 HIGH | mmc: loongson2: Fix sg iteration in data reorder functions |
| CVE-2026-80751 | 7.8 HIGH | pmdomain: mediatek: mfg: initialize prev_o in mtk_mfg_attach_dev() |
| CVE-2026-80754 | 7.8 HIGH | Input: synaptics-rmi4 - fix F55 transmitter electrode count typo |
| CVE-2026-80735 | 7.3 HIGH | ovpn: ensure socket is owned by ovpn before deref sk_user_data |
| CVE-2026-80738 | 7.3 HIGH | bpf: Check sk_state before sk_protocol in bpf_tcp_*_syncookie |
| CVE-2026-80749 | 7.1 HIGH | drm/connector/hdmi: Fix out of bounds memory read |
| CVE-2026-80741 | 7.1 HIGH | drm/log: Fix out-of-bounds read on empty message length |
| CVE-2026-80727 | x86/mce: Set up the polling timer before CMCI discovery | |
| CVE-2026-80740 | drm/log: Fix infinite loop when scale is too large for display | |
| CVE-2026-80733 | net: remove WARN_ON_ONCE() from sk_mc_loop() |
Showing top 20 of 32 CVEs. View all on vendor page → →
No comments yet