Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel存在安全漏洞,该漏洞源于FUSE的request_wait_answer()函数在abort_on_kill路径调用fuse_abort_conn()后未等待FR_FINISHED,若fuse_dev_do_write()并发处理同一请求,调用方释放仍被访问的req->args,导致释放后重用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 0c7fca880a40a209a9c92be14143996d14b93ff6< a8bbb2a60513bf322170903c21462f0bf4f62be2 |
affected |
204aa22a686bfee48daca7db620c1e017615f2ff< 715cb86e33cda43f5224cdc3fd5610c0b6a46f7a |
affected | ||
204aa22a686bfee48daca7db620c1e017615f2ff< 64b0b5cacbd2fea88001464cb712c9dfc795b26e |
affected | ||
300e812b882a174dca675d8028684001ad5826bc |
affected | ||
6.18.25< 6.18.50 |
affected | ||
7.0.2< 7.1 |
affected | ||
7.1 |
affected | ||
< 7.1 |
unaffected | ||
| … +3 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80865 | bpf: Add missing access_ok call to copy_user_syms | |
| CVE-2026-80855 | fuse: fix invalidate lock leak on open O_TRUNC DAX failure | |
| CVE-2026-80856 | fuse: fix invalidate lock leak on setattr writeback failure | |
| CVE-2026-80858 | fuse: publish io-uring queues with release semantics | |
| CVE-2026-80859 | fuse: fix missing barrier when checking io-uring readiness | |
| CVE-2026-80860 | fuse: fix race between interrupt and resend | |
| CVE-2026-80861 | usb: xhci: bail out of setup if the controller is inaccessible | |
| CVE-2026-80862 | nvme-tcp: fix usage of page_frag_cache | |
| CVE-2026-80863 | RDMA/rxe: Fix OOB in free_rd_atomic_resources() | |
| CVE-2026-80864 | RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp | |
| CVE-2026-80870 | drm/amdkfd: Validate CRIU-restored IDs before idr_alloc | |
| CVE-2026-80874 | arm64: dts: renesas: ironhide: Describe inline ECC carveouts | |
| CVE-2026-80873 | KVM: arm64: nv: Write ESR_EL2 for injected nested SError exceptions | |
| CVE-2026-80872 | ALSA: hda/tas2781: Cancel async firmware request at unbind | |
| CVE-2026-80871 | crypto: xilinx-trng - Remove crypto_rng interface | |
| CVE-2026-80868 | ntfs3: Allocate iomap inline_data using alloc_page | |
| CVE-2026-80866 | tipc: avoid busy looping in tipc_exit_net() | |
| CVE-2026-80867 | alpha/PCI: Add security_locked_down() check to pci_mmap_resource() | |
| CVE-2026-80854 | usb: gadget: f_tcm: keep port count until LUN teardown completes | |
| CVE-2026-80869 | ntfs: bound the attribute-list entry in ntfs_read_inode_mount() |
Showing top 20 of 156 CVEs. View all on vendor page → →
No comments yet