在 Linux 内核中,以下漏洞已得到修复: crypto: krb5 - 对派生密钥缓冲区使用 kfree_sensitive() 和 使用普通的 释放持有新派生密钥的缓冲区,导致密钥材料残留在已释放的 slab 对象中。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 3936f02bf2d3308a7359dd37dd96cd60603d8170< 731a5b6fb4c1705f9405d9029dd64ea81e336207 |
affected |
3936f02bf2d3308a7359dd37dd96cd60603d8170< 91b96dc9cc250cd16751f53de525cf3442ca0962 |
affected | ||
3936f02bf2d3308a7359dd37dd96cd60603d8170< a1bf79365794783b19f5b09e8a23f7ee311e8931 |
affected | ||
3936f02bf2d3308a7359dd37dd96cd60603d8170< f7d53dd3f267e46a784f219a75072f2f400d42b9 |
affected | ||
6.15 |
affected | ||
< 6.15 |
unaffected | ||
6.18.49≤ 6.18.* |
unaffected | ||
7.1.13≤ 7.1.* |
unaffected | ||
| … +2 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80925 | vlan: fix skb_under_panic and races when toggling HW VLAN offload | |
| CVE-2026-80923 | xhci: dbgtty: Fix unregister on tty_register_driver() failure | |
| CVE-2026-80922 | crypto: qcom-rng - Allow zero as a random number | |
| CVE-2026-80921 | KVM: s390: vsie: zero stale crypto bits | |
| CVE-2026-80920 | io_uring: defer eventfd signaling when queued from a wakeup handler | |
| CVE-2026-80919 | drm/amdgpu: fix recursive ww_mutex acquire in amdgpu_devcoredump_format | |
| CVE-2026-80918 | HID: core: fix number/pointer type confusion on long items | |
| CVE-2026-80917 | PCI: host-generic: Fix NULL pointer dereference on 32-bit CAM systems | |
| CVE-2026-80916 | kcov: fix data corruption and race conditions on PREEMPT_RT | |
| CVE-2026-80915 | drm/xe: Fix DPT allocation paths. | |
| CVE-2026-80914 | Bluetooth: ISO: fix use-after-free of listener socket in iso_conn_ready |
No comments yet