In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: hold sk properly in sco_conn_ready sk deref in sco_conn_ready must be done either under conn->lock, or holding a refcount, to avoid concurrent close. conn->sk and parent sk is
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-89783 | xfrm6: fix out-of-bounds write in xfrm6_input_addr() when secpath is full | |
| CVE-2026-89775 | KVM: arm64: Handle negative S1 walk levels in VNCR TLB size evaluation | |
| CVE-2026-89776 | vxlan: vnifilter: enforce exact length of GROUP/GROUP6 attributes | |
| CVE-2026-89778 | isofs: fix out-of-bounds page array access on empty zisofs block | |
| CVE-2026-89777 | vfio/pci: clear vdev->msi_perm after freeing it on init failure | |
| CVE-2026-89779 | fs/ntfs3: validate ef->size covers the record's name and value | |
| CVE-2026-89781 | fs/ntfs3: fix out-of-bounds read in read_log_rec_buf() | |
| CVE-2026-89780 | net: qualcomm: rmnet: restore skb->dev on deaggregated frames | |
| CVE-2026-89782 | fs/ntfs3: reject restart table growth beyond U16_MAX entries | |
| CVE-2026-89784 | SUNRPC: check rpc_sockaddr2uaddr() return value in rpcb_register_inet4/6 | |
| CVE-2026-89793 | ublk: clear VM_MAYWRITE on read-only ublk char device mmap | |
| CVE-2026-89785 | fs/ntfs3: fix out-of-bounds read of INDEX_ROOT in reparse/objid init | |
| CVE-2026-89787 | ext4: check dir entry fits before reading the hash trailer in ext4_search_dir() | |
| CVE-2026-89786 | ext4: fix out-of-bounds read in ext4_read_inline_dir() | |
| CVE-2026-89788 | ksmbd: fix tree connection use-after-free in smb2_tree_connect() | |
| CVE-2026-89790 | ipv6: avoid divide by zero in rt6_multipath_rebalance | |
| CVE-2026-89789 | gtp: add synchronize_net() in gtp_newlink() error path to prevent use-after-free | |
| CVE-2026-89791 | perf: Fix use-after-free when perf mmap() revival races with the last munmap() | |
| CVE-2026-89792 | ksmbd: prevent out-of-bounds reads in share config responses |
No comments yet