In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Reject non-SCSI SRB on status IOCB fast path qla2x00_status_entry() filters out non-TYPE_SRB entries and the SRB_NVME_CMD, SRB_BIDI_CMD and SRB_TM_CMD types, then falls through
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-89860 | scsi: qla2xxx: Initialize NVMe abort_work once at submission | |
| CVE-2026-89877 | media: saa7164: fix cleanup on resource allocation failure | |
| CVE-2026-89875 | media: ti: vpe: quiesce overflow recovery before freeing streams | |
| CVE-2026-89876 | media: tda18250: fix possible integer overflow | |
| CVE-2026-89874 | media: v4l2-async: avoid deleting unlinked ASC entry on link error | |
| CVE-2026-89872 | media: v4l2-fwnode: Fix fwnode leak in v4l2_fwnode_parse_link | |
| CVE-2026-89873 | media: v4l2-ctrls: validate HEVC EXT SPS RPS counts | |
| CVE-2026-89871 | media: video-i2c: fix kthread error pointer left in kthread_vid_cap on failure | |
| CVE-2026-89870 | media: zoran: Avoid freeing a registered video_device twice | |
| CVE-2026-89869 | media: qcom: iris: use disable_irq() during power-off | |
| CVE-2026-89868 | media: chips-media: wave5: Add timeout while stop_streaming | |
| CVE-2026-89867 | media: chips-media: wave5: Defer job_finish() only when a DEC_PIC was queued | |
| CVE-2026-89866 | media: chips-media: wave5: Resume device before setting EOS flag | |
| CVE-2026-89865 | scsi: qla2xxx: Zero SFP DMA buffer in FRU/I2C bsg handlers | |
| CVE-2026-89864 | scsi: qla2xxx: Bound i2c->length in I2C bsg handlers | |
| CVE-2026-89863 | scsi: qla2xxx: edif: Fix NULL pointer deref in RX SA delete check | |
| CVE-2026-89862 | scsi: qla2xxx: Fix BSG job leak on validate flash image error path | |
| CVE-2026-89861 | scsi: qla2xxx: Hold vport reference in qla24xx_report_id_acquisition() | |
| CVE-2026-89850 | scsi: qla2xxx: Don't query firmware state while chip is down | |
| CVE-2026-89847 | scsi: qla2xxx: Avoid double completion in async IOCB timeout |
Showing top 20 of 276 CVEs. View all on vendor page → →
No comments yet