VYPR

rpm package

opensuse/kernel-source&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/kernel-source&distro=openSUSE%20Tumbleweed

Vulnerabilities (3,335)

  • CVE-2026-100070Sep 25, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_nat_sip: rewind offset when NAT shrinks the packet sashiko says: If map_addr() changes the packet length, such as when the public NAT IP string is shorter or longer than the internal IP, coff wi

  • CVE-2026-93282HigSep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix maximum allowed access checks The DACL permission check looks for an ACE matching the current user and falls back to the Everyone ACE. It does not consider an Authenticated Users ACE, even though an

  • CVE-2026-93280HigSep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: greybus: audio: bound the topology section sizes against the fetched size gb_audio_gb_get_topology() fetches a topology blob of a module-supplied size, and gbaudio_tplg_parse_data() then walks it by adding the

  • CVE-2026-93277HigSep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Validate udata before executing commands The destroy callbacks currently zero the udata output after tearing down driver resources. If the userspace access fails, uverbs preserves the uobject and

  • CVE-2026-93275Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/pt: Fix stop/start with no update If pt_event_stop() is called without PERF_EF_UPDATE flag, then perf_aux_output_end() is not called. A subsequent call to pt_event_start() will call perf_aux_out

  • CVE-2026-93274Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: pinctrl: bcm2835: Don't remove an unregistered GPIO chip If the devm_pinctrl_register() function fails, bcm2835_pinctrl_probe() calls gpiochip_remove() before gpiochip_add_data() has registered the GPIO chip.

  • CVE-2026-93269Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: ext4: fix circular lock dependency in ext4_ext_migrate Move iput(tmp_inode) after ext4_writepages_up_write() to avoid a circular lock dependency between s_writepages_rwsem and sb_internal (freeze protection).

  • CVE-2026-93268Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: ext4: skip extra isize expansion during mount to prevent deadlock ext4_try_to_expand_extra_isize() is called from __ext4_mark_inode_dirty() while holding an active jbd2 handle. During mount (!SB_ACTIVE), the e

  • CVE-2026-93264Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: RDMA/efa: Fix PBL chunk length computation On register MR, when creating the PBL, if it's an indirect PBL we create a chunk list to hold the PBL pages pointers. Each chunk is 4KB in size and can hold 510 addres

  • CVE-2026-93261Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: locking/lockdep: Fix NULL pointer dereference in __lock_set_class() register_lock_class() can return NULL when the lock class pool is exhausted, graph_lock() fails, or key validation fails. However, __lock_set_

  • CVE-2026-93260HigSep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: powerpc/xive: propagate IPI init errors to prevent use-after-free When xive_init_ipis() fails (e.g. irq_domain_alloc_irqs() fails), the error path frees the global xive_ipis array. However, xive_smp_probe() pr

  • CVE-2026-93259Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: powerpc/irq: Fix missing r2 clobber in PCREL inline assembly In CONFIG_PPC_KERNEL_PCREL mode, r2 is no longer reserved for the TOC pointer and is available as a caller-saved register [0]. Both call_do_irq() an

  • CVE-2026-93258Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: ocfs2: do not use make_bad_inode() in ocfs2_read_inode_block_full() This reverts commit 58b6fcd2ab34 ("ocfs2: mark inode bad upon validation failure during read"). Since 'make_bad_inode()' resets inode type to

  • CVE-2026-93257Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: block: handle nogenerate/noverify properly in fs-integrity Check the BIP_CHECK flags before generating or verifying PI information, otherwise this can be incorrectly called for non-PI metadata and cause generat

  • CVE-2026-93256Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: arm64: hibernate: mask DAIF before restoring hibernated kernel The arm64 hibernate code manages the exception masking in an unsound way, leading to potential crashes and/or warnings during resume. When a hiber

  • CVE-2026-93255Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: btrfs: make sure EXTENT_BUFFER_READING is cleared under refs_lock [FALSE ALERTS] There is a bug report that the warning inside invalidate_and_check_btree_folios() got triggered during btrfs/298: BTRFS info (d

  • CVE-2026-93254Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: arm64: entry: Avoid unnecessary local_irq_disable() on kernel exit Currently, when exiting to kernel mode, we attempt involuntary preemption. The preemption logic expects IRQs to be disabled, which is why we ca

  • CVE-2026-93253Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: sched/isolation: Defer freeing of cpumask memblock memory to initcall When testing a linux-next kernel with commit 59bd1d914bb5 ("memblock: warn when freeing reserved memory before memory map is initialized"),

  • CVE-2026-93252Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix circular locking dependency in ocfs2_init_acl() A lockdep warning indicates a circular locking dependency between `&oi->ip_xattr_sem` and `&journal->j_trans_barrier`: WARNING: possible circular lock

  • CVE-2026-93251Sep 24, 2026
    affected < 7.2.8-1.1fixed 7.2.8-1.1

    In the Linux kernel, the following vulnerability has been resolved: ACPI: bus: Introduce acpi_bus_get_primary_device() The function used for obtaining the first "physical" device for which the given ACPI one is the ACPI companion, acpi_get_first_physical_node(), may return a st

Page 1 of 167