VYPR

rpm package

opensuse/kernel-source&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/kernel-source&distro=openSUSE%20Tumbleweed

Vulnerabilities (3,335)

  • CVE-2026-63801HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: tipc: fix slab-use-after-free Read in tipc_aead_decrypt_done tipc_aead_decrypt() goes straight from tipc_bearer_hold(b) to crypto_aead_decrypt(req) without taking a reference on the netns, unlike the encrypt pa

  • CVE-2026-63800CriJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: pNFS: Fix use-after-free in pnfs_update_layout() When hitting the NFS_LAYOUT_RETURN branch in pnfs_update_layout(), the code calls pnfs_prepare_to_retry_layoutget(lo). If it succeeds, pnfs_put_layout_hdr(lo) is

  • CVE-2026-63799HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: sched/mmcid: Fix OOB clear_bit when CID is MM_CID_UNSET in fixup path In mm_cid_fixup_cpus_to_tasks(), when rq->curr has the target mm and mm_cid.active is set, the CID is checked with cid_in_transit() before s

  • CVE-2026-63798MedJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: irqchip/imgpdc: Fix resource leak, add missing chained handler cleanup on remove The driver allocates domain generic chips using irq_alloc_domain_generic_chips() during probe and sets up chained handlers using

  • CVE-2026-63797HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: rpmsg: char: Fix use-after-free on probe error path rpmsg_chrdev_probe() stores the newly allocated eptdev in the default endpoint's priv pointer before calling rpmsg_chrdev_eptdev_add(). If rpmsg_chrdev_eptdev

  • CVE-2026-63796HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject oversized group bitmap descriptors ocfs2_validate_gd_parent() only bounds bg_bits against the parent allocator's chain geometry. A malicious descriptor can still claim a bg_size/bg_bits pair that

  • CVE-2026-63795CriJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: 9p: avoid putting oldfid in p9_client_walk() error path When p9_client_walk() is called with clone set to false, fid aliases oldfid. If the walk subsequently fails after the request has been sent, the error pat

  • CVE-2026-63794HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path In sev_dbg_crypt(), the per-iteration transfer length is bounded by the source page offset (PAGE_SIZE - s_off) but not by the destination page off

  • CVE-2026-63793HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: ntfs: serialize volume label accesses Protect vol->volume_label with a mutex and snaphost the label before copy_to_user. This prevent a use-after-free when FS_IOC_SETFSLABEL replaces the vol->volume_label and F

  • CVE-2026-53403MedJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: fbdev: Fix fb_new_modelist to prevent null-ptr-deref in fb_videomode_to_var info->var, a framebuffer's current mode, is expected to have a matching entry in info->modelist. var_to_display() relies on this and t

  • CVE-2026-53402HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font() When fbcon_do_set_font() fails (e.g., due to a memory allocation failure inside vc_resize() under heavy memory pressure), it jumps to the `

  • CVE-2026-53401HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: fbdev: omap2: fix use-after-free in omapfb_mmap omapfb_mmap() has a race condition with OMAPFB_SETUP_PLANE ioctl that can lead to use-after-free: The fb_mmap() entry point holds mm_lock but not lock (fb_info->

  • CVE-2026-53400HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: i2c: core: fix adapter registration race Adapters can be looked up based on their id using i2c_get_adapter() which takes a reference to the embedded struct device. Make sure that the adapter (including its str

  • CVE-2026-53399CriJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: release layout stid on setlease failure nfs4_alloc_stid() publishes the new stid into cl->cl_stateids via idr_alloc_cyclic() under cl_lock before returning to nfsd4_alloc_layout_stateid(). When nfsd4_layo

  • CVE-2026-53398CriJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix SECINFO_NO_NAME decode error cleanup nfsd4_decode_secinfo_no_name() currently initializes sin_exp after decoding sin_style. If the XDR stream is truncated, the decoder returns nfserr_bad_xdr before si

  • CVE-2026-53397HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: fix posix_acl leak on SETACL decode failure nfsaclsvc_decode_setaclargs() and nfs3svc_decode_setaclargs() each call nfs_stream_decode_acl() twice, first for NFS_ACL and then for NFS_DFACL. Each successfu

  • CVE-2026-53396HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: fix posix_acl leak and ignored error in nfsd4_create_file nfsd4_create_file() has two bugs in its ACL handling: The return value of nfsd4_acl_to_attr() is silently discarded. When the NFSv4-to-POSIX ACL

  • CVE-2026-53395HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: fix dead ACL conflict guard in nfsd4_create nfsd4_create() steals create->cr_dpacl/cr_pacl into the local nfsd_attrs via the designated initializer, then immediately sets the source pointers to NULL. The

  • CVE-2026-53394HigJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: avoid leaking pre-allocated openowner on unconfirmed retry race When find_or_alloc_open_stateowner() encounters an unconfirmed owner, it calls release_openowner() and sets oo = NULL. Control then falls th

  • CVE-2026-53393MedJul 19, 2026
    affected < 7.1.4-1.1fixed 7.1.4-1.1

    In the Linux kernel, the following vulnerability has been resolved: nfsd: reset write verifier on deferred writeback errors nfsd_vfs_write() and nfsd_commit() both call filemap_check_wb_err() to detect deferred writeback errors, but neither rotates the server's write verifier (

Page 94 of 167