|
3891
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iommu/sva: Fix crash in iommu_sva_unbind_device()
domain->mm->iommu_mm can be freed by iommu_domain_free():
iommu_domain_free()…
|
NVD-CWE-noinfo
|
CVE-2026-23429
|
2026-04-24 06:03 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3892
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Don't overwrite KMS surface dirty tracker
We were overwriting the surface's dirty tracker here causing a memory leak.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2026-23430
|
2026-04-24 06:03 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3893
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
spi: amlogic-spisg: Fix memory leak in aml_spisg_probe()
In aml_spisg_probe(), ctlr is allocated by
spi_alloc_target()/spi_alloc_…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2026-23431
|
2026-04-24 06:00 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3894
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
mshv: Fix use-after-free in mshv_map_user_memory error path
In the error path of mshv_map_user_memory(), calling vfree() directly…
|
CWE-416
Use After Free
|
CVE-2026-23432
|
2026-04-24 06:00 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3895
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
arm_mpam: Fix null pointer dereference when restoring bandwidth counters
When an MSC supporting memory bandwidth monitoring is br…
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-23433
|
2026-04-24 05:59 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3896
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
mtd: rawnand: serialize lock/unlock against other NAND operations
nand_lock() and nand_unlock() call into chip->ops.lock_area/unl…
|
NVD-CWE-noinfo
|
CVE-2026-23434
|
2026-04-24 05:59 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3897
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
perf/x86: Move event pointer setup earlier in x86_pmu_enable()
A production AMD EPYC system crashed with a NULL pointer dereferen…
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-23435
|
2026-04-24 05:59 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3898
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: shaper: protect from late creation of hierarchy
We look up a netdev during prep of Netlink ops (pre- callbacks)
and take a r…
|
NVD-CWE-noinfo
|
CVE-2026-23436
|
2026-04-24 05:59 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3899
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: shaper: protect late read accesses to the hierarchy
We look up a netdev during prep of Netlink ops (pre- callbacks)
and take…
|
NVD-CWE-noinfo
|
CVE-2026-23437
|
2026-04-24 05:59 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3900
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: mvpp2: guard flow control update with global_tx_fc in buffer switching
mvpp2_bm_switch_buffers() unconditionally calls
mvpp2…
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-23438
|
2026-04-24 05:59 |
2026-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|