[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Aug 28 09:23:03 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7fef6814 by Salvatore Bonaccorso at 2026-08-28T09:29:28+02:00
Merge Linux CVEs from kernel-sec
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,232 @@
+CVE-2026-80723 [of: reserved_mem: prevent OOB when too many dynamic regions are defined]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/db3dbdfea1b8f38774419c5c2c14e4b81c48708d (7.2-rc6)
+CVE-2026-80720 [iomap: add a separate bio_set for iomap_split_ioend]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/c679ce3be6cb63763d68ab9b5d9d73ddc0a40762 (7.2-rc6)
+CVE-2026-80719 [mm: mglru: fix stale batch updates after memcg reparenting]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/de4660898b7aa7e03d3b120a6bfa6b26211e4e77 (7.2-rc6)
+CVE-2026-80713 [io_uring: preserve task restrictions across exec]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/bc0e8faf90e776a2f1f3967a04e8091e6bdb4977 (7.2-rc6)
+CVE-2026-80712 [spi: spi-qpic-snand: write the feature value before executing SET_FEATURE]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/8fd62901d6bf03f274a49dd0060793cc07dd51b0 (7.2-rc6)
+CVE-2026-80711 [power: supply: max17040: handle missing status supplier]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/725668c6b6aa3971fe850659102c250d0d676e18 (7.2-rc6)
+CVE-2026-80702 [drm/vmwgfx: fix guest_memory_dirty bitfield clobbered as size]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/83195b778f2d109a3a4f3ffaba4dce7e4cdb58aa (7.2-rc6)
+CVE-2026-80701 [drm/vmwgfx: enforce cursor size limits for MOB cursors]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/d5ed8749168ad13c0dbaa8300f68d854b6076966 (7.2-rc6)
+CVE-2026-80700 [drm/vmwgfx: validate external BO copy bounds for both stride paths]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/706c93c5813caabbb0d0a576c017d15aeec2c113 (7.2-rc6)
+CVE-2026-80699 [KVM: arm64: vgic: Avoid double-deactivate of IRQs in the nested context]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/8a570b19b4b16a8a3b5ffa2b332bd5613110b2d8 (7.2-rc6)
+CVE-2026-80696 [hwmon: (ltc4282) Fix reading the minimum alarm voltage]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/00feb1cce93dab948a299b69753d99c681d45a0b (7.2-rc6)
+CVE-2026-80691 [scsi: target: iblock: Fix wrong PR ops NULL check for PREEMPT/RELEASE]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/9c33222bd387312874fbe36ca8002e5c945b9653 (7.2-rc6)
+CVE-2026-80690 [scsi: ufs: core: Initialize hba->rpmbs list in ufshcd]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/0279fd451a9971c0d5b959fc59f3e11b55e1694e (7.2-rc6)
+CVE-2026-80688 [riscv: drop __init from vec_check_unaligned_access_speed_all_cpus]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/f51fed61eea0daba2f95f1a6074085e4cd513c7b (7.2-rc6)
+CVE-2026-80687 [iommufd/viommu: Release the igroup lock on the vdevice_size error path]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/339bd11591593ab7ce88136ab7fd01ef3813b724 (7.2-rc6)
+CVE-2026-80685 [mm/util: don't read __page_2 for order-1 folios in snapshot_page()]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/7441d6348c70738e9ed307510db171c7a9b3f4bf (7.2-rc6)
+CVE-2026-80683 [Bluetooth: SCO: give the socket its own sco_conn reference]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/abd93c85c8667add738ee82aeab95dd9fc8265a2 (7.2-rc6)
+CVE-2026-80682 [riscv/mm: use physical alignment for vmemmap_start_pfn]
+ - linux 7.1.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/45ebe4540817cb540a59e4dc04014ac5dddc9990 (7.2-rc6)
+CVE-2026-80722 [wifi: mac80211: validate individual TWT params before driver setup]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/0502d5077e419427d80f4d46ba95d0067f5fb916 (7.2-rc6)
+CVE-2026-80721 [Bluetooth: ISO: ensure no dangling hcon references in iso_conn]
+ - linux 7.1.8-1
+ NOTE: https://git.kernel.org/linus/aa9f7cb2bd3a2be998ceb739fc9a2f986eba43eb (7.2-rc6)
+CVE-2026-80718 [mm/percpu-km: fix bitmap overflow and accounting in pcpu_create_chunk()]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/89b1b79c308818a715e75f28744b70d8940a07c9 (7.2-rc6)
+CVE-2026-80717 [sctp: validate Adaptation Indication parameter length]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/74b21f52c5c5a71a05c0ff70e513f4f04ff28b17 (7.2-rc6)
+CVE-2026-80716 [ALSA: pcm: wake linked drain waiters on unlink]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/f495b6c4c8594122918552c9be2b51eb71647cd9 (7.2-rc6)
+CVE-2026-80715 [igc: remove napi_synchronize() in igc_down()]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/5ffab5b9589c50e4cfc0cf36ffd76c89422d4019 (7.2-rc6)
+CVE-2026-80714 [ipvs: do not propagate one-packet flag to synced conns]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/a63d2dbaeb50a85d4c976b15a36e6b0c7113db5b (7.2-rc6)
+CVE-2026-80710 [s390/dasd: Fix undersized format-check buffer]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/7f40b346462f563a0d6e841a77b5163d2a882a04 (7.2-rc6)
+CVE-2026-80709 [s390/zcrypt: Fix wrong domain value verification with EP11 CPRBs]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/983279d7f86ade73db86f886e09172dd567031b5 (7.2-rc6)
+CVE-2026-80708 [s390/zcrypt: Fix missing mem scrub at clear key import in cca_clr2cipherkey()]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/01476391aecef36a3b789ee844357b22fbc90665 (7.2-rc6)
+CVE-2026-80707 [can: j1939: transport: j1939_session_fresh_new(): initialize receive buffer]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/eb96c58907922546e415e545fe9a14ea63b02719 (7.2-rc6)
+CVE-2026-80706 [can: softing: fw_parse(): validate firmware record spans]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/856d6cb04e5407523566b075841dcd6423757d1c (7.2-rc6)
+CVE-2026-80705 [drm/amd/display: check if dml21_add_phantom_plane() is successful]
+ - linux 7.1.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/000acb4ce7fb9feba3072ce468ad681f6585cd5d (7.2-rc6)
+CVE-2026-80704 [drm/amd/display: use proper context for logging]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/114b42507b6a23d9d24e24e4ef165233332c64d4 (7.2-rc6)
+CVE-2026-80703 [drm/amdkfd: Fix missing authorization check in KFD_IOC_DBG_TRAP_DISABLE]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/99b2fe4f19e3be0a8d0a0b5ea98d855970889653 (7.2-rc6)
+CVE-2026-80698 [dmaengine: idxd: fix double free of wq, engine, and group structs]
+ - linux 7.1.8-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/ec2d428b2e32dd157de8f86a86dd85c5b2c8f45c (7.2-rc6)
+CVE-2026-80697 [erofs: ensure valid f_path for page cache sharing]
+ - linux 7.1.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/96b2dbbe58a1ea5df8d29c2fe24b5f04715f4443 (7.2-rc6)
+CVE-2026-80695 [hwmon: (sht3x) Fix unaligned accesses]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/f46d5ab43a572b84773015a76966f5da56fc1748 (7.2-rc6)
+CVE-2026-80694 [net: ethernet: mtk_eth_soc: pass eth to mtk_handle_irq_rx in poll_controller]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/e095f249e2209674f6366f6db0383a2b96e19239 (7.2-rc6)
+CVE-2026-80693 [idpf: bound interrupt-vector register fill to the allocated array]
+ - linux 7.1.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/9f7007ee9858c99aa43101bc8352c672fee85644 (7.2-rc6)
+CVE-2026-80692 [Bluetooth: hci_sync: hold conn in hci_connect_acl/le_sync() callbacks]
+ - linux 7.1.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/2f5d635ad5906b0235bc0c870e8beba3116e1e98 (7.2-rc6)
+CVE-2026-80689 [tracing/mmiotrace: Add NULL check for mmio_trace_array in logging functions]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/12b80cdbc54cf615b4717a4e8180063408091ea2 (7.2-rc6)
+CVE-2026-80686 [mm: migrate_device: fix pte_pfn/pte_dirty called on non-present PTE]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/63867c82d0c0c2d182016a32b1cc0103116b0ea5 (7.2-rc6)
+CVE-2026-80684 [KVM: s390: pci: Fix NULL dereference on AIBV allocation failure]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/8bf09b9b7d3232806df95f409581f8a9fd99a3fa (7.2-rc6)
+CVE-2026-80681 [vxlan: re-fetch eth header after route_shortcircuit()]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/1395a676ec15a0a02a2a6d86602324f2d5fd41d5 (7.2-rc6)
+CVE-2026-80680 [i2c: amd-mp2: Unregister callback on adapter add failure]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/82048795242f04275a3f49ffc66ad851b6120954 (7.2-rc6)
+CVE-2026-80679 [s390/dasd: Fix potential NULL pointer dereference]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/9973026f572db6b67570cadc30942f3014e41079 (7.2-rc6)
+CVE-2026-80678 [i2c: imx: Fix slave registration race and error handling]
+ - linux 7.1.8-1
+ [trixie] - linux 6.12.105-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/d64ec362c369bbc33833f7936d5f3a706b0d5c45 (7.2-rc6)
CVE-2026-80677 [driver core: use READ_ONCE() for dev->driver in dev_has_sync_state()]
- linux 7.1.5-1
[trixie] - linux 6.12.100-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7fef6814b8e6ecafe11e6c45696850cec3a5ef81
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7fef6814b8e6ecafe11e6c45696850cec3a5ef81
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260828/01f6b89f/attachment.htm>
More information about the debian-security-tracker-commits
mailing list