[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Feb 14 15:48:47 GMT 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
92e8e557 by Salvatore Bonaccorso at 2026-02-14T16:48:14+01:00
Merge Linux CVEs from kernel-sec
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,34 @@
+CVE-2026-23145 [ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref]
+ - linux 6.18.8-1
+ [trixie] - linux 6.12.69-1
+ [bookworm] - linux 6.1.162-1
+ [bullseye] - linux 5.10.249-1
+ NOTE: https://git.kernel.org/linus/d250bdf531d9cd4096fedbb9f172bb2ca660c868 (6.19-rc6)
+CVE-2026-23144 [mm/damon/sysfs: cleanup attrs subdirs on context dir setup failure]
+ - linux 6.18.8-1
+ [trixie] - linux 6.12.69-1
+ [bookworm] - linux 6.1.162-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/9814cc832b88bd040fc2a1817c2b5469d0f7e862 (6.19-rc6)
+CVE-2026-23143 [virtio_net: Fix misalignment bug in struct virtnet_info]
+ - linux 6.18.8-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/4156c3745f06bc197094b9ee97a9584e69ed00bf (6.19-rc6)
+CVE-2026-23142 [mm/damon/sysfs-scheme: cleanup access_pattern subdirs on scheme dir setup failure]
+ - linux 6.18.8-1
+ [trixie] - linux 6.12.69-1
+ [bookworm] - linux 6.1.162-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/392b3d9d595f34877dd745b470c711e8ebcd225c (6.19-rc6)
+CVE-2026-23141 [btrfs: send: check for inline extents in range_is_hole_in_parent()]
+ - linux 6.18.8-1
+ [trixie] - linux 6.12.69-1
+ NOTE: https://git.kernel.org/linus/08b096c1372cd69627f4f559fb47c9fb67a52b39 (6.19-rc6)
+CVE-2025-71202 [iommu/sva: invalidate stale IOTLB entries for kernel address space]
+ - linux 6.18.8-1
+ NOTE: https://git.kernel.org/linus/e37d5a2d60a338c5917c45296bac65da1382eda5 (6.19-rc1)
CVE-2026-23140 [bpf, test_run: Subtract size of xdp_frame from allowed metadata size]
- linux 6.18.8-1
[trixie] - linux 6.12.69-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/92e8e557f4f2daac792c53357c0ff25a1ed0e6a7
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/92e8e557f4f2daac792c53357c0ff25a1ed0e6a7
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260214/4a801ac7/attachment.htm>
More information about the debian-security-tracker-commits
mailing list