[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Sep 3 19:30:33 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
d43df3f3 by Salvatore Bonaccorso at 2026-09-03T20:29:53+02:00
Merge Linux CVEs from kernel-sec
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,82 @@
+CVE-2026-80751 [pmdomain: mediatek: mfg: initialize prev_o in mtk_mfg_attach_dev()]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/090a95dbe13df9965279b588d97eda134831769c (7.2)
+CVE-2026-80750 [pmdomain: mediatek: fix remaining %pOF after of_node_put()]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/3e013bc8b941bd52c8e3a99798d0ae8792cb71ca (7.2)
+CVE-2026-80749 [drm/connector/hdmi: Fix out of bounds memory read]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/9ecf8ba763d0ffe0673538eb4bf7806f20455d19 (7.2)
+CVE-2026-80748 [mmc: loongson2: Fix sg iteration in data reorder functions]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/00179ed9fbe07799676e2cb63c4e7f0e7cd80a5c (7.2)
+CVE-2026-80746 [clk: qcom: dispcc-eliza: Fix disp_cc_mdss_mdp_clk_src RCG stall on Eliza EVK]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/2ef00630c5c0b7b2c08aba7643f47594952d357e (7.2)
+CVE-2026-80745 [regulator: fp9931: Fix VPOS/VNEG voltage selector table]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/66694b5f90f3876fccb87bbd02b453cdc33b3ae4 (7.2)
+CVE-2026-80741 [drm/log: Fix out-of-bounds read on empty message length]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/60baa179ed1333535f6e2da4133511db55278ee4 (7.2)
+CVE-2026-80740 [drm/log: Fix infinite loop when scale is too large for display]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/f4f2bba28df9b9aaa00262a462139dbbcdc38d9f (7.2)
+CVE-2026-80757 [selinux: reject a class permission count below its inherited common]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/9a82dcd98b6e6e11cfd162410967951f12152528 (7.2-rc7)
+CVE-2026-80756 [selinux: do not cancel a policy conversion that never started]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/e5c0235a3c4e9eb047a16cd02323fe4ecf2f570e (7.2-rc7)
+CVE-2026-80755 [selinux: reject a permission value exceeding the class permission count]
+ - linux 7.1.13-1
+ NOTE: https://git.kernel.org/linus/d14b5d0e97fccd27974fedc03b903408872907fd (7.2-rc7)
+CVE-2026-80754 [Input: synaptics-rmi4 - fix F55 transmitter electrode count typo]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/6058f0fea10f3caf63a435677358d1b8e9325114 (7.2-rc7)
+CVE-2026-80753 [ovpn: run deferred work on a module-owned workqueue]
+ - linux 7.1.10-1
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/e9714db8041763f59dde152c812b96b3de05c6d9 (7.2)
+CVE-2026-80752 [Input: psxpad-spi - set driver data before use]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/732f38c36059e68ba3b4b89c56911d777fd3185c (7.2-rc7)
+CVE-2026-80747 [drm/amdkfd: Add bounds check for CRAT subtype length]
+ - linux 7.1.10-1
+ NOTE: https://git.kernel.org/linus/6e7566ba4739dd573c331adde1c96690f7a567bd (7.2-rc6)
+CVE-2026-80744 [netfilter: nf_tables_offload: suppress WARN_ON_ONCE for ENOMEM in abort path]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/d02f592064347e0c1e0d84f24941ad338838cc48 (7.2)
+CVE-2026-80743 [ASoC: xilinx: formatter_pcm: pass aud_drv_data to irq handlers]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/f12afefb7b01f94d6d66d397f323a9914edbf70e (7.2)
+CVE-2026-80742 [af_packet: Don't send zero-byte data in tpacket_snd().]
+ - linux 7.1.10-1
+ [trixie] - linux 6.12.105-1
+ NOTE: https://git.kernel.org/linus/6bcd76c134c55c697148acb5c0194e9666abdf84 (7.2)
CVE-2026-80736 [thunderbolt: Fix bandwidth group reservation indexing]
- linux 7.1.9-1
[trixie] - linux 6.12.105-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d43df3f3696266aaab6c3d6bd68ffdf64de605be
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d43df3f3696266aaab6c3d6bd68ffdf64de605be
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260903/eb9f467a/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list