[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Sep 4 20:20:11 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d324430d by Salvatore Bonaccorso at 2026-09-04T21:18:14+02:00
Merge Linux CVEs from kernel-sec

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,106 @@
+CVE-2026-80886 [serial: msm: Disable DMA for kernel console UART]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/22dd2777e6c180e1c945b00f6d18550979436324 (7.2-rc3)
+CVE-2026-80885 [afs: Fix uncancelled rxrpc OOB message handler]
+	- linux 7.1.5-1
+	[trixie] - linux <not-affected> (Vulnerable code not present)
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/a4057e58b07005d0fe0491bdbf1868c1491909ee (7.2-rc1)
+CVE-2026-80882 [crypto: tegra - Return ENOMEM when input buffer allocation fails for ccm]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/690a5f9e5c972a580565ce544ed1627ccf1e84de (7.2-rc1)
+CVE-2026-80881 [ocfs2: fix buffer head management in ocfs2_read_blocks()]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/6371a07148ee979af22a9d6f4c277462953a9a4a (7.2-rc1)
+CVE-2026-80880 [IB/mlx5: Properly support implicit ODP rereg_mr]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/ee7a8335069150c3f1893a697ab30bbeca00d796 (7.2-rc1)
+CVE-2026-80879 [ocfs2: fix circular locking dependency in ocfs2_dio_end_io_write]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/ff6f26c58421614b02694ac9d219ac61d924bc68 (7.2-rc1)
+CVE-2026-80877 [afs: Fix vllist leak]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/fc10c0ecf06f2981af5d04357612b00051e03e9e (7.2-rc2)
+CVE-2026-80876 [ring-buffer: Fix event length with forced 8-byte alignment]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/c37e0a4b79a6bbb96ce5ffe279d7c001e20529e0 (7.2-rc3)
+CVE-2026-80875 [ipvs: use parsed transport offset in TCP state lookup]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/2500fa3958b1ba51c2b065e39db1b04dfa7e23a2 (7.2-rc3)
+CVE-2026-80874 [arm64: dts: renesas: ironhide: Describe inline ECC carveouts]
+	- linux 7.1.5-1
+	[trixie] - linux <not-affected> (Vulnerable code not present)
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/6fa6ee724d8dadf392139e242ac936b5da730c4b (7.2-rc4)
+CVE-2026-80873 [KVM: arm64: nv: Write ESR_EL2 for injected nested SError exceptions]
+	- linux 7.1.5-1
+	[trixie] - linux <not-affected> (Vulnerable code not present)
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/e2cb1f4578625e71f461d5c1ce70984193389cbb (7.2-rc4)
+CVE-2026-80871 [crypto: xilinx-trng - Remove crypto_rng interface]
+	- linux 7.1.5-1
+	[trixie] - linux <not-affected> (Vulnerable code not present)
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/32b4d29280ed2a991dc196d5845b892acedc63b8 (7.2-rc1)
+CVE-2026-80870 [drm/amdkfd: Validate CRIU-restored IDs before idr_alloc]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/85043dd49c2f51a37b22618168e3ae59ab92f0d6 (7.2-rc1)
+CVE-2026-80869 [ntfs: bound the attribute-list entry in ntfs_read_inode_mount()]
+	- linux 7.1.5-1
+	[trixie] - linux <not-affected> (Vulnerable code not present)
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/98634df5b1cb56c26299b7409227025ddb0167d8 (7.2-rc1)
+CVE-2026-80868 [ntfs3: Allocate iomap inline_data using alloc_page]
+	- linux 7.1.5-1
+	[trixie] - linux <not-affected> (Vulnerable code not present)
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/70d3855594cf6e8791970714b65cac3202d6160e (7.2-rc1)
+CVE-2026-80867 [alpha/PCI: Add security_locked_down() check to pci_mmap_resource()]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/78a228f0aa0e9eba31955950c8a40a9945e2c8bb (7.2-rc1)
+CVE-2026-80865 [bpf: Add missing access_ok call to copy_user_syms]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	[bookworm] - linux 6.1.180-1
+	NOTE: https://git.kernel.org/linus/d5dc200c3a3f217de072af269dd90adddf90e48d (7.2-rc1)
+CVE-2026-80884 [ntb: Store original DMA address for future release]
+	- linux 7.1.5-1
+	NOTE: https://git.kernel.org/linus/da6d997ac556479c112554ab5d95cbd04683eb11 (7.2-rc1)
+CVE-2026-80883 [drm/tegra: gr2d/gr3d: Initialize address register map before HOST1X client is registered]
+	- linux 7.1.5-1
+	[trixie] - linux 6.12.100-1
+	NOTE: https://git.kernel.org/linus/c4ef5ba1131346159e31f4ef858525cf377380a6 (7.2-rc1)
+CVE-2026-80878 [afs: Fix leak of ungot volume]
+	- linux 7.1.5-1
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/d672c276f685a540ed2b2a8bafaed4650a89022c (7.2-rc2)
+CVE-2026-80872 [ALSA: hda/tas2781: Cancel async firmware request at unbind]
+	- linux 7.1.5-1
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/5367e2ad14f0ae9350a7aaf2e77c87de39a43ae9 (7.2-rc1)
+CVE-2026-80866 [tipc: avoid busy looping in tipc_exit_net()]
+	- linux 7.1.5-1
+	NOTE: https://git.kernel.org/linus/c1481c94e74c955e0448ddf46b8615a44d840c1e (7.2-rc1)
 CVE-2026-80853 [KVM: SEV: Allocate full pages for {DE,EN}CRYPT ops on SNP-enabled hosts]
 	- linux <not-affected> (Vulnerable code not present)
 	NOTE: https://git.kernel.org/linus/a33c40b93ccf5177e042253807d40e0b92e7f206 (7.3-rc1)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d324430daa9e15fe0679f67471c291d96ccd444a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d324430daa9e15fe0679f67471c291d96ccd444a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260904/b3db0077/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list