[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Sep 24 18:12:16 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b37f1dac by Salvatore Bonaccorso at 2026-09-24T19:11:11+02:00
Merge Linux CVEs from kernel-sec
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,470 @@
+CVE-2026-97521 [gfs2: fix quota init duplicate scan]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b99a1f0f18ee50445907f55069e88bcfd8947383 (7.2-rc1)
+CVE-2026-97520 [gfs2: move quota_init qc iterator increment]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/942202677f8f2ee448a6a2feb06aeeaf520342e3 (7.2-rc1)
+CVE-2026-97519 [drm/xe: Fix null pointer dereference in devcoredump cleanup]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/12ef528d78adc8ea4e7e3db594f3bcac327e79fa (7.2-rc1)
+CVE-2026-97518 [wifi: cfg80211: reject duplicate wiphy cipher suite entries]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/7187d145d9042b037e4f10538f70cf95e380219f (7.2-rc1)
+CVE-2026-97517 [wifi: nl80211: reject beacons with bad HE operation]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8b9a100e1a76c52988b31099b349fd95a58c8768 (7.2-rc1)
+CVE-2026-97516 [wifi: rtw88: Add NULL check for chip->edcca_th in rtw_fw_adaptivity_result()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d5e6f353ce1e1c25b8458ea390ed09d2377412c5 (7.2-rc1)
+CVE-2026-97515 [i3c: master: svc: Prevent IRQ storm from false SLVSTART on NPCM845]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/1effa3adfe53cb2bb28bf5640a676b791d5ab405 (7.2-rc1)
+CVE-2026-97514 [media: chips-media: wave5: Fix Reports from Kernel Lock Validator]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/7d5d364f8b2dcc9b6b92456fb55632fde4a4d96f (7.2-rc1)
+CVE-2026-97513 [media: chips-media: wave5: Release m2m_ctx after Instance Removed from List]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/7cdbd7bb21949a8fda10c7104a2b12ee363cbf5c (7.2-rc1)
+CVE-2026-97512 [spi: spi-qcom-qspi: Fix incomplete error handling in runtime PM]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d283d5d4d9f6d081ddb65e371be26fffeb611c42 (7.2-rc1)
+CVE-2026-97511 [wifi: mac80211: avoid out-of-bounds access in monitor]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/03c41203ee5a833a9d7a7630be190830cede29d8 (7.2-rc1)
+CVE-2026-97510 [thunderbolt: Release request if tb_cfg_request() fails in __tb_xdomain_response()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/4c63f29872cb444b33665348bbd2f45cab06afcd (7.2-rc1)
+CVE-2026-97509 [thunderbolt: Keep XDomain reference during the lifetime of a service]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8b4060998637f06975fceee9b73845d8672d411e (7.2-rc1)
+CVE-2026-97508 [thunderbolt: Set tb->root_switch to NULL when domain is stopped]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e56249d8a68e712f3b60e1f3fdbb5b4fea146468 (7.2-rc1)
+CVE-2026-97507 [media: dm1105: fix missing error check for dma_alloc_coherent]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/3eaac9e02d8591d3c790db572ef1c8fa5a841fdb (7.2-rc1)
+CVE-2026-97506 [crypto: ixp4xx - fix buffer chain unwind on allocation failure]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/25056329384010a8672552b134f609601dc4f80e (7.2-rc1)
+CVE-2026-97505 [PCI/sysfs: Add CAP_SYS_ADMIN check to __resource_resize_store()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/25ec7f57deceec633f27bc93b615f951e2ade814 (7.2-rc1)
+CVE-2026-97504 [watchdog: lenovo_se10_wdt: Fix use-after-free and resource leak risk]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/3394e894880a60338a2981dd688fd25e88d79667 (7.2-rc1)
+CVE-2026-97503 [genirq/proc: Size interrupt directory names for 10-digit interrupt numbers]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c2c7983c93f5d86962318be7e7298f1bc3feb1a6 (7.2-rc1)
+CVE-2026-97502 [mmc: davinci: avoid NULL deref of host->data in IRQ handler]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/4f28846aaf8db9668e338b8987973f8935edff34 (7.2-rc1)
+CVE-2026-97501 [pinctrl: mediatek: paris: bypass pinctrl GPIO layer in set GPIO direction]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c87c9046c4e00d599454e033a477176c4d73ac2a (7.2-rc1)
+CVE-2026-97500 [wifi: rtw89: phy: check length before parsing PHY status IE]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/884495c39de1a02f42bd40051b921e2311d6ac91 (7.2-rc1)
+CVE-2026-97499 [coresight: perf: Retrieve path and source from event data]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/f37bc31447c0ddafedb25e3c4a4f4e2284034247 (7.2-rc1)
+CVE-2026-97498 [drm/amdgpu/userq: pin mqd and fw object bo to avoid eviction]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a3bbf32a336939a1d21b9561f8e53333b684b7ef (7.2-rc1)
+CVE-2026-97497 [drm/amdkfd: Check bounds for allocate_sdma_queue restore_sdma_id]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/bfe9a7545b2a7be1c543f1741e16f2d5ec4116ae (7.2-rc1)
+CVE-2026-97496 [drm/amdkfd: Fix OOB memory exposure in get_wave_state()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/7ef144458f48d5589e36f1b3d83e83db2e5c5ba5 (7.2-rc1)
+CVE-2026-97495 [drm/amdkfd: Check bounds on allocate_doorbell]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/1f087bb8cf9e8797633da35c85435e557ef74d06 (7.2-rc1)
+CVE-2026-97494 [drm/amdgpu: validate and share PSP fw_pri_buf copies via psp_copy_fw]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d1f9f5839bd785a3a06335a01d53282e80f8e5fa (7.2-rc1)
+CVE-2026-97493 [drm/amdgpu: Bound GPIO I2C table entry count from VBIOS]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a99cd231cd924b7160fecb9fb3a94b801522323b (7.2-rc1)
+CVE-2026-97492 [wifi: mac80211: don't call ieee80211_handle_reconfig_failure when not needed]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/7a8a3ff2815501f78f494808355ddf37e08647d0 (7.2-rc1)
+CVE-2026-97491 [net/rds: Don't sleep inside rds_ib_conn_path_shutdown]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/16f48efaeb6991193fb7775c577f06f5b20b0c90 (7.2-rc1)
+CVE-2026-97490 [affs: handle set_blocksize failures]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0861182af5983a39bd2a891966436c5679b74a45 (7.2-rc1)
+CVE-2026-97489 [bfs: handle set_blocksize failures]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/2430e3380936df0b648af720cae624eef035a2d1 (7.2-rc1)
+CVE-2026-97488 [qnx4: handle set_blocksize failures]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c7d911ea1cc9a63b07e52f5e75b263be0615b289 (7.2-rc1)
+CVE-2026-97487 [jfs: handle set_blocksize failures]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/05107f5602751fcfd3d108c1f579eb45aabead52 (7.2-rc1)
+CVE-2026-97486 [hpfs: handle set_blocksize failures]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a405996f23e04942aad064ab8d50c55827482872 (7.2-rc1)
+CVE-2026-97485 [omfs: handle set_blocksize failures]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/18c3d6fcb557f920c9143711497625e70153874c (7.2-rc1)
+CVE-2026-97484 [usbip: vhci_hcd: fix NULL deref in status_show_vhci]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/bc150783542ba2e7c1257d1299c6f3269bdba270 (7.2-rc1)
+CVE-2026-97483 [usb: core: hcd: fix possible deadlock in rh control transfers]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d5559f43d76b398392b26a15cbc16d731969cd1c (7.2-rc1)
+CVE-2026-97482 [usb: gadget: goku_udc: avoid NULL deref of dev->driver in INT_USBRESET log]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/5bf5e3fba9bc7dfd69701521dbe9809f8ccbdb02 (7.2-rc1)
+CVE-2026-97481 [serial: 8250: fix possible ISR soft lockup]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0c6bf45e5a345cc3b9ffbeaf9083ecac3c2293eb (7.2-rc1)
+CVE-2026-97480 [tty: serial: 8250: protect against NULL uart->port.dev in register]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/941c9f84c9b6310f7aaa1c8c785dcc634ee33050 (7.2-rc1)
+CVE-2026-97479 [driver core: Avoid warning when removing a device while its supplier is unbinding]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/36d74f17e03f7e60e1b08fbe16cfad6e69cc3aa9 (7.2-rc1)
+CVE-2026-97478 [virt: acrn: Fix irqfd use-after-free during eventfd shutdown]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/666c7f9e07925aa0863348f960e09bb89f8f05a3 (7.2-rc1)
+CVE-2026-97477 [RDMA/counter: Fix num_counters leak on bind_qp failure in alloc_and_bind()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/4fbc8230009f5b1bcd13cc74c5a6a43ddba141fd (7.2-rc1)
+CVE-2026-97476 [rds: filter RDS_INFO_* getsockopt by caller's netns]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c96a5209dda666004b8ee1ed7f0d493d09a4f200 (7.2-rc1)
+CVE-2026-97475 [thermal/drivers/tegra/soctherma: Switch to devm cooling device registration]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/ee126267bc04bfb03816ae9d71ca24c5bf99e739 (7.2-rc1)
+CVE-2026-97474 [wifi: iwlwifi: mld: purge async notifications upon nic error]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a40ad60a47f7c904b75a9ff83b39edebf3961c85 (7.2-rc1)
+CVE-2026-97473 [powercap: intel_rapl: Fix memory leak in rapl_add_package_cpuslocked()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/bfc7d93bc5e12288e5dc6bb54260f68cdf5a5c47 (7.2-rc1)
+CVE-2026-97472 [ipv6: addrconf: fix temp address generation after prefix deprecation]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e20d8922aa8fe441d291364c96c2179a005b79ea (7.2-rc1)
+CVE-2026-97456 [ACPICA: Fix condition check in acpi_ps_parse_loop()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8de27e2d83c0d07ae9443c6304575b0609394bfd (7.2-rc1)
+CVE-2026-97455 [ACPICA: Fix use-after-free in acpi_ds_terminate_control_method()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/945e87267cfd90937b3c637f87324cbb56998b72 (7.2-rc1)
+CVE-2026-97454 [ACPICA: add boundary checks in acpi_ps_get_next_field()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e15aa60de0256d63df2331bf5a4bc4dd287504cd (7.2-rc1)
+CVE-2026-97453 [ACPICA: validate byte_count in acpi_ps_get_next_package_length()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d49c6ee08365a8596f639da46eb7e71752b0cd42 (7.2-rc1)
+CVE-2026-97452 [ACPICA: Prevent adding invalid references]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6e8c55e13a5e3a9f38921d62924f18ceba3330eb (7.2-rc1)
+CVE-2026-97451 [ACPICA: Fix integer overflow in acpi_ex_opcode_3A_1T_1R() (mid_op)]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0e2021f49e64b3c8a9aa880d0c62a218bfe147ce (7.2-rc1)
+CVE-2026-97450 [ACPICA: validate handler object type in two places]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c5296da2d516707862f8a2dbb4b515f777e5294f (7.2-rc1)
+CVE-2026-97449 [ACPICA: Add package limit checks in parser functions]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d27d48a528e437aed690f977e69a6fe73fe82ab5 (7.2-rc1)
+CVE-2026-97448 [ACPICA: Add validation for node in acpi_ns_build_normalized_path()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/96b2b616870e46e2bc04efec03879683a0036e66 (7.2-rc1)
+CVE-2026-97447 [ACPICA: Enhance OEM ID and Table ID validation in acpi_ex_load_table_op()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/485829e6999b7909f50761a1c708660304edc945 (7.2-rc1)
+CVE-2026-97446 [ACPICA: Fix NULL pointer dereference in acpi_ns_custom_package()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/f8d14b7bb0063bbbd86c0e4d73edb8cea7b362bc (7.2-rc1)
+CVE-2026-97445 [ACPICA: Enhance buffer validation in acpi_ut_walk_aml_resources()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b2e21fe8c3361c3d0d57ee56d359bea9b51fda3d (7.2-rc1)
+CVE-2026-97444 [ACPICA: add boundary checks in two places]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/bdc35754012906dbf094be104b103ca3adfef6f7 (7.2-rc1)
+CVE-2026-97443 [perf/ftrace: Fix WARNING in __unregister_ftrace_function]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/9581123304b23049437324038698af9fb56ee663 (7.2-rc1)
+CVE-2026-97442 [wifi: ath11k: fix invalid data access in ath11k_dp_rx_h_undecap_nwifi]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6b471e9aefee9ed73278eb1141e0d8530a56fae9 (7.2-rc1)
+CVE-2026-97441 [ata: ahci: fail probe if BAR too small for claimed ports]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c4086c6e1af757e1ff26fa2d2926b3ec0195de79 (7.2-rc1)
+CVE-2026-97440 [net: qrtr: fix node refcount leak on ctrl packet alloc failure]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/3b09ff54114566864eea59020f6b69c5bb325b9d (7.2-rc1)
+CVE-2026-97439 [fs/ntfs3: preserve non-DOS attribute bits in system.dos_attrib]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b1c1101067d9536bcb0fe023b96ee2dde5535959 (7.2-rc1)
+CVE-2026-97438 [fs/ntfs3: validate index entry key bounds]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/98d6e5d9dc1d34dcffc61549617581a5fe1ef807 (7.2-rc1)
+CVE-2026-97437 [ntfs3: fix out-of-bounds read in ntfs_dir_emit() and hdr_find_e()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/aa1bdbb39f49c5bc9779316891c40005517842a5 (7.2-rc1)
+CVE-2026-97436 [dpaa2-switch: rework FDB management on the bridge leave path]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/efc1d92eacf03afa6f4d53bf7120e059b6f961f2 (7.2-rc1)
+CVE-2026-97435 [net: dsa: sja1105: flower: reject cross-chip redirect]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/cfa5274a5dc2a23b957da5dc806d2ac0c7a66af0 (7.2-rc1)
+CVE-2026-97434 [dpaa2-switch: fix handling of NAPI on the remove path]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e23d7c8c1d4ba435c457d7ffb2669175ec819b07 (7.2-rc1)
+CVE-2026-97433 [nvme: validate FDP configuration descriptor sizes]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0ef4daa6534a510d61ea67c8ad9bb5097b0dd5f8 (7.2-rc1)
+CVE-2026-97432 [wifi: iwlwifi: mvm: fix P2P-Device binding handling]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b74e377cad9271950c57472867c469e4b5b2ff0c (7.2-rc1)
+CVE-2026-97431 [drm/amd/display: Avoid DPMS-on for phantom stream]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/10f5f9c0ef32d08b228bfee3684b62f36f395852 (7.2-rc1)
+CVE-2026-97430 [xhci: Prevent queuing new commands if xhci is inaccessible]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/82b70c799281cc24506085be978b829149ba0ca4 (7.2-rc1)
+CVE-2026-97429 [drm/amdkfd: fix UAF race in destroy_queue_cpsch]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/ac081deaf16a639ea7dff2f285fe421a33c1ade0 (7.2-rc1)
+CVE-2026-97428 [drm/amdgpu: harden FRU PIA parsing with bounded helpers]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c990c05eb6c74c98d1ff3acf67a19015312820b7 (7.2-rc1)
+CVE-2026-97427 [drm/amd/pm: bound pp_dpm_set_pp_table() memcpy]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/f193e71fa9fab2e68ef85201b106e8f580d3a25b (7.2-rc1)
+CVE-2026-97426 [drm/amdgpu/pm: fix SmartShift bias sysfs store PM refcount on parse error]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a4b0c3f5d2287997876d8f711a40d3c0418458d8 (7.2-rc1)
+CVE-2026-97425 [drm/amdgpu: fix buffer overflow during vBIOS update]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6229898d46c0cbc238a6fe9f11c1ea12cf8bb9c5 (7.2-rc1)
+CVE-2026-97424 [drm/amdgpu/ras: add ras_suspend callback and use it for cp_ecc_error_irq]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e3829992dd9fa0a82511af4f01733fc854cd15a5 (7.2-rc1)
+CVE-2026-97423 [cxl/region: Validate partition index before array access]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/16329b510f76e5b824e05bf8add8b29850f1f16f (7.2-rc1)
+CVE-2026-97422 [drm/amdkfd: fix SMI event cross-process information leak]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/92a8dba246d371fe268280e5fd74b0955688e6df (7.2-rc1)
+CVE-2026-97421 [RDMA/umem: Be careful about boundary conditions in ib_umem_find_best_pgsz()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/09ea6837a0434fb4db99528a5055b6d822135dcf (7.2-rc1)
+CVE-2026-97420 [bpf: NUL-terminate replaced sysctl value]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a66e3b5bacf38d6ab29fa05a9754f7a114485605 (7.2-rc1)
+CVE-2026-97419 [hsr: broadcast netlink notifications in the device's net namespace]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a762fabd7ef9a6cc07258684138f9c3f078d0326 (7.2-rc1)
+CVE-2026-97418 [ALSA: es18xx: check control allocation before private data setup]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/422e42b7c2b882ba1d16d4afc8891bcea7c4de93 (7.2-rc1)
+CVE-2026-97417 [netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d3bf9eae486490832bd08fd62ab0ac601f346bd4 (7.2-rc1)
+CVE-2026-97416 [btrfs: balance: fix potential bg lookup failure in btrfs_may_alloc_data_chunk()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/18d32b0013efba19f7ad3e5b08d7aee813d604a6 (7.2-rc1)
+CVE-2026-97415 [btrfs: tree-checker: validate names in ROOT_REF and ROOT_BACKREF]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0af37c217edf15fa21dac1c40822086df356c6bb (7.2-rc1)
+CVE-2026-97414 [ASoC: mediatek: mt8365-afe-pcm: fix possible NULL-pointer dereferences in mt8365_afe_suspend()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b8948ac26efc395264a47f9a743889065adb5cff (7.2-rc1)
+CVE-2026-97413 [RDMA/rtrs-srv: Fix integer underflow in process_read and process_write]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/54bf38b27afc08a0eb6b732f9c14eb8a4bcb66b5 (7.2-rc1)
+CVE-2026-97412 [pds_core: quiesce DMA before freeing resources]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6443f4f20bdae726fe01cf5946fba9742a0ffda6 (7.2-rc1)
+CVE-2026-97411 [net: ibm: emac: mal: fix potential system hang in mal_remove()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/7c5d41f87f079990bf241359e3c1332d8d10fe87 (7.2-rc1)
+CVE-2026-97410 [netconsole: take target_cleanup_list_lock in drop_netconsole_target()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/91aeb87f052367a5a2743cc93777dfb4386f2f14 (7.2-rc1)
+CVE-2026-97409 [nvme-fc: Do not cancel requests in io target before it is initialized]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/ee38469f88492df99e1d97f03aa40ecfd218934f (7.2-rc1)
+CVE-2026-97408 [Bluetooth: L2CAP: validate connectionless PSM length]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a40a5f922546b3bd7c094d882b29177db4f2abe0 (7.2-rc1)
+CVE-2026-97407 [ASoC: rockchip: rockchip_pdm: Handle runtime PM resume failures in set_fmt]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/ee7b5f7b39332febf917f9ebf212842cc9379815 (7.2-rc1)
+CVE-2026-93830 [net: stmmac: xgmac2: disable RBUE in default RX interrupt mask]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d3265c19b35d036bba327b36b5366bee76b0157c (7.2-rc1)
+CVE-2026-93829 [smb: client: fix races in cifsd thread creation]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e8a5cf2ff5a13fefb228f2069e29dd7d8e37185d (7.2-rc1)
+CVE-2026-93828 [exfat: fix handling of damaged volume in exfat_create_upcase_table()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/20dd3185d13865214ff25b0bf7b931e8d73be1ac (7.2-rc1)
+CVE-2026-93827 [virtio-fs: avoid double-free on failed queue setup]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6af3330ec5d5fb8c06c04eb520a71cf73ea5a765 (7.2-rc1)
+CVE-2026-93826 [HID: hidpp: fix potential UAF in hidpp_connect_event()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6df6b1f2c49678211f65647c300bc51dda02893b (7.2-rc1)
+CVE-2026-93825 [spi: Add NULL check for spi_get_device_id() in spi_get_device_match_data()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/f1b061b4d4c6cbf861319ba954caa80145cf018f (7.2-rc1)
+CVE-2026-93824 [tls: reject the combination of TLS and sockmap]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/460e6486617c17dd19abe8f3fc67d9a6fa25f8ca (7.2-rc1)
+CVE-2026-93823 [drm/amdkfd: Let driver decide buffer size at AMDKFD_IOC_GET_DMABUF_INFO ioctl]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8242a8d9d7194d5ef8a8b38a5621ca0966a3ec15 (7.2-rc1)
+CVE-2026-93822 [PCI: iproc: Protect root bus removal with rescan lock]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a6a64e150f12ad5391e0a0d60f6a3d119b06ce50 (7.2-rc1)
+CVE-2026-93821 [PCI: altera: Protect root bus removal with rescan lock]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a8759c8ac48c0419f5899e95a6ffc611b07c965b (7.2-rc1)
+CVE-2026-93820 [PCI: rockchip: Protect root bus removal with rescan lock]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0bd9611587bb494c33566d825fe34b2705e4b167 (7.2-rc1)
+CVE-2026-93819 [PCI: mediatek: Protect root bus removal with rescan lock]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a29812a55da8d0dbeb071b26ac428c338e3fc389 (7.2-rc1)
+CVE-2026-93818 [PCI: plda: Protect root bus removal with rescan lock]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/4e4f9745f016c1631d00a4035b06f6e75d449e01 (7.2-rc1)
+CVE-2026-93817 [perf: Fix addr_filter_ranges lifetime]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e62d4192e593630f355094adc467058a05bdc935 (7.2-rc1)
+CVE-2026-93816 [f2fs: validate inline dentry name lengths before conversion]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/cfcd0e49a178b3dac2c0ece656079081dbf5da74 (7.2-rc1)
+CVE-2026-93815 [net: au1000: move free_irq out of the close-time spinlocked section]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/f48763beab4eea41fc480c9702ec6eebe8d75e4f (7.2-rc1)
+CVE-2026-93814 [spi: core: Abort active target transfer on controller suspend]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/c1bab046d4786c5b17aab7c5225bf0d4a2a2d19b (7.2-rc2)
+CVE-2026-93813 [btrfs: tree-checker: validate INODE_REF's namelen]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/3dc22abc21f5892406c09202fa2627196cc96967 (7.2-rc4)
+CVE-2026-93812 [ksmbd: fix sd_ndr.data memory leak in ksmbd_vfs_set_sd_xattr]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d4d56b00c7df88cd5751e7415bdfabc9fdbc82a7 (7.2-rc2)
+CVE-2026-93811 [ksmbd: Fix acl.sd_buf memory leak and invalid sd_size error handling]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d708a36634bb7b6f94d0e76d587d2ec50b2b93b5 (7.2-rc2)
+CVE-2026-93810 [cachefiles: Fix double fput]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/af6830cc12dfe86c832dccc9c9878a93aaa22f83 (7.2-rc2)
+CVE-2026-93809 [drm/amdgpu: flush pending RCU callbacks on module unload]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/67a654b41cfa73c3b83402c4a01b2689cad5b9bc (7.2-rc2)
+CVE-2026-93808 [ALSA: usb-audio: caiaq: validate EP1 reply lengths]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/aba30af07d4fe499b50209801eba9da8a815522f (7.2-rc4)
+CVE-2026-93807 [wifi: rsi: avoid reading TKIP MIC keys for non-TKIP ciphers]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/843fe9bc583b7686ca68312ac9319c9240a73c03 (7.2-rc4)
+CVE-2026-93806 [wifi: cfg80211: validate assoc response length before status and IE access]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b760113aeca2e9362d56bf9e9263373ffe6c8eb3 (7.2-rc4)
+CVE-2026-93805 [wifi: cfg80211: validate rx/tx MLME callback frame lengths before access]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d5e4586546974179feca305a94e07fac3e9727fe (7.2-rc4)
+CVE-2026-93804 [wifi: mac80211: ibss: wait for in-flight TX on disconnect]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d0e69d9afa59b93c30294eba89b1f15f69e91105 (7.2-rc4)
+CVE-2026-93803 [wifi: libipw: fix key index receive bound checks]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/74ed3669f26803b1761c1f55403062bea44c3466 (7.2-rc4)
+CVE-2026-93802 [wifi: rsi: validate beacon length before fixed buffer copy]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8ecdeb8b8a33b22c597299043c0dcfce50beb9ea (7.2-rc4)
+CVE-2026-93801 [smb/client: zero-initialize stack-allocated cifs_open_info_data]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8fce4cf4369c766a3293a05419500cbfde72e60d (7.2-rc3)
+CVE-2026-93800 [btrfs: fix use-after-free on reloc root after error in insert_dirty_subvol()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/83201804efa4a5168be754e1dfc9b2faee760cac (7.2-rc5)
+CVE-2026-93799 [wifi: iwlwifi: mvm: validate sta_id in BA window status notif]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/6aa77efaea9efea92e3090c35ad348fd759a3cf3 (7.2-rc5)
+CVE-2026-93798 [btrfs: fix reloc root cleanup in merge_reloc_roots()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b78fe9563e2d5ae47805f1e5dc722c91fd30e1f8 (7.2-rc5)
+CVE-2026-93797 [wifi: iwlwifi: mvm: fix an off-by-1 boundary check]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d77aff138c9ec6c8562f4c2c9f262d3d9c4b4cb8 (7.2-rc5)
+CVE-2026-93796 [wifi: iwlwifi: pcie: null RX pointers after free]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/2c79d7a7b583050c9f58041465cb46fe3483ab5d (7.2-rc5)
+CVE-2026-93795 [blk-cgroup: fix leaks and online flag on radix_tree_insert failure]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/dbbca20764382b4d411ec2918f4e278ffe547acc (7.2-rc4)
+CVE-2026-93794 [smb/client: flush dirty data before punching a hole]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/d7d2adcd022baade5cab65ca492ce63421ce3a6e (7.2-rc4)
+CVE-2026-93793 [wifi: iwlwifi: mvm: validate TX_CMD response layout]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/8d70881707b47353359df57df12f6de67fdacdd2 (7.2-rc5)
+CVE-2026-93792 [wifi: iwlwifi: mvm: fix a possible underflow]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0cb5260a1027a43f8cdb961e128f2ddd42e46832 (7.2-rc5)
+CVE-2026-93791 [wifi: iwlwifi: mvm: add a check on the tid coming from the firmware]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/0e4c0d83267261cf67ec9690856edf4a56bb7dfc (7.2-rc5)
+CVE-2026-93790 [wifi: iwlwifi: mvm: fix out-of-bounds tid_data access in BA notif]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/94d3982806c7f194b23484befde12934dda23064 (7.2-rc5)
+CVE-2026-93789 [wifi: iwlwifi: bound aligned TLV advance in FW parser]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/acad742714bdc70e7fd7f234323807c596828213 (7.2-rc5)
+CVE-2026-93788 [wifi: iwlwifi: acpi: validate WGDS table revision index]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/954e821f42aaca56073ca830c5fd4bcf1a89048c (7.2-rc5)
+CVE-2026-93787 [smb: client: bound dirent name against end of SMB response in cifs_filldir]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/f8cf09a53a0dc1da298e9dd0ba5f21710cf119d6 (7.2-rc5)
+CVE-2026-93786 [ksmbd: preserve VFS inherited POSIX ACL mask]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/e148e567a9252643baa125cb65d7ae9c2c6cf68a (7.2-rc5)
+CVE-2026-93785 [cifs: validate idmap key payload length]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/455488cd5054bcc59db40fa1cc2c004031a5b2a5 (7.2-rc6)
+CVE-2026-93784 [wifi: cfg80211: validate IEs in cfg80211_wext_siwgenie()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/a2f5286ca4f304d3fd469f01b96b518608912a5c (7.2-rc6)
+CVE-2026-93783 [Bluetooth: RFCOMM: validate skb length in rfcomm_recv_frame]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/b230e5bf501c5edaf2eb0991cb862ac142031d4b (7.2-rc6)
+CVE-2026-93782 [vhost-scsi: flush backend after device ioctls]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/22598f55a4c2b510b3df5e69e563387a963222ae (7.2-rc7)
+CVE-2026-93781 [scsi: core: Do not block on tag allocation in scsi_eh_lock_door()]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/732cb6bb37fd26863d5786522fb1997e7f5865b4 (7.2)
+CVE-2026-93288 [netfilter: nfnetlink_log: wait for rcu grace period before freeing pernet state]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/33d1469b0124cc0baaea7a2032123b77a81e0940 (7.2)
+CVE-2026-93287 [i2c: smbus: reject oversized block transfers in the common path]
+ - linux 7.1.3-1
+ NOTE: https://git.kernel.org/linus/3051cd060fa496df42954291fa2306ed2eab4ecc (7.1-rc3)
+CVE-2026-93286 [net: appletalk: fix NULL pointer dereference in aarp_send_ddp()]
+ - linux 7.1.3-1
+ NOTE: https://git.kernel.org/linus/9e7f36ab5b7bf68463faa5f7b926fea8f35597bb (7.1-rc5)
+CVE-2026-93285 [f2fs: embed f2fs_gc_kthread in f2fs_sb_info]
+ - linux 7.2.6-1
+ NOTE: https://git.kernel.org/linus/3d7bca9d583793bb7d0bac0d95a24ddd2e129eed (7.3-rc1)
+CVE-2026-93284 [drm/pagemap: dma-unmap pages before handling migration errors]
+ - linux <unfixed>
+ [trixie] - linux <not-affected> (Vulnerable code not present)
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/9e6372ec2a3990662ae0a67f56ac0aee19848d5b (7.3-rc2)
CVE-2026-93277 [RDMA/bnxt_re: Validate udata before executing commands]
- linux 7.2.6-1
[trixie] - linux <not-affected> (Vulnerable code not present)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b37f1dac6e662d6bf4e5a662f4afdf5a07ce587c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b37f1dac6e662d6bf4e5a662f4afdf5a07ce587c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260924/3d6d8849/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list