Vulnerability index

Browse CVEs

1,622 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel CRITICAL 9.8
CVE-2026-53006

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching saddr and daddr before pskb_pull…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-53005

In the Linux kernel, the following vulnerability has been resolved: af_unix: Drop all SCM attributes for SOCKMAP. SOCKMAP can hide inflight fd from…

Fix: 7.0.10+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.8
CVE-2026-52982

In the Linux kernel, the following vulnerability has been resolved: net: usb: rtl8150: fix use-after-free in rtl8150_start_xmit() syzbot reported a…

Fix: 5.10.258 / 5.15.209+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52976

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix error cleanup in xe_exec_queue_create_ioctl() Two error handling is…

Fix: 6.12.91 / 6.18.33+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52973

In the Linux kernel, the following vulnerability has been resolved: futex: Drop CLONE_THREAD requirement for private default hash alloc Currently n…

Fix: 6.18.33 / 7.0.10+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52971

In the Linux kernel, the following vulnerability has been resolved: net: ena: PHC: Fix potential use-after-free in get_timestamp Move the phc->acti…

Fix: 6.18.33 / 7.0.10+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52950

In the Linux kernel, the following vulnerability has been resolved: drm/xe/dma-buf: fix UAF with retry loop Retry doesn't work here, since bo will …

Fix: 6.18.33 / 7.0.10+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52951

In the Linux kernel, the following vulnerability has been resolved: drm/xe/dma-buf: handle empty bo and UAF races There look to be some nasty races…

Fix: 6.12.91 / 6.18.33+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52947

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove In qrt…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52943

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: fix missing zerocopy reference in pskb_carve helpers pskb_carve_in…

Fix: 5.10.259 / 5.15.210+
Fix from $1,950 2026-06-24
Linux Kernel CRITICAL 9.8
CVE-2026-52924

In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only…

Fix: 5.10.259 / 5.15.210+
Fix from $2,300 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-52912

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: hold bridge skb->dev while queued br_pass_frame_up() rewri…

Fix: 5.10.259 / 5.15.209+
Fix from $1,950 2026-06-24
Linux Kernel HIGH 7.8
CVE-2026-46330

In the Linux kernel, the following vulnerability has been resolved: Revert "net/smc: Introduce TCP ULP support" This reverts commit d7cd421da9da2cc…

Fix: 6.19.4+
Fix from $1,950 2026-06-09
Linux Kernel HIGH 7.8
CVE-2026-46319

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_ft When looking up a flo…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-09
Linux Kernel HIGH 7.8
CVE-2026-46323

In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags bet…

Fix: 6.1.176 / 6.6.142+
Fix from $1,950 2026-06-09
Linux Kernel HIGH 7.8
CVE-2026-46308

In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: fix use-after-free in scpsys_get_bus_protection_legacy() In…

Fix: 6.18.30 / 7.0.7+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46301

In the Linux kernel, the following vulnerability has been resolved: spi: topcliff-pch: fix use-after-free on unbind Give the driver a chance to flu…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 8.4
CVE-2026-46288

In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in of_unittest_changeset() The variable 'paren…

Fix: 6.12.86 / 6.18.27+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46285

In the Linux kernel, the following vulnerability has been resolved: mtd: docg3: fix use-after-free in docg3_release() In docg3_release(), the docg3…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46280

In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to avoid use-after-free Patch s…

Fix: 6.1.176 / 6.6.140+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 7.8
CVE-2026-46274

In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_wq_remove_pending() io_wq_rem…

Fix: 5.9 / 6.6.141+
Fix from $1,950 2026-06-08
Linux Kernel HIGH 8.4
CVE-2026-46270

In the Linux kernel, the following vulnerability has been resolved: power: supply: rt9455: Fix use-after-free in power_supply_changed() Using the `…

Fix: 5.10.252 / 5.15.202+
Fix from $1,950 2026-06-03
Linux Kernel HIGH 7.8
CVE-2026-46267

In the Linux kernel, the following vulnerability has been resolved: nfc: hci: shdlc: Stop timers and work before freeing context llc_shdlc_deinit()…

Fix: 5.15.202 / 6.1.165+
Fix from $1,950 2026-06-03
Linux Kernel HIGH 8.8
CVE-2026-46264

In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Fix sysfs initialization In case of devm_add_action_or_reset() failu…

Fix: 6.19.4+
Fix from $1,950 2026-06-03
Linux Kernel HIGH 7.8
CVE-2026-46246

In the Linux kernel, the following vulnerability has been resolved: power: supply: pm8916_lbc: Fix use-after-free for extcon in IRQ handler Using t…

Fix: 6.12.75 / 6.18.14+
Fix from $1,950 2026-06-03
Linux Kernel HIGH 7.8
CVE-2026-46242

In the Linux kernel, the following vulnerability has been resolved: eventpoll: fix ep_remove struct eventpoll / struct file UAF ep_remove() (via ep…

Fix: 5.16 / 6.2+
Fix from $1,950 2026-05-30
Linux Kernel HIGH 7.8
CVE-2026-46240

In the Linux kernel, the following vulnerability has been resolved: media: iris: Fix use-after-free in iris_release_internal_buffers() The recent c…

Fix: 6.18.32 / 7.0.9+
Fix from $1,950 2026-05-28
Linux Kernel HIGH 7.8
CVE-2026-46241

In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-free on registration failure Make sure to disable a…

Fix: 6.12.90 / 6.18.32+
Fix from $1,950 2026-05-28
Linux Kernel HIGH 7.8
CVE-2026-46227

In the Linux kernel, the following vulnerability has been resolved: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL The S…

Fix: 5.10.258 / 5.15.209+
Fix from $1,950 2026-05-28
Linux Kernel HIGH 7.8
CVE-2026-46215

In the Linux kernel, the following vulnerability has been resolved: drm: Set old handle to NULL before prime swap in change_handle There was a pote…

Fix: 6.18.32 / 7.0.9+
Fix from $1,950 2026-05-28