| CRITICAL |
CVE-2026-53398 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NFSD: Fix SECINFO_NO_NAME decode error cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| CRITICAL |
CVE-2026-74394 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/srpt: fix integer overflow in immediate data length check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| CRITICAL |
CVE-2026-72287 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: nVMX: Move vTPR vs. TPR Threshold consistency check into "normal" checks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| CRITICAL |
CVE-2026-64564 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: don't free the ASCONF's own transport in DEL-IP processing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| CRITICAL |
CVE-2026-64535 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-tcp: Fix potential UAF when ddgst mismatch — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64601 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: A ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68085 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_uart: clear HCI_UART_SENDING when write_work is canceled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68098 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: bound DACL dedup walk to copied ACEs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68117 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: clear sock->sk on the failed-insert path in tipc_sk_create() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68121 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: PPPoE memory corruption via stale pointer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68147 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fscrypt: Avoid dynamic allocation in fscrypt_get_devices() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68162 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: avoid auth_enable sysctl UAF during netns teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68189 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: Protect UUID list traversal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68196 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: wilc1000: validate assoc response length before subtracting header — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68198 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Use-after-free in ath6kl Wi-Fi driver leading to denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68199 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath6kl: fix OOB access from firmware ADDBA window size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68201 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: timer: drain a slave's callback before its master detaches it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68204 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: vivid: check for vb2_is_busy() when toggling caps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68236 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: set new_stream to NULL after release — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68257 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: fix 32-bit overflow in CWSR total size calculation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68284 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: bpf/sockmap use-after-free vulnerability leading to denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68323 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: serialize udp bearer replicast list updates — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68329 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/amd: Wait for completion instead of returning early in iommu_completion_wait() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68380 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Fix use-after-free of mm_struct in job scheduler — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64188 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: qualcomm: rmnet: fix endpoint use-after-free in rmnet_dellink() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64380 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: harden POSIX SID length parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64383 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix double-free in SMB2_flush() replay — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64385 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Kernel SMB client: Double-free vulnerability allows remote denial of service or privilege escalation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64386 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix query_info() replay double-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64387 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix query directory replay double-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64390 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: track the connection owning a byte-range lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64393 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: run set info with opener credentials — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64396 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: Use-after-free vulnerability allows arbitrary code execution or denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64423 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: igmp: remove multicast group from hash table on device destruction — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64432 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: validate Dirty Page Table capacity in log_replay copy_lcns — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64440 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB write in HT_caps_handler() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64441 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB reads in rtw_get_sec_ie(), rtw_get_wapi_ie(), and rtw_get_wps_attr() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64442 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB reads in IE loops in issue_assocreq() and join_cmd_hdl() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64467 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rust_binder: use a u64 stride when cleaning up the offsets array — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64490 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: virtio: Validate control metadata from the device — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64543 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix use-after-free of the discoverer in tipc_disc_rcv() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64548 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64554 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64557 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_new_connection_cb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64558 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/pkey: Check length in pkey_pckmo handler implementation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64562 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: nVMX: Hide shadow VMCS right after VMCLEAR — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64567 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: reject free space cache with more entries than pages — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64597 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix double-free in SMB2_close() replay — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72462 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: fix race in unix socket mediation when peer_path is used — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72472 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfs: use nfsi->rwsem to protect traversal of the file lock list — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72478 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: add bounds check to run_get_highest_vcn() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74268 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: t ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74317 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ixgbe: do not configure xps for XDP queues — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74334 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/nldev: Fix locking when accessing mr->pd — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74341 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: wcn36xx: fix heap overflow from oversized firmware HAL response — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74363 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: fix UAF by restoring RCU-delayed inode freeing in bpffs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74378 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/rxe: Fix TOCTOU heap overflow in get_srq_wqe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74390 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/irdma: Fix out-of-bounds write in irdma_copy_user_pgaddrs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74411 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rtw89: Correct data type for scan index to avoid infinite loop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74427 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix netns teardown to cancel the preallocation charger — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74438 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: sun4i-ss - Remove insecure and unused rng_alg — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74446 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: hold event_mutex while checkpointing CRIU events — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74465 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: openvswitch: fix potential UAF on meter attach failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74470 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: scsi_debug: Fix REPORT ZONES alloc_len underflow OOB write — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74506 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix UAF when sending a message — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74510 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: mgmt: fix UAF in pair command cancellation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74529 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: hold conn in hci_connect_pa_sync() callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74534 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: fix refcounting of iso_conn — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-74535 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: avoid deadlocks in iso_sock_timeout — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68393 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: extend conn_hash lookup critical sections — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68399 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix UAF in sock clone early bailouts — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68442 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68446 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vmwgfx: Validate vmw_surface_metadata::array_size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68451 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/zcrypt: Validate length for CCA ECC private key requests — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-68470 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: validate extension-frame layout before RX — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72003 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: brcmfmac: cyw: fix heap overflow on a short auth frame — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72024 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mac802154: remove interfaces with RCU list deletion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72110 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf,fork: wipe ->bpf_storage before bailouts that access it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72111 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Reset register bounds before narrowing retval range in check_mem_access() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72123 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: thrtimer use-after-free during RX operation teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72124 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: isotp: serialize TX state transitions under so->rx_lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72135 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tpm: Make the TPM character devices non-seekable — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72151 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tpm: tpm2-sessions: wait for async KPP completion in tpm_buf_append_salt — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72195 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: bound attr_off in UpdateResidentValue against data_off — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72288 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72331 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Fix VMA access race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72338 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: act_pedit: fix TOCTOU heap OOB write in tc offload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72372 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix lack of locking around modifications of net->cells_dyn_ino — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72390 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: sch_teql: Introduce slaves_lock to avoid race condition and UAF — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-72461 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: fix refcount leak when updating the sk_ctx — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53198 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53196 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: io_ti: fix heap overflow in get_manuf_info() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53193 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: timer: Forcibly close timer instances at closing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53192 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: timer: Fix UAF at snd_timer_user_params() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53185 | linux-libc-dev | 7.0.0-30.30 |
| kernel: zram: fix use-after-free in zram_bvec_write_partial() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53183 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mptcp: allow subflow rcv wnd to shrink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53182 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: nl80211: reject oversized EMA RNR lists — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53178 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: rtw_mlme: add bounds checks before ie_length subtraction — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53173 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ethosu: fix OOB write in ethosu_gem_cmdstream_copy_and_validate() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53172 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ethosu: fix IFM region index out-of-bounds in command stream parser — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53171 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ethosu: fix arithmetic issues in dma_length() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53170 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ethosu: reject DMA commands with uninitialized length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53159 | linux-libc-dev | 7.0.0-30.30 |
| kernel: misc: fastrpc: fix DMA address corruption due to find_vma misuse — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53153 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/list_lru: drain before clearing xarray entry on reparent — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53148 | linux-libc-dev | 7.0.0-30.30 |
| kernel: thunderbolt: Clamp XDomain response data copy to allocation size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53145 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/gem: Try to fix change_handle ioctl, attempt 4 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-52910 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Free reuseport cBPF prog after RCU grace period — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-52909 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ip6_vti: set netns_immutable on the fallback device — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-52908 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA: During rereg_mr ensure that REREG_ACCESS is compatible — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2025-40190 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ext4: guard against EA inode refcount underflow in xattr update — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2025-10263 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2022-41404 | org.ini4j:ini4j | 0.5.4 |
| org.ini4j: unspecified DoS — Java |
| HIGH |
CVE-2026-33818 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | encoding/asn1: golang: Go encoding/asn1: Denial of Service via excessive recursion in Unmarshal — usr/bin/pebble |
| HIGH |
CVE-2026-39821 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | golang.org/x/net/idna: golang: net/http: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing — usr/bin/pebble |
| HIGH |
CVE-2026-46600 | stdlib | v1.26.5 |
1.26.6, 1.27.0-rc.3 | golang.org/x/net/dns/dnsmessage: golang.org/x/net/dns/dnsmessage: Denial of Service via invalid DNS record parsing — usr/bin/pebble |
| HIGH |
CVE-2026-56853 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | net/http: golang: Go net/http: Unencrypted HTTP/2 connections vulnerable to Denial of Service — usr/bin/pebble |
| HIGH |
CVE-2026-56858 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | html/template: golang: Go html/template: Cross-Site Scripting via pathological input — usr/bin/pebble |
| HIGH |
CVE-2026-56859 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | encoding/xml: golang: Go: Denial of Service via XML decoding recursion depth issue — usr/bin/pebble |
| HIGH |
CVE-2026-56860 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | net/url: golang: golang net/url: Denial of Service from quadratic complexity in path resolution — usr/bin/pebble |
| HIGH |
CVE-2026-56862 | stdlib | v1.26.5 |
1.25.13, 1.26.6, 1.27.0-rc.3 | crypto/tls: golang: Golang crypto/tls: Denial of Service via indefinite KeyUpdate messages — usr/bin/pebble |
| HIGH |
CVE-2026-64191 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: stub: Reject I2C block transfers with invalid length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64260 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: Avoid queue->stopped races and set/read that value under lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64266 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse: re-lock request before returning from fuse_ref_folio() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64269 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64276 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: synaptics-rmi4 - bound the F30 keymap to the GPIO/LED count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64300 | linux-libc-dev | 7.0.0-30.30 |
| kernel: perf/aux: Fix page UAF in map_range() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64361 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hfs/hfsplus: fix u32 overflow in check_and_correct_requested_length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-64367 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: hid-goodix-spi: validate report size to prevent stack buffer overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-63823 | linux-libc-dev | 7.0.0-30.30 |
| kernel: keys: Pin request_key_auth payload in instantiate paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-63815 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: bound i_inline_xattr_size for non-inline-xattr inodes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-63809 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: use kvfree() for replaced sysctl write buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-63801 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix slab-use-after-free Read in tipc_aead_decrypt_done — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53399 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfsd: release layout stid on setlease failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53388 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse: re-lock request before replacing page cache folio — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53235 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: add pskb_may_pull() to skb_gro_receive_list() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53239 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53240 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: iptfs: fix use-after-free on first_skb in __input_process_payload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53250 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel (xsk): Out-of-bounds memory access via TOCTOU race condition — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53254 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: RFCOMM: validate skb length in MCC handlers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53256 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53259 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: anycast: insert aca into global hash under idev->lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53262 | linux-libc-dev | 7.0.0-30.30 |
| kernel: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53264 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: act_api: use RCU with deferred freeing for action lifecycle — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53266 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: netfilter: ebtables SNAT target writes to shared memory pages during ARP hardware address rewrite — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53269 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: synproxy: add mutex to guard hook reference counting — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53270 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipvs: clear the svc scheduler ptr early on edit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53275 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: mcast: Fix use-after-free when processing MLD queries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53276 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Kernel: Bluetooth ISO use-after-free vulnerability allows local denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53356 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/gem: Fix phys BO pread/pwrite with offset — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| HIGH |
CVE-2026-53362 | linux-libc-dev | 7.0.0-30.30 |
| kernel: kernel: ipv6 frag escape — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72247 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_conncount: fix zone comparison in tuple dedup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72245 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72244 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpu/buddy: bail out of try_harder when alignment cannot be honoured — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72243 | linux-libc-dev | 7.0.0-30.30 |
| kernel: selinux: check connect-related permissions on TCP Fast Open — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72242 | linux-libc-dev | 7.0.0-30.30 |
| kernel: selinux: avoid sk_socket dereference in selinux_sctp_bind_connect() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72241 | linux-libc-dev | 7.0.0-30.30 |
| kernel: leds: uleds: Fix potential buffer overread — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72240 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mfd: sm501: Fix reference leak on failed device registration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72238 | linux-libc-dev | 7.0.0-30.30 |
| kernel: x86/boot: Validate console=uart8250 baud rate to fix early boot hang — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72179 | linux-libc-dev | 7.0.0-30.30 |
| kernel: riscv: cacheinfo: Fix node reference leak in populate_cache_leaves — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72222 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sunrpc: pin svc_xprt across the asynchronous TLS handshake callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72223 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvdimm/btt: Free arena sub-allocations on discover_arenas() error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72224 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvdimm/btt: Free arenas on btt_init() error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72225 | linux-libc-dev | 7.0.0-30.30 |
| kernel: jbd2: fix integer underflow in jbd2_journal_initialize_fast_commit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72226 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: tt: prevent TVLV OOB check overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72227 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: mcast: avoid OOB read of num_dests header — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72228 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: frag: fix primary_if leak on failed linearization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72229 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: clean untagged VLAN on netdev registration failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72230 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: frag: free unfragmentable packet — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72231 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: tt: avoid request storms during pending request — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72232 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: ensure minimal ethernet header on TX — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72233 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: bla: reacquire gw address after skb realloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72234 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: access unicast_ttvn skb->data only after skb realloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72235 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: retrieve ethhdr after potential skb realloc on RX — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72236 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/perf_cpum_cf: Add missing array_index_nospec() to __hw_perf_event_init() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72237 | linux-libc-dev | 7.0.0-30.30 |
| kernel: perf/x86/amd/brs: Fix kernel address leakage — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72272 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: radeon: fix potential memory leak in radeonfb_pci_register() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72271 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: i740fb: fix potential memory leak in i740fb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72270 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: s3fb: fix potential memory leak in s3_pci_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72269 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: uvesafb: fix potential memory leak in uvesafb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72268 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: tdfxfb: fix potential memory leak in tdfxfb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72267 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: carminefb: fix potential memory leak in alloc_carmine_fb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72266 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: vesafb: fix memory leak in vesafb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72265 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: nvidia: fix potential memory leak in nvidiafb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72264 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: tridentfb: fix potential memory leak in trident_pci_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72263 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: topology: fix memory leak in snd_sof_load_topology — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72262 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: ipc3-control: Fix heap overflow in bytes_ext put/get — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72261 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: ipc3-control: Validate size in snd_sof_update_control — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72260 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: mediatek: mt8192: Check runtime resume during probe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72259 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: mediatek: mt8192: Release reserved memory on cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72258 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: mediatek: mt8183: Release reserved memory on cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72257 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: qcom: q6apm: fix NULL pointer dereference in graph_callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72256 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: xt_cluster: reject template conntracks in hash match — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72255 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72254 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_fib: reject fib expression on the netdev egress hook — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72253 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_conntrack_sip: validate skb_dst() before accessing it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72252 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_set_pipapo: don't leak bad clone into future transaction — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72251 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_nat_sip: reload possible stale data pointer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72250 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_conntrack_reasm: guard mac_header adjustment after IPv6 defrag — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72249 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: flowtable: use dst in this direction when pushing IPIP header — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72248 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: flowtable: support IPIP tunnel with direct xmit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72011 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/diag: Add missing array_index_nospec() call to memtop_get_page_count() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72156 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fpga: microchip-spi: fix zero header_size OOB read in mpf_ops_parse_header() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72157 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: thunderbolt: Fix frags[] overflow by bounding frame_count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72158 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fpga: dfl: add bounds check in dfh_get_param_size() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72159 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: reject non-inline dinodes with i_size and zero i_clusters — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72160 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: reject dinodes with non-canonical i_mode type — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72161 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: add journal NULL check in ocfs2_checkpoint_inode() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72162 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: fix UBSAN array-index-out-of-bounds in ocfs2_sum_rightmost_rec — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72163 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: fix NULL h_transaction deref in ocfs2_assure_trans_credits — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72164 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: avoid moving extents to occupied clusters — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72165 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: rawnand: fix condition in 'nand_select_target()' — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72166 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/9p: fix infinite loop in p9_client_rpc on fatal signal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72167 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: rawnand: pl353: fix probe resource allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72168 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: maps: vmu-flash: fix fault in unaligned fixup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72169 | linux-libc-dev | 7.0.0-30.30 |
| kernel: kho: make sure scratch size is always aligned by CMA_MIN_ALIGNMENT_BYTES — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72170 | linux-libc-dev | 7.0.0-30.30 |
| kernel: 9p: skip nlink update in cacheless mode to fix WARN_ON — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72171 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: slram: remove failed entries from the device list — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72172 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/mm_init: fix uninitialized struct pages for ZONE_DEVICE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72173 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/proc/task_mmu: do not warn on seeing non-migration pmd entry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72174 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/proc/task_mmu: fix hugetlb self-deadlock in pagemap_scan_pte_hole() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72175 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/proc/task_mmu: fix make_uffd_wp_huge_pte() prot-update race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72176 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/sysfs-schemes: put stats for scheme_add_dirs() internal error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72177 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/sysfs-schemes: fix dir put orders in access_pattern_add_dirs() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72178 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/core: always put unsuccessfully committed target pids — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72221 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sunrpc: wait for in-flight TLS handshake callback when cancel loses race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72220 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sunrpc: harden rq_procinfo lifecycle to prevent double-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72219 | linux-libc-dev | 7.0.0-30.30 |
| kernel: lockd: Plug nlm_file leak when nlm_do_fopen() fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72218 | linux-libc-dev | 7.0.0-30.30 |
| kernel: lockd: Plug nlm_file refcount leak on cached nlm_do_fopen() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72217 | linux-libc-dev | 7.0.0-30.30 |
| kernel: SUNRPC: Bound-check xdr_buf_to_bvec() stores before writing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72216 | linux-libc-dev | 7.0.0-30.30 |
| kernel: remoteproc: qcom: Fix leak when custom dump_segments addition fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72215 | linux-libc-dev | 7.0.0-30.30 |
| kernel: MIPS: DEC: Ensure 32-bit stack location for o32 prom_printf() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72214 | linux-libc-dev | 7.0.0-30.30 |
| kernel: power: supply: cpcap-battery: Fix missing nvmem_device_put() causing reference leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72213 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/hugetlb: fix hugetlb cgroup rsvd charge/uncharge mismatch — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72212 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/memory_hotplug: fix incorrect altmap passing in error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72205 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs: free volume-wide resources on fill_super failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72203 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs: skip extent mft records in writeback to prevent deadlock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72202 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs: avoid heap allocation for free-cluster readahead state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72200 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs: detect mapping-pairs LCN accumulator overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72198 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs: reject non-resident records for resident-only attributes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72197 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: bound DeleteIndexEntryAllocation memmove length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72196 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: bound copy_lcns dp->page_lcns[] index in analysis pass — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72194 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72193 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs3: cap RESTART_TABLE free-chain walker at rt->used — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72192 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72191 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs3: validate split-point offset in indx_insert_into_buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72183 | linux-libc-dev | 7.0.0-30.30 |
| kernel: landlock: Fix LANDLOCK_SCOPE_SIGNAL bypass on the SIGIO path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72182 | linux-libc-dev | 7.0.0-30.30 |
| kernel: power: supply: charger-manager: fix refcount leak in is_full_charged() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72181 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mips: sched: Fix CPUMASK_OFFSTACK memory corruption — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72180 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/huge_memory: preserve pmd_swp_uffd_wp on device-private PMD downgrade — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72370 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iomap: release pages on atomic dio size mismatch — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72369 | linux-libc-dev | 7.0.0-30.30 |
| kernel: minix: avoid overflow in bitmap block count calculation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72368 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cachefiles: Fix double unlock in nomem_d_alloc error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72367 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iomap: guard io_size EOF trim against concurrent truncate underflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72366 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: n ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72365 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfs: Fix writethrough to use collection offload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72364 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfs: Fix writeback error handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72363 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfs: Fix folio state after ENOMEM whilst under writeback iteration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72362 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/pt: Fix NULL pointer dereference in xe_pt_zap_ptes_entry() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72361 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/hw_engine: Fix double-free of managed BO in error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72360 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72357 | linux-libc-dev | 7.0.0-30.30 |
| kernel: uprobes/x86: Use proper mm_struct in __in_uprobe_trampoline — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72356 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cifs: Fix missing credit release on failure in cifs_issue_read() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72355 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfs: Fix barriering when walking subrequest list — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72351 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gue: validate REMCSUM private option length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72350 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: xt_u32: reject invalid shift counts — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72349 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72348 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72347 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: xt_connmark: reject invalid shift parameters — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72345 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5: LAG, Fix off-by-one in single-FDB error rollback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72343 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5e: Fix HV VHCA stats zero-sized buffer allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72341 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5e: Fix publication race for priv->channel_stats[] — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72340 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: microchip: vcap: fix races on the shared Super VCAP block — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72339 | linux-libc-dev | 7.0.0-30.30 |
| kernel: qede: fix off-by-one in BD ring consumption on build_skb failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72305 | linux-libc-dev | 7.0.0-30.30 |
| kernel: VDUSE: avoid leaking information to userspace — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72397 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (pmbus/core) honor vrm_version in pmbus_data2reg_vid() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72396 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: adm1275: Prevent reading uninitialized stack — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72395 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (pmbus) Fix passing events to regulator core — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72394 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (aspeed-g6-pwm-tach) Guard fan RPM calculation against divide-by-zero — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72393 | linux-libc-dev | 7.0.0-30.30 |
| kernel: eth: fbnic: don't cache shinfo across skb realloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72392 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72391 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: phy: sfp: free mii_bus in sfp_i2c_mdiobus_destroy — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72389 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bridge: stp: Fix a potential use-after-free when deleting a bridge — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72388 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/panthor: Always use the IRQ-safe variant when acquiring the fence lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72387 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/panthor: Fix potential invalid pointer deref in group_process_tiler_oom() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72386 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/panthor: Fix a leak when a group is evicted before the tiler OOM is serviced — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72385 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing/fprobe: Fix NULL pointer dereference in fprobe_fgraph_entry() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72384 | linux-libc-dev | 7.0.0-30.30 |
| kernel: irqchip/ts4800: Fix missing chained handler cleanup on remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72383 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: fix addr_wq_timer race in sctp_free_addr_wq() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72382 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: reject undersized DACLs before parsing ACEs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72381 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix use-after-free of fp->owner.name in durable handle owner check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72380 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xen/pvcalls: bound backend response req_id before indexing rsp[] — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72379 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs: refuse O_TMPFILE creation with an unmapped fsuid or fsgid — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72378 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: a ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72377 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Remove setting of AS_RELEASE_ALWAYS for symlinks and mountpoints — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72376 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix misplaced inc of net->cells_outstanding — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72375 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix reinitialisation of the inode, in particular ->lock_work — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72374 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix callback service message parsers to pass through -EAGAIN — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72373 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix missing NULL pointer check in afs_break_some_callbacks() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72371 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix the volume AFS_VOLUME_RM_TREE is set on — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72304 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: ipc4-control: Fix TOCTOU in sof_ipc4_bytes_put — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72302 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: ipc3-control: Use overflow checks in control_update size calc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72301 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: ipc3-control: Fix TOCTOU in bytes_put and bytes_get — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72300 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: topology: validate vendor array size before parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72299 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: restrict socket queue dumps in enqueue tracepoints — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72298 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: qrtr: fix 32-bit integer overflow in qrtr_endpoint_post() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72297 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: atm: reject out-of-range traffic classes in QoS validation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72296 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ife: require ETH_HLEN to be pullable in ife_decode() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72293 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: s390: vsie: Add missing radix_tree_preload() in _gaccess_shadow_fault() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72292 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: s390: Initialize KVM_S390_GET_CMMA_BITS memory — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72290 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: s390: pci: Fix GISC refcount leak on AIF enable failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72289 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: vgic: Check the interrupt is still ours before migrating it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72285 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: TDX: Reject concurrent change to CPUID entry count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72284 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86: Ignore pending PV EOI if the vCPU has since disabled PV EOIs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72283 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86: Nullify irqfd->producer if updating IRTE for bypass fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72282 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: Move kvm_io_bus_get_dev() locking responsibilities to callers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72280 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Drop bogus WARN for write to ZCR_EL2 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72279 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72278 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Re-translate VNCR before injecting abort — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72277 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72276 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: metronomefb: fix potential memory leak in metronomefb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72275 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: broadsheetfb: fix potential memory leak in broadsheetfb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72274 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: hecubafb: fix potential memory leak in hecubafb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72273 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: efifb: fix memory leak in efifb_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72337 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: 6lowpan: avoid untracked enable work — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72336 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: 6lowpan: hold L2CAP conn across debugfs control — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72335 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: MGMT: Fix adv monitor add failure cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72334 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: fix malformed ISO_END/CONT handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72333 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: fix tx ident leak for commands without a response — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72332 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Prevent PM resume deadlock in hwctx_sync_debug_bo() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72330 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/tls: Consume empty data records in tls_sw_read_sock() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72328 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Fix potential amdxdna_umap lifetime race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72327 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/v3d: Reject invalid indirect BO handle in indirect CSD setup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72326 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: cake: reject overhead values that underflow length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72325 | linux-libc-dev | 7.0.0-30.30 |
| kernel: perf/x86/amd/core: Avoid enabling BRS from the SVM reload path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72324 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: mvebu: free generic chips on unbind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72323 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72322 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: mcast: Fix potential UAF in MLD delayed work — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72321 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: igmp: Fix potential memory leaks in igmp_mod_timer() and igmp_stop_timer() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72320 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_lookup: fix catchall element handling with inverted lookups — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72319 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipvs: ensure inner headers in ICMP errors are in headroom — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72318 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cifs: validate DFS referral string offsets — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72317 | linux-libc-dev | 7.0.0-30.30 |
| kernel: SUNRPC: pin upper rpc_clnt across the TLS connect_worker — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72316 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm era: fix NULL pointer dereference in metadata_open() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72315 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix busy dentry warning on unmount after DIO — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72313 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/fb-helper: Only consider active CRTCs for vblank sync — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72308 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mlxsw: fix refcount leak in mlxsw_sp_port_lag_join() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72307 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mlxsw: fix refcount leak in mlxsw_sp_vrs_lpm_tree_replace() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72306 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: v ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72010 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cgroup/cpuset: rebind mm mempolicy to effective_mems, not mems_allowed — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72009 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pmdomain: imx93-blk-ctrl: Extract PHY as shared domain for DSI/CSI — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72008 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pmdomain: mediatek: Fix possible nullptr KP in HWV cleanup/on-check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72007 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pmdomain: imx: Fix i.MX8MP VC8000E power up sequence — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72006 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5: free mlx5_st_idx_data on final dealloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72005 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rt2x00: avoid full teardown before work setup in probe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72004 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: fix memory leak in ieee80211_register_hw() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68480 | linux-libc-dev | 7.0.0-30.30 |
| kernel: AMD-SN-7061: Safe RET Interrupt Vulnerability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68479 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btrtl: validate firmware patch bounds — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68478 | linux-libc-dev | 7.0.0-30.30 |
| kernel: memstick: ms_block: reject a card that reports too many blocks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68477 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipvs: fix more places with wrong ipv6 transport offsets — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68476 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: i ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68475 | linux-libc-dev | 7.0.0-30.30 |
| kernel: reset: sunxi: fix memory region leak on ioremap failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68474 | linux-libc-dev | 7.0.0-30.30 |
| kernel: powerpc/spufs: fix out-of-bounds access in spufs_mem_mmap_access() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68473 | linux-libc-dev | 7.0.0-30.30 |
| kernel: powerpc/uaccess: correct check for CONFIG_PPC_E500 in mask_user_address() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68472 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: validate EHT MLE before MLD ID read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68471 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ieee80211: validate MLE common info length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68469 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mwifiex: fix permanently busy scans after multiple roam iterations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68467 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: mchp23k256: use SPI match data for chip caps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68465 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mmc: sdhci-esdhc-imx: fix esdhc_change_pinstate() to allow default state restore — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68464 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mmc: sdhci-esdhc-imx: disable irq during suspend to fix unhandled interrupt — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68463 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mmc: sdhci-esdhc-imx: use pm_runtime_resume_and_get() in suspend — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68461 | linux-libc-dev | 7.0.0-30.30 |
| kernel: device property: initialize the remaining fields of fwnode_handle in fwnode_init() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68428 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86/mmu: Fix use-after-free on vendor module reload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72037 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: lan743x: Initialize eth_syslock spinlock before use — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72036 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: sch_multiq: Replace direct dequeue call with peek and qdisc_dequeue_peeked — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72035 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: sch_taprio: Replace direct dequeue call with peek and qdisc_dequeue_peeked — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72034 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fhandle: reject detached mounts in capable_wrt_mount() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72033 | linux-libc-dev | 7.0.0-30.30 |
| kernel: orangefs: keep the readdir entry size 64-bit in fill_from_part() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72032 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5: HWS, fix matcher leak on resize target setup failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72031 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ata: libata-core: Add NOLPM quirk for PNY CS900 1TB SSD — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72030 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ata: libata-core: Reject an invalid concurrent positioning ranges count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72029 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: wwan: iosm: bound device offsets in the MUX downlink decoder — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72028 | linux-libc-dev | 7.0.0-30.30 |
| kernel: riscv: probes: save original sp in rethook trampoline — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72027 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/compaction: handle free_pages_prepare() properly in compaction_free() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72026 | linux-libc-dev | 7.0.0-30.30 |
| kernel: irqchip/irq-riscv-imsic-early: Fix fwnode leak on state setup failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72025 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/monwriter: Reject buffer reuse with different data length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72023 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-pf: fix SQB pointer leak on init failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72022 | linux-libc-dev | 7.0.0-30.30 |
| kernel: llc: fix SAP refcount leak in llc_ui_autobind() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72021 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipvs: use parsed transport offset in SCTP state lookup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72020 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipvs: reset full ip_vs_seq structs in ip_vs_conn_new — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72019 | linux-libc-dev | 7.0.0-30.30 |
| kernel: macsec: don't read an unset MAC header in macsec_encrypt() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72018 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dibs: loopback: validate offset and size in move_data() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72017 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: macb: drop in-flight Tx SKBs on close — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72016 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cpu/hotplug: Fix NULL kobject warning in cpuhp_smt_enable() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72015 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/resctrl: Fix double-add of pseudo-locked region's RMID to free list — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72014 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drbd: reject data replies with an out-of-range payload size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72013 | linux-libc-dev | 7.0.0-30.30 |
| kernel: riscv: Prevent NULL pointer dereference in machine_kexec_prepare() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72012 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing/osnoise: Call synchronize_rcu() when unregistering — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68427 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68426 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: fix stale skb->prev after async crypto steals a GSO segment — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68425 | linux-libc-dev | 7.0.0-30.30 |
| kernel: IB/mad: Drop unmatched RMPP responses before reassembly — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68422 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: fix root leak if its reloc root is unexpected in merge_reloc_roots() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68421 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sched_ext: Don't warn on core-sched forced idle in put_prev_task_scx() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68420 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: reject optional IPTFS templates in outbound policies — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68419 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/irdma: Prevent rereg_mr for non-mem regions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68418 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/irdma: Prevent user-triggered null deref on QP create — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68417 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/siw: publish QP after initialization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68416 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: fix double free and WARN_ON in add_mtd_device() error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68415 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: clear mode callbacks after failed mode setup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68414 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: cancel sched scan results work on unregister — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68413 | linux-libc-dev | 7.0.0-30.30 |
| kernel: memory leak in ipw2100_pci_init_one() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68412 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68411 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211_hwsim: clamp virtio RX length before skb_put — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68410 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: libertas: fix memory leak in helper_firmware_cb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68409 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: defer link RX stats percpu free to RCU — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68408 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68407 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: nl80211: free RNR data on MBSSID mismatch — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68406 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: validate PMSR FTM preamble range — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68405 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68404 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: use wiphy work for socket owner autodisconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68403 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: brcmfmac: initialize SDIO data work before cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64333 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: digi_acceleport: fix write buffer corruption — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68460 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: fix potential deadlock in f2fs_balance_fs() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68459 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: fix potential deadlock in gc_merge path of f2fs_balance_fs() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68458 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binder: cache secctx size before release zeroes it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68457 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: use opener credentials for FSCTL mutations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68456 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: atm: ueagle-atm: wait for pre-firmware load in .disconnect() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68455 | linux-libc-dev | 7.0.0-30.30 |
| kernel: liveupdate: validate session type before performing operation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68453 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/zcrypt: Fix buffer over-read in cca_cipher2protkey — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68452 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/zcrypt: Validate length for CCA AES cipher key requests — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68450 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: free mapping node on duplicate reloc root insert — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68449 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68448 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ovl: check access to copy_file_range source with src mounter creds — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68447 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68445 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vc4: Prevent shader BO mappings from becoming writable — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68444 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68443 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (gigabyte_waterforce) Stop device IO before calling hid_hw_stop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68441 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68440 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: txgbe: fix heap overflow when reading module EEPROM — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68439 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68437 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/imagination: Fit paired fragment job in the correct CCCB — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68436 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: use kvzalloc to allocate struct dc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68434 | linux-libc-dev | 7.0.0-30.30 |
| kernel: serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68433 | linux-libc-dev | 7.0.0-30.30 |
| kernel: libceph: bound get_version reply decode to front len — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68431 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: validate minimum PDU size for transform requests — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68430 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx8: drop unecessary BUG_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68429 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72125 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: isotp: fix use-after-free race with concurrent NETDEV_UNREGISTER — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72122 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72121 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: add locking when updating filter and timer values — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72120 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: add missing rcu list annotations and operations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72119 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: extend bcm_tx_lock usage for data and timer updates — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72118 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: fix CAN frame rx/tx statistics — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72117 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: fix data race on rx_stamp/rx_ifindex in bcm_rx_handler() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72116 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: fix stale rx/tx ops after device removal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72115 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: track a single source interface for ANYDEV timeout/throttle ops — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72114 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: validate frame length in bcm_rx_setup() for RTR replies — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72113 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: bcm: add missing device refcount for CAN filter removal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72109 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: sparx5: unregister blocking notifier on init failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72107 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm era: fix out-of-bounds memory access for non-zero start sector — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72106 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-ioctl: fix a possible overflow in list_version_get_info — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72105 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-log: fix a bitset_size overflow on 32bit machines — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72104 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-pcache: reject option groups without values — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72103 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm: avoid leaking the caller's thread keyring via the table device file — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72102 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm_early_create: fix freeing used table on dm_resume failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72101 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-integrity: fix leaking uninitialized kernel memory — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72099 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: d ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72098 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-verity: fix buffer overflow in FEC calculation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72097 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-verity: fix a possible NULL pointer dereference — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72096 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-verity: make error counter atomic — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72095 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dma-fence: Make dma_fence_dedup_array() robust against 0-count input — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72066 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cpu: hotplug: Bound hotplug states sysfs output — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72155 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: spi-nor: swp: Improve locking user experience — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72153 | linux-libc-dev | 7.0.0-30.30 |
| kernel: irqchip/crossbar: Use correct index in crossbar_domain_free() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72152 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72150 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sunrpc: fix uninitialized xprt_create_args structure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72149 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: tegra: Fix burst size calculation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72148 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: dw-edma: Add spinlock to protect DONE_INT_MASK and ABORT_INT_MASK — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72147 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: dw-edma-pcie: Reject devices without driver data — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72146 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: sh: rz-dmac: Move interrupt request after everything is set up — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72144 | linux-libc-dev | 7.0.0-30.30 |
| kernel: platform/x86: dell-laptop: fix missing cleanups in init error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72143 | linux-libc-dev | 7.0.0-30.30 |
| kernel: platform/x86: ISST: Restore SST-PP control to all domains — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72142 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: imx: fix locked bus on SMBus block-read of 0 (atomic) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72141 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: imx: fix locked bus on SMBus block-read of 0 (IRQ) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72140 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: i ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72139 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: defer md5sig_info kfree past RCU grace period in tcp_connect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72138 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xen/gntdev: fix error handling in ioctl — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72137 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: nat_keepalive: avoid double free on send error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72136 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: xfrm_interface: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72133 | linux-libc-dev | 7.0.0-30.30 |
| kernel: spi: uniphier: Fix completion initialization order before devm_request_irq() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72132 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NFS: Charge unstable writes by request size, not folio size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72131 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvme-apple: Prevent shared tags across queues on Apple A11 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72130 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-auth: reject short AUTH_RECEIVE buffers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72129 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-rdma: handle inline data with a nonzero offset — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72128 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet: fix refcount leak in nvmet_sq_create() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72127 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netdev-genl: report NAPI thread PID in the caller's pid namespace — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72126 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: isotp: use unconditional synchronize_rcu() in isotp_release() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72065 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mana: Validate the packet length reported by the NIC — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72064 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mana: Sync page pool RX frags for CPU — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72063 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: tegra: do not call pinctrl for GPIO direction — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72062 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: mt7621: avoid corruption of shared interrupt trigger state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72061 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: sit: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72060 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ethernet: ti: icssg: guard PA stat lookups — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72059 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: wwan: t7xx: destroy DMA pool on CLDMA late init failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72058 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ixp4xx_hss: fix duplicate HDLC netdev allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72057 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: act_ct: preserve tc_skb_cb across defragmentation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72056 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ena: clean up XDP TX queues when regular TX setup fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72055 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ip6_vti: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72053 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ipip: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72052 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ip6_gre: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72050 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-af: Free BPID bitmap on setup failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72049 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ieee802154: admin-gate legacy LLSEC dump operations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72048 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ieee802154: ca8210: fix cas_ctl leak on spi_async failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72047 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ieee802154: ca8210: fix pointer truncation in kfifo on 64-bit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72046 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gve: fix header buffer corruption with header-split and HW-GRO — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72045 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-af: cn10k: restrict VF LMTLINE sharing to its own PF — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72042 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipmi: Fix user refcount underflow in event delivery — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72041 | linux-libc-dev | 7.0.0-30.30 |
| kernel: espintcp: use sk_msg_free_partial to fix partial send — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72040 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipmi: fix refcount leak in i_ipmi_request() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72039 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bnx2x: fix potential memory leak in bnx2x_alloc_mem_bp() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72038 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: liquidio: fix BAR resource leak on PF number failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72093 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Fix use-after-free in amdxdna_gem_dmabuf_mmap() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72092 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: a ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72091 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: reject user command submission without a command BO — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72089 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ivpu: Reject firmware log with size smaller than header — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72088 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: hpsa: Fix DMA mapping leak on IOACCEL2 reset path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72087 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: lpfc: Fix memory leak in lpfc_sli4_driver_resource_setup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72086 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: xen: scsiback: Free the command tag on the TMR submit-failure path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72085 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: xen: scsiback: Free unsubmitted command instead of double-putting it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72084 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: target: Bound PR-OUT TransportID parsing to the received buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72083 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72082 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: elx: efct: Fix refcount leak in efct_hw_io_abort() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72081 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: elx: efct: Fix I/O leak on unsupported additional CDB — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72080 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/resctrl: Fix use-after-free during unmount — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72079 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - fix use-after-free and double-free in disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72078 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - validate control endpoint type — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72077 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - fix firmware leak in async update — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72076 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - fix out-of-bounds read in ims_pcu_irq() debug logging — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72075 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - fix race condition in reset_device sysfs callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72074 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - fix type confusion in CDC union descriptor parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72073 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mmc: vub300: fix use-after-free on probe failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72072 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5e: macsec: fix use-after-free of metadata_dst on RX SC delete — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72070 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: libertas_tf: fix use-after-free in lbtf_free_adapter() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72069 | linux-libc-dev | 7.0.0-30.30 |
| kernel: locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72068 | linux-libc-dev | 7.0.0-30.30 |
| kernel: posix-cpu-timers: Use u64 multiplication in update_rlimit_cpu() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72067 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cpu: hotplug: Preserve per instance callback errors — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74471 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Check return value of __register_event() in trace_module_add_events() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74469 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: prevent peer transport count overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74468 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: pch: use raw_spinlock_t for the register lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74467 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/qeth: Check CAP_NET_ADMIN for private ioctls — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74466 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/zcrypt: Close speculative mem read possibility — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74464 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: openvswitch: fix skb leak on flow key update failure during ct — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74463 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: jz4780: Cache host clock rate at probe to prevent CCF prepare_lock deadlock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74462 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: imx: mark I2C adapter when hardware is powered down — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74461 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: imx: Cancel hrtimer before clearing slave pointer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74460 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: ems_usb: validate CPC message lengths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74459 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: etas_es58x: es58x_read_bulk_callback(): fix RX buffer leak on URB resubmit failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74458 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74457 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: peak_usb: add bounds check for USB channel index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74456 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74455 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: peak_usb: validate uCAN receive record lengths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74454 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74453 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vc4: Zero the tile state data array before each BIN job — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74452 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/panthor: reject firmware sections with oversized data — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74451 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/panthor: validate firmware interface structure sizes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74449 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Fix divide-by-zero in calculate_mcache_setting on zero viewport — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74448 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: fix QID bit leak in pqm_create_queue() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74447 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74445 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vmwgfx: reject DX_BIND_QUERY without a DX context — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74444 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vmwgfx: validate DRAW_PRIMITIVES header size before division — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74415 | linux-libc-dev | 7.0.0-30.30 |
| kernel: spi: atcspi200: fix use-after-free when driver unbind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74499 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74498 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74497 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: Clamp frame size in implicit-feedback mode — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74496 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fou: Fix use-after-free in fou_create() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74495 | linux-libc-dev | 7.0.0-30.30 |
| kernel: igbvf: Fix leak in TX DMA error cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74494 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: reject repeated SMB2 NEGOTIATE requests — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74493 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/smc: fix socket use-after-free during link group termination — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74492 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ipset: do not update comments from kernel-side hash adds — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74491 | linux-libc-dev | 7.0.0-30.30 |
| kernel: of/address: Fix NULL bus dereference in of_pci_range_parser_one() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74488 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mwifiex: use the subframe length when parsing A-MSDU TDLS frames — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74487 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_misc: restore write access when removing an entry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74486 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_misc: use exe_file_deny_write_access() for the interpreter clone — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74485 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_misc: reject a flag character as the field delimiter — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74484 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_misc: don't let an 'F' entry pin its own instance — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74483 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_misc: don't leak the user namespace when the mount fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74482 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74480 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: bridge: stop fast-leave after deleting a port group — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74479 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: pktgen: fix proc entry use-after-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74478 | linux-libc-dev | 7.0.0-30.30 |
| kernel: um: vector: fix use-after-free in vector_mmsg_rx() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74477 | linux-libc-dev | 7.0.0-30.30 |
| kernel: uprobes: Fix NULL pointer dereference in hprobe_expire() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74476 | linux-libc-dev | 7.0.0-30.30 |
| kernel: veth: convert frag_list skbs before running XDP — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74475 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vxlan: use neigh_ha_snapshot() in route_shortcircuit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74474 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vxlan: use pskb_network_may_pull() for transmit path header pulls — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74473 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vxlan: use pskb_network_may_pull() in route_shortcircuit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74472 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ublk: reset kernel-owned dev_info fields in ublk_ctrl_add_dev() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74413 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rtw89: fix wrong pci_get_drvdata type in AER handlers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74410 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rtw88: fix OOB read from firmware RX descriptor exceeding DMA buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74409 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rtw89: add bounds check on firmware mac_id in link lookup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74408 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath9k: fix OOB access from firmware tx status queue ID — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74407 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath11k: cancel SSR work items during PCI shutdown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74406 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74404 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ccp - Fix snp_filter_reserved_mem_regions() off-by-one — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74402 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: atmel-sha204a - fix blocking and non-blocking rng logic — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74400 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: fix crash in bpf_[set|remove]_dentry_xattr for negative dentries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74399 | linux-libc-dev | 7.0.0-30.30 |
| kernel: evm: terminate and bound the evm_xattrs read buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74398 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74396 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/mlx5: Fix UMR XLT cleanup on ODP populate failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74395 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/mlx5: Fix devx subscribe-event unwind NULL dereference — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74393 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/syncobj: Fix memory leak in drm_syncobj_find_fence() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74392 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm: limit target bio polling to one shot — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74391 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Bound synthetic-field strings with seq_buf — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74389 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/hns: Fix log flood after cmd_mbox failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74388 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: oss: Fix UAF at handling events with embedded SysEx data — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74387 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: midi: Serialize output teardown with event_input — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74386 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-tcp: fix page fragment cache leak in error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74385 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-tcp: check return value of nvmet_tcp_set_queue_sock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74384 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvme-multipath: fix flex array size in struct nvme_ns_head — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74382 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: cls_bpf: prevent unbounded recursion in offload rollback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72483 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: host: max3421: Fix shift-out-of-bounds in max3421_hub_control() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74443 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vmwgfx: bound DMA command body size against suffix pointer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74442 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vmwgfx: avoid destroy_workqueue(NULL) on vkms init failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74441 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: typec: ucsi: Fix race condition and ordering in port unregistration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74440 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe: Wait on external BO kernel fences in exec IOCTL — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74439 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74437 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: uvcvideo: Fix deadlock if uvc_status_stop is called from async_ctrl.work — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74436 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: serialize kernel accept preallocation with socket teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74435 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: rxrpc_verify_data ensure rx_dec_buffer alloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74434 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: Don't move a peeked OOB message onto the pending queue — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74433 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: r ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74432 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: Fix leak of released call in recvmsg(MSG_PEEK) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74431 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: Fix potential infinite loop in rxrpc_recvmsg() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74430 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: Fix ACKALL packet handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74429 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: Fix the reception of a reply packet before data transmission — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74428 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rxrpc: Fix double unlock in rxrpc_recvmsg() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74426 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: fix NULL pointer dereference in afs_get_tree() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74425 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: handle CB.InitCallBackState3 requests without a server record — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74424 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbcon: fix NULL pointer dereference for a console without vc_data — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74423 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Fix leak when pinning ubuf pages — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74422 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/rockchip: inno-hdmi: Switch to drmm_kzalloc() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74421 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/rockchip: dw_dp: Switch to drmm_kzalloc() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74420 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/gpusvm: Reject VMAs with VM_IO or VM_PFNMAP when creating SVM ranges — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74419 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Adjust size for copy_to_user() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74417 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/radeon: fix integer overflow in radeon_align_pitch() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74416 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/radeon: fix memory leak in radeon_ring_restore() on lock failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2025-10990 | ruby3.3 | 3.3.8-2ubuntu3.1 |
| rexml: REXML: Denial of Service via inefficient regex parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-55655 | openssh-client | 1:10.2p1-2ubuntu3.5 |
| openssh: Local MITM of X11 forwarding via abstract UNIX socket pre-binding in Red Hat Enterprise Linux OpenSSH client versions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | mount | 2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | mount | 2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | login | 1:4.16.0-2+really2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | login | 1:4.16.0-2+really2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74579 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_payload: fix mask build for partial field offload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74578 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: algif_skcipher - force synchronous processing on trees without ctx->state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74577 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mpls: initialize rtm_tos in mpls_getroute() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74576 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/slab: prevent unbounded recursion in free path with new kmalloc type — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74575 | linux-libc-dev | 7.0.0-30.30 |
| kernel: thunderbolt: Prevent XDomain delayed work use-after-free on disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74574 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74573 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74572 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: zoned: fix deadlock between metadata writeback and transaction commit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74571 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: skip global block reserve accounting for rescue mounts — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74569 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74567 | linux-libc-dev | 7.0.0-30.30 |
| kernel: keys: fix out-of-bounds read in keyring_get_key_chunk() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74566 | linux-libc-dev | 7.0.0-30.30 |
| kernel: keys: make keyring key-chunk byte order agree with keyring_diff_objects() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74565 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_tables: make nft_object rhltable per table — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74564 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: n ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74563 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74562 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nexthop: take nh->lock for f6i_list walks in replace check and notify — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74561 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74560 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xsk: fix buffer leak in xsk_drop_skb() for AF_XDP multi-buffer Tx — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74531 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_conn: hold conn reference in abort_conn_sync() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | util-linux | 2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | util-linux | 2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-18508 | tar | 1.35+dfsg-4ubuntu0.4 |
| tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-18477 | tar | 1.35+dfsg-4ubuntu0.4 |
| tar: tar: TOCTOU in incremental dumpdir 'X' rename handling allows restore path escape — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35377 | rust-coreutils | 0.8.0-0ubuntu3 |
| A logic error in the env utility of uutils coreutils causes a failure ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35374 | rust-coreutils | 0.8.0-0ubuntu3 |
| A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the sp ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35373 | rust-coreutils | 0.8.0-0ubuntu3 |
| A logic error in the ln utility of uutils coreutils causes the program ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35371 | rust-coreutils | 0.8.0-0ubuntu3 |
| The id utility in uutils coreutils exhibits incorrect behavior in its ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35370 | rust-coreutils | 0.8.0-0ubuntu3 |
| The id utility in uutils coreutils miscalculates the groups= section o ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35368 | rust-coreutils | 0.8.0-0ubuntu3 |
| A vulnerability exists in the chroot utility of uutils coreutils when ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35367 | rust-coreutils | 0.8.0-0ubuntu3 |
| The nohup utility in uutils coreutils creates its default output file, ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35364 | rust-coreutils | 0.8.0-0ubuntu3 |
| A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the m ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35363 | rust-coreutils | 0.8.0-0ubuntu3 |
| A vulnerability in the rm utility of uutils coreutils allows the bypas ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35360 | rust-coreutils | 0.8.0-0ubuntu3 |
| The touch utility in uutils coreutils is vulnerable to a Time-of-Check ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35359 | rust-coreutils | 0.8.0-0ubuntu3 |
| A Time-of-Check to Time-of-Use (TOCTOU) vulnerability in the cp utilit ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35357 | rust-coreutils | 0.8.0-0ubuntu3 |
| The cp utility in uutils coreutils is vulnerable to an information dis ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35354 | rust-coreutils | 0.8.0-0ubuntu3 |
| A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the mv ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35352 | rust-coreutils | 0.8.0-0ubuntu3 |
| A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the m ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35351 | rust-coreutils | 0.8.0-0ubuntu3 |
| The mv utility in uutils coreutils fails to preserve file ownership du ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35350 | rust-coreutils | 0.8.0-0ubuntu3 |
| The cp utility in uutils coreutils fails to properly handle setuid and ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35348 | rust-coreutils | 0.8.0-0ubuntu3 |
| The sort utility in uutils coreutils is vulnerable to a process panic ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35345 | rust-coreutils | 0.8.0-0ubuntu3 |
| A vulnerability in the tail utility of uutils coreutils allows for the ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35344 | rust-coreutils | 0.8.0-0ubuntu3 |
| The dd utility in uutils coreutils suppresses errors during file trunc ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-35341 | rust-coreutils | 0.8.0-0ubuntu3 |
| A vulnerability in uutils coreutils mkfifo allows for the unauthorized ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2025-10990 | ruby3.3-dev | 3.3.8-2ubuntu3.1 |
| rexml: REXML: Denial of Service via inefficient regex parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74530 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: hold conn in hci_connect_big_sync() callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74528 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: hold conn in hci_past_sync() callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74526 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: mpi3mr: Fix potential deadlock in mpi3mr_fault_uevent_emit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74525 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: sxgbe: free TX rings on RX allocation failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74524 | linux-libc-dev | 7.0.0-30.30 |
| kernel: riscv: mm: Fix out-of-bounds page-table walk during memory hot-remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74523 | linux-libc-dev | 7.0.0-30.30 |
| kernel: qede: sync udp_tunnel ports outside qede_lock in the recovery path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74522 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix use-after-free in __close_file_table_ids() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74521 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: use memcmp() to compare ClientGUIDs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74520 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/iommufd: Fix IOPF group ownership UAF — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74518 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/hugetlb: fix list corruption in allocate_file_region_entries() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74517 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74516 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74515 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: s390: pci: Reject adapter interrupt forwarding if already enabled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74514 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: s390: pci: Fix memory accounting for pinned/unpinned pages — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74513 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dibs: fix use-after-free of dmb_node in loopback attach/detach/unregister — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74509 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: Fix advertising data UAFs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74508 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: HIDP: reject frames without a transaction header — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74507 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: HIDP: validate numbered report payloads — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74505 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: 6fire: Fix UAF at error handling during probe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74504 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: Fix division by zero in initialize_timer() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74503 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74502 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: ump: fix double free of out_cvts on rawmidi error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74501 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: fix use-after-free in ump_to_endpoint() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74500 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: fix stack info leak in RME Digiface status — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74559 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xsk: drain continuation descs after overflow in xsk_build_skb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74558 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xsk: reclaim invalid Tx descriptors in ZC batch path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74557 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74556 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74555 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: libsas: Fix HA resume deadlock and hisi_sas disk-wake race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74553 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (nct6775-core) Fix number of temperature registers for NCT6116 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74552 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (lm90) Only report alarms if driver is ready — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74551 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (nzxt-smart2) DMA-align output buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74550 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: do not send ICMP/NDISC Redirects when peer allocation fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74549 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (nct6775-core) Prevent access to unsupported weight registers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74548 | linux-libc-dev | 7.0.0-30.30 |
| kernel: forcedeth: fix UAF of txrx_stats in nv_remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74547 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74546 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74545 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: r ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74544 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: cls_u32: validate offshift to prevent shift-out-of-bounds — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74543 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: udp_tunnel: fix memory leak in udp_tunnel_nic_unregister() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74542 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfs: Fix folio_queue ENOMEM in writeback by adding a mempool — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74541 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: clear iso_data always when detaching conn from hcon — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74540 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74539 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: lock sk in iso_sock_getname — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74538 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: lock sk in iso_connect_ind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74537 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: hold sk properly in iso_conn_ready — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74536 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: fix leaking sk after socket release — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74533 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: fix race of kfree vs kref_get_unless_zero — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74532 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btintel: Validate length before parsing diagnostics TLV — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72481 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: magnetometer: ak8975: fix potential kernel stack memory leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72480 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: adc: xilinx-ams: fix out-of-bounds channel lookup in event handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72479 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: accel: mma8452: handle I2C read error(s) in mma8452_read() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72477 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: call _ntfs_bad_inode() when failing to rename — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72475 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: dma-axi-dmac: Properly free struct axi_dmac_desc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72474 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: dma-axi-dmac: use DMA pool to manange DMA descriptor — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72473 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xprtrdma: Decouple req recycling from RPC completion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72471 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: prevent potential lcn remains uninitialized — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72470 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: resize log->one_page_buf when adopting on-disk page size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72469 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xprtrdma: Fix ep kref imbalance on ADDR_CHANGE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72468 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xprtrdma: Initialize re_id before removal registration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72467 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xprtrdma: Check frwr_wp_create() during connect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72466 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xprtrdma: Fix bcall rep leak and unbounded peek — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72464 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xprtrdma: Repost Receive buffers for malformed replies — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72463 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: Fix dev use-after-free in xfrm async resumption — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72460 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: check label build before no_new_privs test — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72459 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: aa_label_alloc use aa_label_free on alloc failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72458 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: fix NULL pointer dereference in unpack_pdb — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72457 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: fail policy unpack on accept2 allocation failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72456 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: release exe file resources on path failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72455 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: fix uninitialised pointer passed to audit_log_untrustedstring() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72453 | linux-libc-dev | 7.0.0-30.30 |
| kernel: regcache: Do not overwrite error code when finalizing cache after error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72452 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915: clear CRTC color blob pointers after dropping refs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72424 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rtc: msc313: fix NULL deref in shared IRQ handler at probe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74261 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: avoid stale FIFO cells during resize — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74260 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_dup_netdev: add nf_dev_xmit_recursion*() helpers and use them — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74259 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cifs: remove all cifs files before kill super — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74258 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Guard __get_user acesss with access_ok for uprobe_multi data — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74257 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sockmap: Fix use-after-free in udp_bpf_recvmsg() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74256 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf, sockmap: fix integer overflow in bpf_msg_pop_data() bounds check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74255 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix UAF in tipc_l2_send_msg() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72502 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: ipv6: clamp default adverting MSS to avoid GSO_BY_FRAGS (0xFFFF) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72501 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: R ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72500 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/bnxt_re: Free SRQ toggle page after firmware teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72499 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/bnxt_re: Free CQ toggle page after firmware teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72498 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/bnxt_re: Avoid displaying the kernel pointer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72497 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/bnxt_re: Add a max slot check for SQ — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72496 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/bnxt_re: Proper rollback if the ioremap fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72495 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/bnxt_re: Avoid repeated requests to allocate WC pages — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72494 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/irdma: Replace waitqueue and flag with completion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72493 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: serialize netif_running() check in enqueue_to_backlog() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72492 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix use-after-free in same_client_has_lease() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72491 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/9p: fix race condition on rdma->state in trans_rdma.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72489 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: nvec: fix use-after-free in nvec_rx_completed() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72488 | linux-libc-dev | 7.0.0-30.30 |
| kernel: soundwire: fix bug in sdw_add_element_group_count found by syzkaller — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72487 | linux-libc-dev | 7.0.0-30.30 |
| kernel: PCI: Check ROM header and data structure addr before accessing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72486 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mailbox: mtk-adsp: fix UAF during device teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72485 | linux-libc-dev | 7.0.0-30.30 |
| kernel: coresight: platform: defer connection counter increment until alloc succeeds — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72484 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: most: video: avoid double free on video register failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72423 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Guard conntrack opts error writes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72422 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72421 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: fib: Don't ignore error route in local/main tables — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72420 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid5: avoid R5_Overlap races while breaking stripe batches — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72419 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72418 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_conncount: prevent connlimit drops for early confirmed ct — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72417 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72416 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_compat: ebtables emulation must reject non-bridge targets — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72415 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SDCA: Validate written enum value in ge_put_enum_double() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72414 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: dsa: sja1105: round up PTP perout pin duration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72413 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: fix err_chunk memory leaks in INIT handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72412 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/mm: Fix handling of _PAGE_UNUSED pte bit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72409 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mvneta: re-enable percpu interrupt on resume — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72408 | linux-libc-dev | 7.0.0-30.30 |
| kernel: geneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72407 | linux-libc-dev | 7.0.0-30.30 |
| kernel: geneve: validate inner network offset in geneve_gro_complete() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72406 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: sungem: fix probe error cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72405 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: udp_tunnel: prevent double queueing in udp_tunnel_nic_device_sync — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72404 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix UAF in cleanup_bearer() due to premature dst_cache_destroy() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72403 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: FCP: Fix NULL pointer dereference in interface lookup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72402 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Mask pseudo pointer values in verifier logs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72401 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix insn_aux_data leak on verifier err_free_env path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72400 | linux-libc-dev | 7.0.0-30.30 |
| kernel: seg6: validate SRH length before reading fixed fields — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72399 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: enetc: check the number of BDs needed for xdp_frame — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72398 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: add INIT verification after cookie unpacking — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72451 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: Fix xfrm state cache insertion race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72450 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: validate selector family and prefixlen during match — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72449 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: fix list_del corruption in kfd_criu_resume_svm — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72448 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-pf: Fix leak of SQ timestamp buffer on teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72447 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: hold socket lock when dumping endpoints in sctp_diag — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72446 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: qcom: reject stream disable with no active interface — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72445 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: qcom: clear opened when stream enable fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72444 | linux-libc-dev | 7.0.0-30.30 |
| kernel: flow_dissector: check device type before reading ETH_ADDRS — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72443 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: Kill MIDI 2.0 URBs before freeing endpoints — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72442 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: flowtable: fix and simplify IP6IP6 tunnel handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72441 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ieee802154: fix kernel-infoleak in dgram_recvmsg() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72440 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid1: fix writes_pending and barrier reference leaks on write failures — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72439 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid10: fix writes_pending leak on write request failures — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72438 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid10: fix writes_pending and barrier reference leaks on discard failures — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72437 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid1: free r1_bio when REQ_NOWAIT is set and read would block on retry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72436 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72435 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72434 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ipset: make sure gc is properly stopped — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72433 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_meta_bridge: fix NFT_META_BRI_IIFPVID stack leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72431 | linux-libc-dev | 7.0.0-30.30 |
| kernel: alloc_tag: fix use-after-free in /proc/allocinfo after module unload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72430 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: act_ct: fix nf_connlabels leak on two error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72429 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: ioam: fix type confusion of dst_entry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72428 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix stack slot index in nospec checks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72427 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix effective prog array index with BPF_F_PREORDER — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-72425 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ice: fix FDIR CTRL VSI resource leak in ice_reset_all_vfs() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74350 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: validate fast symlink target during inode read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74349 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: reject FITRIM ranges shorter than a cluster — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74348 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2/dlm: require a ref for locking_state debugfs open — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74347 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74346 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/irdma: Fix OOB read during CQ MR registration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74345 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/siw: Fix endpoint/socket association handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74344 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Clear rb node linkage when freeing bpf_rb_root — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74342 | linux-libc-dev | 7.0.0-30.30 |
| kernel: kernfs: link kn to its parent before the LSM init hook — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74340 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: wcn36xx: fix OOB read from firmware count in PRINT_REG_INFO indication — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74339 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: Clear variable event pointer on read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74338 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Reject sleepable BPF_LSM_CGROUP programs at load time — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74337 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix NMI/tracepoint re-entry deadlock on lru locks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74336 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: bound S1G TIM PVB walk to the TIM element — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74335 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix NULL pointer dereference in bpf_task_from_vpid() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74333 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: amd: acp-sdw-legacy: Bound DAI link iteration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74332 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: amd: acp-sdw-sof: Bound DAI link iteration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74331 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware_loader: Fix recursive lock in device_cache_fw_images() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74330 | linux-libc-dev | 7.0.0-30.30 |
| kernel: configfs: fix lockless traversals of ->s_children — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74329 | linux-libc-dev | 7.0.0-30.30 |
| kernel: watchdog: unregister PM notifier on watchdog unregister — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74328 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommufd: Destroy the pages content after detaching from dmabuf — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74327 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vmalloc: fix NULL pointer dereference in is_vm_area_hugepages() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74325 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: use kfree_rcu for offchannel link in mt76_put_vif_phy_link — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74324 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7925: validate skb length in testmode query — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74323 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7996: Fix possible token leak in mt7996_tx_prepare_skb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74290 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: cls_flow: Dont expose folded kernel pointers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74381 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpu: host1x: Allow entries in BO caches to be freed — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74380 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpu: host1x: Fix iommu_map_sgtable() return value check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74379 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dax/kmem: account for partial discontiguous resource upon removal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74377 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/rxe: Copy WQE to local buffer in non-SRQ receive path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74376 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid10: reset read_slot when reusing r10bio for discard — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74375 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid1,raid10: fix deadlock in read error recovery path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74374 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid1,raid10: fix error-path detection with md_cloned_bio() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74373 | linux-libc-dev | 7.0.0-30.30 |
| kernel: md/raid1,raid10: fix bio accounting for split md cloned bios — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74372 | linux-libc-dev | 7.0.0-30.30 |
| kernel: raid1: fix nr_pending leak in REQ_ATOMIC bad-block error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74370 | linux-libc-dev | 7.0.0-30.30 |
| kernel: liveupdate: fix TOCTOU race in luo_session_retrieve() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74368 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath12k: fix memory leak in ath12k_wifi7_dp_rx_h_verify_tkip_mic() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74367 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath12k: fix inconsistent arvif state in vdev_create error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74366 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath12k: fix NULL deref in change_sta_links for unready link — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74365 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvdimm/btt: Handle preemption in BTT lane acquisition — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74364 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Reject exclusive maps as inner maps in map-in-map — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74362 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ext2: fix ignored return value of generic_write_sync() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74360 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Reject exclusive maps for bpf_map_elem iterators — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74359 | linux-libc-dev | 7.0.0-30.30 |
| kernel: configfs_lookup(): don't leave ->s_dentry dangling on failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74358 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ext4: fix fast commit wait/wake bit mapping on 64-bit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74356 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vhost: fix vhost_get_avail_idx for a non empty ring — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74355 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/vt-d: Fix RB-tree corruption in probe error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74354 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Take mmap_lock in zap_pages() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74353 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: always resume_all after suspend_all — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74352 | linux-libc-dev | 7.0.0-30.30 |
| kernel: of: reserved_mem: avoid post-init UAF when alloc_reserved_mem_array() fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74351 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: rebase copied fsdlm LVB pointers in locking_state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74289 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: fib: Don't dump dying fib_info in fib_leaf_notify() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74288 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: fib_rules: Don't dump dying fib_rule in fib_rules_dump() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74287 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: validate embedded address parameter length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74286 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: pfcp: allocate per-cpu tstats for PFCP netdevs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74284 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: sch_hfsc: Don't make class passive twice — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74283 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: require net admin for TIPCv2 netlink mutators — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74282 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: prevent snt_unacked underflow on CONN_ACK — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74281 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: reject inverted service ranges from peer bindings — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74280 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: marvell/octeontx - fix DMA cleanup using wrong loop index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74279 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: cavium/cpt - fix DMA cleanup using wrong loop index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74278 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: Fix kernel heap address leak in bounce_error_event() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74277 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/dma-iommu: Fix wrong scatterlist length assignment in P2PDMA path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74276 | linux-libc-dev | 7.0.0-30.30 |
| kernel: spi: xilinx: use FIFO occupancy register to determine buffer size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74274 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cxl/region: Fill first free targets[] slot during auto-discovery — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74273 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cxl/region: Block region delete during region creation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74272 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cxl/region: Resolve region deletion races — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74271 | linux-libc-dev | 7.0.0-30.30 |
| kernel: power: supply: core: fix supplied_from allocations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74270 | linux-libc-dev | 7.0.0-30.30 |
| kernel: handshake: Require admin permission for DONE command — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74269 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bnxt: fix head underflow on XDP head-grow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74267 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: sch_codel: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74266 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: sch_dualpi2: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74265 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mana: initialize gdma queue id to INVALID_QUEUE_ID — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74264 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: watchdog: fix refcount tracking races — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74263 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: wwan: t7xx: check skb_clone in control TX — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74322 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7996: Fix possible NULL pointer dereference in mt7996_mac_write_txwi_80211() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74321 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: fix invalid pointer dereference in __btrfs_run_delayed_refs() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74320 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: sm501fb: Fix buffer errors in OF binding code — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74318 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: fix deadlock cloning inline extent when using flushoncommit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74316 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NFSD: Handle layout stid in nfsd4_drop_revoked_stid() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74314 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Cancel special fields on map value recycle — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74311 | linux-libc-dev | 7.0.0-30.30 |
| kernel: virtio: rtc: tear down old virtqueues before restore — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74310 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vhost/net: complete zerocopy ubufs only once — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74309 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74308 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ext4: fix kernel BUG in ext4_write_inline_data_end — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74307 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ext4: validate donor file superblock early in EXT4_IOC_MOVE_EXT — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74306 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vfio/qat: fix f_pos race in qat_vf_resume_write() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74305 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Tighten cgroup storage cookie checks for prog arrays — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74304 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_qca: fix NULL pointer dereference in qca_setup() for non-serdev device — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74303 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_qca: fix NULL pointer dereference in qca_dmp_hdr() for non-serdev device — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74302 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_core: Fix UAF in hci_unregister_dev() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74301 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btmtk: fix URB leak in alloc_mtk_intr_urb error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74300 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci: validate codec capability element length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74297 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/mlx5: Fix undefined shift of user RQ WQE size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74296 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/mlx5: Release the HW‑provided UAR index rather than the SW one — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74295 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: codecs: hdac_hdmi: Validate written enum value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74294 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: meson: aiu: Validate written enum values — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74293 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: fsl: fsl_audmix: Validate written enum values — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74292 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: tegra: tegra210_ahub: Validate written enum value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-74291 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: topology: Check PCM and DAI name strings before use — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64306 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: drbg - Fix returning success on failure in CTR_DRBG — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64305 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: qat - protect service table iterations with service_lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64304 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: qat - validate RSA CRT component lengths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64302 | linux-libc-dev | 7.0.0-30.30 |
| kernel: x86/mm: Fix freeing of PMD-sized vmemmap pages — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64301 | linux-libc-dev | 7.0.0-30.30 |
| kernel: regulator: scmi: fix of_node refcount leak in scmi_regulator_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64299 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Prevent out-of-bounds read in glob matching — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64298 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NFSv4: include MAY_WRITE in open permission mask for O_TRUNC — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64297 | linux-libc-dev | 7.0.0-30.30 |
| kernel: module: decompress: check return value of module_extend_max_pages() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64296 | linux-libc-dev | 7.0.0-30.30 |
| kernel: exfat: bound uniname advance in exfat_find_dir_entry() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64295 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64294 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm: do file ownership checks with the proper mount idmap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64293 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommufd: Use sizeof(*hdr) instead of sizeof(hdr) in veventq read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64292 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommufd: Move vevent memory allocation outside spinlock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64291 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommufd: Set veventq_depth upper bound — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64290 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommufd: Break the loop on failure in iommufd_fault_fops_read() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64289 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommufd: Set upper bounds on cache invalidation entry_num and entry_len — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64288 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Avoid dereferencing NULL VNCR pseudo-TLB — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64287 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64285 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: SEV: Pin source page for write when adding CPUID data for SNP guest — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64284 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86: Ensure vendor's exit handler runs before fastpath userspace exits — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64283 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: guest_memfd: Treat memslot binding offset+size as unsigned values — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64282 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: Don't leak PFN when kvm_translate_vncr() races MMU notifier — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64280 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64278 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: imx-lpi2c: mark I2C adapter when hardware is powered down — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64332 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: ulpi: fix memory leak on registration failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64331 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usbip: vudc: fix NULL deref in vep_dequeue() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64330 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: typec: tcpm: Validate SVID index in svdm_consume_modes() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64329 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: typec: ucsi: ccg: Fix use-after-free of ucsi on remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64328 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: f_fs: Fix DMA fence leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64327 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: f_fs: Initialize epfile->in early to fix endpoint direction checks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64326 | linux-libc-dev | 7.0.0-30.30 |
| kernel: block: skip sync_blockdev() on surprise removal in bdev_mark_dead() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64325 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7921/mt7925: fix NULL dereference in CSA beacon — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64324 | linux-libc-dev | 7.0.0-30.30 |
| kernel: udf: validate free block extents against the partition length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64323 | linux-libc-dev | 7.0.0-30.30 |
| kernel: udf: validate VAT header length against the VAT inode size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64322 | linux-libc-dev | 7.0.0-30.30 |
| kernel: udf: validate sparing table length as an entry count, not a byte count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64321 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvme: target: rdma: fix ndev refcount leak on queue connect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64320 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet: fix pre-auth out-of-bounds heap read in Discovery Get Log Page — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64319 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-auth: validate reply message payload bounds against transfer length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64318 | linux-libc-dev | 7.0.0-30.30 |
| kernel: partitions: aix: bound the pp_count scan to the ppe array — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64317 | linux-libc-dev | 7.0.0-30.30 |
| kernel: isofs: bound Rock Ridge symlink components to the SL record — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64316 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: caam - use print_hex_dump_devel to guard key hex dumps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64315 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: caam - use print_hex_dump_devel to guard key hex dumps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64314 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: chacha20poly1305 - validate poly1305 template argument — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64312 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: pcrypt - restore callback for non-parallel fallback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64310 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ccp - Do not initialize SNP for SEV ioctls — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64309 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ccp - Do not initialize SNP for ioctl(SNP_COMMIT) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64308 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ccp - Do not initialize SNP for ioctl(SNP_VLEK_LOAD) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64307 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ccp - Do not initialize SNP for ioctl(SNP_CONFIG) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64277 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64205 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: i801: fix hardware state machine corruption in error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64192 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64190 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: team: fix NULL pointer dereference in team_xmit during mode change — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64189 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ipset: fix race between dump and ip_set_list resize — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64187 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfs: fail recovery on a committed log item with no regions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63874 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mctp: usb: fix race between urb completion and rx_retry cancellation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63873 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Fix mm_struct reference leak in aie2_populate_range() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63871 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: Fix data-race on iso_pi fields in hci_get_route calls — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63870 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ieee802154: 6lowpan: only accept IPv6 packets in lowpan_xmit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63869 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: limit injected antenna index in ieee80211_parse_tx_radiotap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63868 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: garp: fix unsigned integer underflow in garp_pdu_parse_attr — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63867 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mptcp: close TOCTOU race while computing rcv_wnd — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63836 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: tp_meter: avoid divide-by-zero for dec_cwnd — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63835 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: v: prevent OGM aggregation on disabled hardif — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63834 | linux-libc-dev | 7.0.0-30.30 |
| kernel: batman-adv: tp_meter: restrict number of unacked list entries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63833 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs3: reject direct userspace writes to reserved $LX* xattrs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63832 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: add wcid publish check in mt76_sta_add — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63831 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mac802154: llsec: add skb_cow_data() before in-place crypto — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63829 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63828 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: mediate the implicit connect of TCP fast open sendmsg — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63826 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: fix use-after-free in store_modes() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63825 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gcov: use atomic counter updates to fix concurrent access crashes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63824 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KEYS: fix overflow in keyctl_pkey_params_get_2() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63822 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath11k: fix warning when unbinding — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64275 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: elan_i2c - prevent division by zero and arithmetic underflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64274 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: goodix - clamp the device-reported contact count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64273 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: iforce - bound the device-reported force-feedback effect index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64271 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: touchwin - reset the packet index on every complete packet — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64270 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: mms114 - reject an oversized device packet size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64268 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Kernel: Remote out-of-bounds write in RDMA/siw — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64267 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse: avoid 32-bit prune notification count wrap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64265 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64264 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: fix EFAULT clobber in fuse_uring_commit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64263 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: fix moving cancelled entry to ent_in_userspace list — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64262 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: end fuse_req on io-uring cancel task work — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64261 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64259 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: make a fuse_req on SQE commit only findable after memcpy — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64258 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: remove request-less entries from ent_w_req_queue to fix NULL deref — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64256 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfs: don't wrap around quota ids in dqiterate — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64255 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64254 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64253 | linux-libc-dev | 7.0.0-30.30 |
| kernel: kernel/fork: clear PF_BLOCK_TS in copy_process() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64251 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Use-after-free in pwrseq_debugfs_seq_next() can lead to denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64247 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM Hyper-V: Denial of Service due to out-of-bounds read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64246 | linux-libc-dev | 7.0.0-30.30 |
| kernel: power: reset: linkstation-poweroff: fix use-after-free in the linkstation_poweroff_init() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64244 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drivers/base/memory: set mem->altmap after successful device registration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64207 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: dualpi2: fix GSO backlog accounting — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64206 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64456 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwrng: virtio: clamp device-reported used.len at copy_data() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64420 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mfd: cros_ec: Delay dev_set_drvdata() until probe success — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64419 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/shrinker: do not hold RCU lock in shrinker_debugfs_count_show() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64418 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm: shrinker: fix shrinker_info teardown race with expansion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64417 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm: shrinker: fix NULL pointer dereference in debugfs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64416 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm: swap_cgroup: fix NULL deref in lookup_swap_cgroup_id on swapless host — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64415 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/swap: add cond_resched() in swap_reclaim_full_clusters to prevent softlockup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64414 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: handle unreadable frags — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64413 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ebtables: zero chainstack array — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64412 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ebtables: module names must be null-terminated — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64411 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: ebtables: terminate table name before find_table_lock() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64410 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: flowtable: IPIP tunnel hardware offload is not yet support — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64409 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64408 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: bnep: pin L2CAP connection during netdev registration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64407 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btnxpuart: Fix out-of-bounds firmware read in nxp_recv_fw_req_v3() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64406 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: fix UAF in bt_accept_dequeue() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64405 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64404 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: avoid NULL deref of conn in iso_conn_big_sync() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64403 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: validate option length before reading conf opt value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64402 | linux-libc-dev | 7.0.0-30.30 |
| kernel: coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64400 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: prevent path traversal bypass by restricting caseless retry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64399 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64398 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: add a permission check for FSCTL_SET_ZERO_DATA — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64397 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: serialize QUERY_DIRECTORY requests per file — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64395 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: require source read access for duplicate extents — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64455 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: chaoskey: Fix slab-use-after-free in chaoskey_release() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64454 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: dwc3: run gadget disconnect from sleepable suspend context — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64453 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: misc: usbio: fix disconnect UAF in client teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64452 | linux-libc-dev | 7.0.0-30.30 |
| kernel: 6lowpan: fix NHC entry use-after-free on error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64451 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Fix NULL pointer dereference in func_set_flag() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64450 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix out-of-bounds read in broadcast Gap ACK blocks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64447 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: media: ipu7: fix double-free and use-after-free in error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64446 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix heap buffer overflow in rtw_cfg80211_set_wpa_ie() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64445 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix WEP length underflow and OOB read in OnAuth() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64444 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB read in OnAssocRsp() IE loop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64443 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB read in update_beacon_info() IE loop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64439 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: krb5 - filter out async aead implementations at alloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64438 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: qat - fix VF2PF work teardown race in adf_disable_sriov() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64436 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: af_key: initialize alg_key_len for IPComp states — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64434 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: Fix UAF in channel timeout by holding conn ref — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64433 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: MGMT: Fix UAF of hci_conn_params in add_device_complete — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64430 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NTB: epf: Avoid calling pci_irq_vector() from hardirq context — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64429 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: eic-sprd: use raw_spinlock_t in the irq startup path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64428 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: sch: use raw_spinlock_t in the irq startup path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64426 | linux-libc-dev | 7.0.0-30.30 |
| kernel: io_uring/nop: fix file reference leak with IOSQE_FIXED_FILE — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64425 | linux-libc-dev | 7.0.0-30.30 |
| kernel: io_uring/io-wq: re-check IO_WQ_BIT_EXIT for each linked work item — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64424 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netpoll: fix a use-after-free on shutdown path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64422 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64421 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: nxp: imx8-isi: Fix use-after-free on remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64394 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64358 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: mtk-jpeg: cancel workqueue on release for supported platforms only — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64357 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfs: fix exchmaps reservation limit check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64356 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfs: fix memory leak in xfs_dqinode_metadir_create() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64354 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Validate BTF repeated field counts before expansion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64353 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Keep dynamic inner array lookups nullable — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64352 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Allow LPM map access from sleepable BPF programs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64351 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: usb: kalmia: bound RX frame length in kalmia_rx_fixup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64350 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: cdnsp: fix stream context array leak in cdnsp_alloc_stream_info() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64349 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: dwc3: fix dwc3_readl() and dwc3_writel() calls in dwc3_ulpi_setup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64348 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: free iso schedules on failed submit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64347 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: composite: fix dead empty check in the USB_DT_OTG handler — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64346 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: udc: Fix use-after-free in gadget_match_driver — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64345 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: f_printer: take kref only for successful open — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64344 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: idmouse: fix use-after-free on disconnect race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64343 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: ldusb: fix use-after-free on disconnect race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64342 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: iowarrior: fix use-after-free on disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64341 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: iowarrior: fix use-after-free on disconnect race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64340 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: legousbtower: fix use-after-free on disconnect race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64339 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: misc: usbio: bound bulk IN response length to the received transfer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64338 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: misc: uss720: unregister parport on probe failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64337 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: mtu3: unmap request DMA on queue failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64336 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: keyspan_pda: fix information leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64335 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: digi_acceleport: fix broken rx after throttle — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64334 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: digi_acceleport: fix hard lockup on disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64392 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: use opener credentials for delete-on-close — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64391 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: use opener credentials for ADS I/O — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64389 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: validate NTLMv2 response before updating session key — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64388 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb/client: fix chown/chgrp with SMB3 POSIX Extensions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64384 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix change notify replay double-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64382 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix double-free in SMB2_open() replay — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64381 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: Fix next buffer leak in receive_encrypted_standard() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64379 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: mask server-provided mode to 07777 in modefromsid — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64377 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cpufreq: qcom-cpufreq-hw: Fix possible double free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64376 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware_loader: fix device reference leak in firmware_upload_register() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64374 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sched/rt: Have RT_PUSH_IPI be default off for non PREEMPT_RT — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64373 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cpufreq: Fix hotplug-suspend race during reboot — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64372 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cpufreq: pcc: fix use-after-free and double free in _OSC evaluation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64371 | linux-libc-dev | 7.0.0-30.30 |
| kernel: proc: protect ptrace_may_access() with exec_update_lock (part 1) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64370 | linux-libc-dev | 7.0.0-30.30 |
| kernel: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64369 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390: Revert support for DCACHE_WORD_ACCESS — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64368 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/slab: do not limit zeroing to orig_size when only red zoning is enabled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64366 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: wacom: fix slab-out-of-bounds write in wacom_wac_queue_insert — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64365 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: letsketch: fix UAF on inrange_timer at driver unbind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64364 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: multitouch: fix out-of-bounds bit access on mt_io_flags — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64363 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: appleir: fix UAF on pending key_up_timer in remove() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64362 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: lg-g15: cancel pending work on remove to fix a use-after-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64360 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hfs/hfsplus: zero-initialize buffer in hfs_bnode_read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64359 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nilfs2: reject CLEAN_SEGMENTS ioctl with out-of-range segment numbers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53201 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Information disclosure or denial of service in drm/xe due to improper TLB invalidation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53138 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Bound VBIOS record-chain walk loops — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53137 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Clamp HDMI HDCP2 rx_id_list read to buffer size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53136 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53134 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_fib: fix stale stack leak via the OIFNAME register — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53133 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/umem: Fix truncation for block sizes >= 4G — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53132 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vsock/virtio: fix potential unbounded skb queue — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52948 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52947 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52942 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_log: validate MAC header was set before dumping it — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52940 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tun: zero the whole vnet header in tun_put_user() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52939 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52938 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52935 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: espintcp: do not reuse an in-progress partial send — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52930 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipc/shm: serialize orphan cleanup with shm_nattch updates — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52929 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: stream: fully roll back denied add-stream state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-52917 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: diag: reject stale associations in dump_one path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-46055 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: Fix string overrun due to missing termination — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2025-21988 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/netfs/read_collect: add to next->prev_donated — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2024-35995 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ACPI: CPPC: Use access_width over bit_width for system memory accesses — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2024-35895 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf, sockmap: Prevent lock inversion deadlock in map delete elem — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-54190 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Kernel: Denial of Service via reference count leak in LED core — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-54187 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel (F2FS): Data corruption and denial of service when moving a directory — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-54105 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: isotp: check CAN address family in isotp_bind() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-53642 | linux-libc-dev | 7.0.0-30.30 |
| kernel: x86: fix clear_user_rep_good() exception handling annotation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53199 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hv_netvsc: use kmap_local_page in netvsc_copy_to_send_buf — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53197 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: iptfs: fix ABBA deadlock in iptfs_destroy_state() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53194 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: kl5kusb105: fix bulk-out buffer overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53191 | linux-libc-dev | 7.0.0-30.30 |
| kernel: io_uring/net: inherit IORING_CQE_F_BUF_MORE across bundle recv retries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53190 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/virtio: fix dma_fence refcount leak on error in virtio_gpu_dma_fence_wait() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53187 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/core: Validate cpu_id against nr_cpu_ids in DMAH alloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53184 | linux-libc-dev | 7.0.0-30.30 |
| kernel: udp: clear skb->dev before running a sockmap verdict — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53181 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vsock/vmci: fix sk_ack_backlog leak on failed handshake — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53180 | linux-libc-dev | 7.0.0-30.30 |
| kernel: timers/migration: Fix livelock in tmigr_handle_remote_up() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53179 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix buffer over-read in rtw_update_protection — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53169 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ethosu: reject NPU_OP_RESIZE commands from userspace — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53168 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse: reject fuse_notify() pagecache ops on directories — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53167 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53165 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iomap: avoid potential null folio->mapping deref during error reporting — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53164 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/dma: Do not try to iommu_map a 0 length region in swiotlb — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53163 | linux-libc-dev | 7.0.0-30.30 |
| kernel: locking/rtmutex: Skip remove_waiter() when waiter is not enqueued — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53155 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/huge_memory: use correct flags for device private PMD entry — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53150 | linux-libc-dev | 7.0.0-30.30 |
| kernel: thunderbolt: Reject zero-length property entries in validator — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53149 | linux-libc-dev | 7.0.0-30.30 |
| kernel: thunderbolt: Bound root directory content to block size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53144 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: fix NULL dereference in get_queue_ids() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53143 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53141 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/v3d: Fix global performance monitor reference counting — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53140 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/v3d: Fix vaddr leak when indirect CSD has zeroed workgroups — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53139 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/v3d: Skip CSD when it has zeroed workgroups — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-52879 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Have trace_event_file have ref counters — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2019-15794 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Overlayfs in the Linux kernel and shiftfs not restoring original value on error leading to a refcount underflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2018-17977 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Mishandled interactions among XFRM Netlink messages, IPPROTO_AH packets, and IPPROTO_IP packets resulting in a denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2016-8660 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfs: local DoS due to a page lock order bug in the XFS seek hole/data implementation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2015-8553 | linux-libc-dev | 7.0.0-30.30 |
| xen: non-maskable interrupts triggerable by guests (xsa120) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2015-7837 | linux-libc-dev | 7.0.0-30.30 |
| kernel: securelevel disabled after kexec — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2013-7445 | linux-libc-dev | 7.0.0-30.30 |
| kernel: memory exhaustion via crafted Graphics Execution Manager (GEM) objects — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | libuuid1 | 2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | libuuid1 | 2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | libsmartcols1 | 2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | libsmartcols1 | 2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2025-10990 | libruby3.3 | 3.3.8-2ubuntu3.1 |
| rexml: REXML: Denial of Service via inefficient regex parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-13757 | libp11-kit0 | 0.26.2-2 |
| p11-kit: Stack exhaustion via unbounded recursion in RPC attribute parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | libmount1 | 2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | libmount1 | 2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2025-66382 | libexpat1 | 2.7.4-1 |
| libexpat: libexpat: Denial of service via crafted file processing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | libblkid1 | 2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | libblkid1 | 2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-54371 | libattr1 | 1:2.5.2-4 |
| attr: attr: Symlink Traversal Privilege Escalation via getfattr and setfattr — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-56391 | gnu-coreutils | 9.7-3ubuntu2 |
| coreutils: GNU coreutils uniq: Denial of Service and information disclosure via out-of-bounds read with multibyte input — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2024-52005 | git-man | 1:2.53.0-1ubuntu1 |
| git: The sideband payload is passed unfiltered to the terminal in git — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2024-52005 | git | 1:2.53.0-1ubuntu1 |
| git: The sideband payload is passed unfiltered to the terminal in git — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53910 | diffutils | 1:3.12-1 |
| diffutils: heap‑based buffer overflow due to multiple signed integer overflows in line‑mapping calculations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-3184 | bsdutils | 1:2.41.3-3ubuntu2 |
| util-linux: util-linux: Access control bypass due to improper hostname canonicalization — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-27456 | bsdutils | 1:2.41.3-3ubuntu2 |
| util-linux: TOCTOU in the mount program when setting up loop devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-31082 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sleeping function called from an invalid context in gsmld_write — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-26242 | linux-libc-dev | 7.0.0-30.30 |
| afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-1193 | linux-libc-dev | 7.0.0-30.30 |
| kernel: use-after-free in setup_async_work() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-0160 | linux-libc-dev | 7.0.0-30.30 |
| kernel: possibility of deadlock in libbpf function sock_hash_delete_elem — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2023-0030 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Use after Free in nvkm_vmm_pfn_map — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50551 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: brcmfmac: Fix potential shift-out-of-bounds in brcmf_fw_alloc_request() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50380 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm: /proc/pid/smaps_rollup: fix no vma's null-deref — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50332 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Denial of Service due to improper PCI device handling in aperture driver — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50240 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binder: fix UAF of alloc->vma in race with munmap() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50232 | linux-libc-dev | 7.0.0-30.30 |
| kernel: arm64: set UXN on swapper page tables — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50230 | linux-libc-dev | 7.0.0-30.30 |
| kernel: arm64: set UXN on swapper page tables — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-50090 | linux-libc-dev | 7.0.0-30.30 |
| kernel: btrfs: replace BTRFS_MAX_EXTENT_SIZE with fs_info->max_extent_size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-49940 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tty: n_gsm: add sanity check for gsm->receive in gsm_receive_buf() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-48929 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Fix crash due to out of bounds access into reg2btf_ids. — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-48846 | linux-libc-dev | 7.0.0-30.30 |
| kernel: block: release rq qos structures for queue without disk — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-4543 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KASLR Prefetch Bypass Breaks KPTI — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-3238 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ntfs3 local privledge escalation if NTFS character set and remount and umount called simultaneously — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-2961 | linux-libc-dev | 7.0.0-30.30 |
| kernel: race condition in rose_bind() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-25836 | linux-libc-dev | 7.0.0-30.30 |
| Bluetooth® Low Energy Pairing in Bluetooth Core Specification v4. ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-1247 | linux-libc-dev | 7.0.0-30.30 |
| kernel: A race condition bug in rose_connect() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-0480 | linux-libc-dev | 7.0.0-30.30 |
| kernel: memcg does not limit the number of POSIX file locks allowing memory exhaustion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2022-0400 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Out of bounds read in the smc protocol stack — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2021-3864 | linux-libc-dev | 7.0.0-30.30 |
| kernel: descendant's dumpable setting with certain SUID binaries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2021-3714 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Remote Page Deduplication Attacks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63821 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rtw88: usb: fix memory leaks on USB write failures — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53402 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53401 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: omap2: fix use-after-free in omapfb_mmap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53397 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfsd: fix posix_acl leak on SETACL decode failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53396 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfsd: fix posix_acl leak and ignored error in nfsd4_create_file — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53395 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfsd: fix dead ACL conflict guard in nfsd4_create — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53394 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfsd: avoid leaking pre-allocated openowner on unconfirmed retry race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53393 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfsd: reset write verifier on deferred writeback errors — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53392 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NFSv4/flexfiles: reject zero filehandle version count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53391 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53390 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix out-of-bounds read in smb_check_perm_dacl() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53389 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/tcp-ao: fix use-after-free of key in del_async path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53387 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: light: veml6075: add bounds check to veml6075_it_ms index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53385 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vc_screen: fix null-ptr-deref in vcs_notifier() during concurrent vcs_write — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53383 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: reject non-VALID session in compound request branch — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53382 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: vidtv: fix NULL pointer dereference in vidtv_mux_push_si — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53381 | linux-libc-dev | 7.0.0-30.30 |
| kernel: virtiofs: fix UAF on submount umount — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53366 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: account for fraggap on the paged allocation path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53363 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: iptfs: preserve shared-frag marker in iptfs_consume_frags() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53361 | linux-libc-dev | 7.0.0-30.30 |
| kernel: af_unix: Set gc_in_progress to true in unix_gc() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53355 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: rds: clear i_sends on setup unwind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53354 | linux-libc-dev | 7.0.0-30.30 |
| kernel: arm64: errata: Mitigate TLBI errata on various Arm CPUs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53353 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hsr: Remove WARN_ONCE() in hsr_addr_is_self() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53352 | linux-libc-dev | 7.0.0-30.30 |
| kernel: signal: clear JOBCTL_PENDING_MASK for caller in zap_other_threads() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53351 | linux-libc-dev | 7.0.0-30.30 |
| kernel: riscv/ptrace: Use USER_REGSET_NOTE_TYPE for REGSET_CFI — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63820 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: fix missing read bio submission on large folio error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63819 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: fix to do sanity check on f2fs_get_node_folio_ra() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63818 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: validate orphan inode entry count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63817 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: validate compress cache inode only when enabled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63816 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: atomic: fix UAF issue on f2fs_inode_info.atomic_inode — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63814 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: validate ACL entry sizes in f2fs_acl_from_disk() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63813 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Revert "f2fs: remove non-uptodate folio from the page cache in move_data_block" — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63812 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: fix incorrect FI_NO_EXTENT handling in __destroy_extent_node() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63811 | linux-libc-dev | 7.0.0-30.30 |
| kernel: f2fs: read COW data with the original inode during atomic write — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63810 | linux-libc-dev | 7.0.0-30.30 |
| kernel: block: Avoid mounting the bdev pseudo-filesystem in userspace — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63808 | linux-libc-dev | 7.0.0-30.30 |
| kernel: exfat: fix potential use-after-free in exfat_find_dir_entry() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63807 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63806 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63805 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: nx - fix nx_crypto_ctx_exit argument — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63804 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gfs2: fix use-after-free in gfs2_qd_dealloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63803 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hdlc_ppp: sync per-proto timers before freeing hdlc state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63802 | linux-libc-dev | 7.0.0-30.30 |
| kernel: blk-cgroup: fix UAF in __blkcg_rstat_flush() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63799 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sched/mmcid: Fix OOB clear_bit when CID is MM_CID_UNSET in fixup path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63798 | linux-libc-dev | 7.0.0-30.30 |
| kernel: irqchip/imgpdc: Fix resource leak, add missing chained handler cleanup on remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63797 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rpmsg: char: Fix use-after-free on probe error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63796 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ocfs2: reject oversized group bitmap descriptors — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63795 | linux-libc-dev | 7.0.0-30.30 |
| kernel: 9p: avoid putting oldfid in p9_client_walk() error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-63794 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53403 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: Fix fb_new_modelist to prevent null-ptr-deref in fb_videomode_to_var — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53350 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: wm_adsp: Fix NULL dereference when removing firmware controls — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53325 | linux-libc-dev | 7.0.0-30.30 |
| kernel: agp/amd64: Fix broken error propagation in agp_amd64_probe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53274 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53271 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix NULL-deref of opinfo->conn in oplock/lease break notifiers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53268 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: conntrack_irc: fix possible out-of-bounds read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53267 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_ct: bail out on template ct in get eval — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53263 | linux-libc-dev | 7.0.0-30.30 |
| kernel: 6lowpan: fix off-by-one in multicast context address compression — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53257 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: cfg80211: enforce HE/EHT cap/oper consistency — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53252 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: fix memory leak in error path of hci_alloc_dev() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53251 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: ISO: Fix not releasing hdev reference on iso_conn_big_sync — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53245 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53244 | linux-libc-dev | 7.0.0-30.30 |
| kernel: VFS: fix possible failure to unlock in nfsd4_create_file() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53243 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rseq: Fix using an uninitialized stack variable in rseq_exit_user_update() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53242 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53241 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: dummy: fix UMP event stack overread — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53231 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: phy: don't try to setup PHY-driven SFP cages when using genphy — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53227 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: openvswitch: fix possible kfree_skb of ERR_PTR — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53223 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: guard timestamp cmsgs to real error queue skbs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53220 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: revalidate bridge ports — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53219 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: x_tables: avoid leaking percpu counter pointers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53218 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_exthdr: fix register tracking for F_PRESENT flag — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53214 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: Fix a potential NPD in cleanup_prefix_route() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53211 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nft_meta_bridge: fix stale stack leak via IIFHWADDR register — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53210 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tee: shm: fix shm leak in register_shm_helper() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53208 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: L2CAP: reject BR/EDR signaling packets over MTUsig — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53349 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netfilter: nf_conntrack: destroy stale expectfn expectations on unregister — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53348 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SDCA: fix NULL pointer dereference in sdca_dev_unregister_functions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53347 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/virtio: Fix driver removal with disabled KMS — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53346 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rust: arm64: set uwtable llvm module flag for CONFIG_UNWIND_TABLES — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53345 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: Don't WARN if memory is dirtied without a vCPU when the VM is dying — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53344 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pinctrl: mcp23s08: Initialize mcp->dev and mcp->addr before regmap init — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53343 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ARM: 9475/1: entry: use byte load for KASAN VMAP stack shadow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53342 | linux-libc-dev | 7.0.0-30.30 |
| kernel: arm64: mm: call pagetable dtor when freeing hot-removed page tables — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53341 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fhandle: fix UAF due to unlocked ->mnt_ns read in may_decode_fh() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53340 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: imx: fix clock and pinctrl state inconsistency in runtime PM — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53339 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: qcom-cci: Fix NULL pointer dereference in cci_remove() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53338 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: airoha: Add NULL check for of_reserved_mem_lookup() in airoha_qdma_init_hfwd_queues() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53337 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: bonding: fix NULL pointer dereference in bond_do_ioctl() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53336 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmem: layouts: onie-tlv: fix hang on unknown types — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53335 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/lru_sort: handle ctx allocation failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53334 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/reclaim: handle ctx allocation failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53333 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/mincore: handle non-swap entries before !CONFIG_SWAP guard — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53332 | linux-libc-dev | 7.0.0-30.30 |
| kernel: slimbus: qcom-ngd-ctrl: Register callbacks after creating the ngd — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53331 | linux-libc-dev | 7.0.0-30.30 |
| kernel: slimbus: qcom-ngd-ctrl: Avoid ABBA on tx_lock/ctrl->lock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53330 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Fix out-of-bounds read in dp_get_eq_aux_rd_interval() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53329 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Use krealloc_array() in dal_vector_reserve() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53328 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sched_ext: Don't warn on NULL cgrp_moving_from in scx_cgroup_move_task() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53327 | linux-libc-dev | 7.0.0-30.30 |
| kernel: debugobjects: Do not fill_pool() if pi_blocked_on — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-53326 | linux-libc-dev | 7.0.0-30.30 |
| kernel: debugobjects: Don't call fill_pool() in early boot hardirq context — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68292 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ice: prevent tstamp ring allocation for non-PF VSI types — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68265 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/vm: Fix BO prefetch with CONSULT_MEM_ADVISE_PREF_LOC — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68264 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/pt: Reset current_op in xe_pt_update_ops_init() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68263 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: drm/imagination use-after-free vulnerability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68262 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/imagination: Fix user array stride in pvr_set_uobj_array() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68261 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/imagination: fix error checking of pvr_vm_context_lookup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68260 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/imagination: acquire vm_ctx->lock before mapping memory to GPU VM — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68259 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: Check bounds in allocate_event_notification_slot — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68258 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdkfd: Check bounds on CRIU restore queue type and mqd size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68256 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68255 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/virtio: bound EDID block reads to the response buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68254 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/vrr: require valid min/max vfreq for VRR — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68253 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/hdcp: check streams[] bounds before overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68252 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68251 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68250 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/sdma5.2: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68249 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68248 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915: Return NULL on error in active_instance — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68247 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/bios: range check LFP Data Block panel_type2 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68246 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx11: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68245 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68244 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/gem: Do not leak siblings[] on proto context error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68243 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/gem: Fix NULL deref in I915_CONTEXT_PARAM_SSEU — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68242 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/gt: Fix NULL deref on sched_engine alloc failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68241 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/mst: limit DP MST ESI service loop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68291 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: idpf driver null pointer dereference leads to Denial of Service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68290 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Kernel: Use-after-free vulnerability in RDS TCP can lead to system instability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68289 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68288 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68287 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drop_monitor: fix size calculations for 64-bit attributes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68286 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drop_monitor: perform u64_stats updates under IRQ-disabled section — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68283 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Fix use-after-free freeing trigger private data — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68282 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/rockchip: analogix_dp: Add missing error check for platform_get_resource() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68281 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/imagination: Count paired job fence as dependency in prepare_job() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68280 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/bridge: cdns-dsi: Replace deprecated UNIVERSAL_DEV_PM_OPS() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68279 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68278 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/dp/mst: fix buffer overflows in sideband chunk accumulation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68277 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/dp/mst: fix OOB reads on 2-byte fields in sideband reply parsers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68276 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx: fix cleaner shader IB buffer overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68275 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: check amdgpu_vm_bo_find() result in GET_MAPPING_INFO — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68274 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/guc: Fix buffer overflow in steered register list allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68273 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: Fix context pstate override handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68272 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: validate CP_GFX_SHADOW chunk size in CS pass1 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68271 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/nouveau: fix reversed error cleanup order in ucopy functions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68270 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/sysfb: Avoid possible truncation with calculating visible size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68269 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/i915/gem: Add missing nospec on parallel submit slot — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68268 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe: Return error on non-migratable faults requiring devmem — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68267 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/rtp: Add RING_FORCE_TO_NONPRIV_DENY to OA whitelists — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68266 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe: Hold a dma-buf reference for imported BOs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68239 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/ttm: Account for NULL and handle pages in ttm_pool_backup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68213 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: rtl2832_sdr: Return queued buffers on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68212 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: saa7134: Fix a possible memory leak in saa7134_video_init1 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68211 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: stm32-dcmipp: Return queued buffers on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68210 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: stm32: dcmi: unregister notifier on probe failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68209 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: sun4i-csi: Return queued buffers on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68208 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: ti: vpe: Fix the error code of devm_kzalloc() in vip_probe_slice() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68207 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: ti: vpe: unwind v4l2 device registration on probe error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68206 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: v4l2-ctrls: validate HEVC active reference counts — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68205 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: v4l2-fwnode: Fix subdev owner overwritten in v4l2_async_register_subdev_sensor() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68203 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: vivid: fix cleanup bugs in vivid_init() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68202 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: close a re-opened queue timer in the destructor — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68200 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: ALSA timer use-after-free vulnerability allows privilege escalation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68197 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68195 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68194 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7921: drop TXRX_NOTIFY on non-mmio buses — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68193 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68192 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: w ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68191 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath12k: fix NULL pointer dereference in rhash table destroy — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68190 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB reads in rtw_get_wps_ie() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68188 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel Bluetooth RFCOMM: Denial of Service via use-after-free in set_termios — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68187 | linux-libc-dev | 7.0.0-30.30 |
| kernel: exec: fix unsigned loop counter wrap in transfer_args_to_stack() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68186 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_misc: set have_execfd only once the interpreter is opened — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68184 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cdrom: fix stack out-of-bounds read in CDROMVOLCTRL — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68183 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware: stratix10-svc: fix memory leaks and list corruption bugs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68238 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: Release VFCT ACPI table reference — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68237 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/userq: fix indefinite fence wait during GPU reset — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68235 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: dce100: skip non-DP stream encoders for DP MST — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68234 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68233 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vc4: Shut down BO cache timer before teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68232 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/gpusvm: Fix MM reference leak in drm_gpusvm_range_evict — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68231 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: airspy: Return queued buffers on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68230 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: amlogic-c3: Add validations for ae and awb config — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68229 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: cedrus: skip invalid H.264 reference list entries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68228 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: chips-media: wave5: Move src_buf Removal to finish_encode — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68227 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: cx231xx: fix devres lifetime — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68226 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: cx23885: add ioremap return check and cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68225 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: i2c: alvium: fix critical pointer access in alvium_ctrl_init — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68224 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: mali-c55: Fix possible ERR_PTR in enable_streams — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68223 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: meson: vdec: Fix memory leak in error path of vdec_open — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68222 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: msi2500: Return queued buffers on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68221 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: nuvoton: npcm-video: fix memory leaks in probe and remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68220 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: nxp: imx8-isi: Add missing v4l2_subdev_cleanup() in crossbar and pipe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68219 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: nxp: imx8-isi: Fix potential out-of-bounds issues — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68218 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: pci: dm1105: Free allocated workqueue — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68217 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: pwc: Drain fill_buf on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68216 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: pwc: Return queued buffers on start_streaming() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68215 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: radio-si476x: Unregister v4l2_device on probe failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68214 | linux-libc-dev | 7.0.0-30.30 |
| kernel: media: rtl2832: fix use-after-free in rtl2832_remove() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68402 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Wi-Fi subsystem out-of-bounds read via crafted frames — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68374 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: core: sysfs: add lock to bos_descriptors_read() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68373 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Out-of-bounds read in wifi driver due to length underflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68372 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: core: port: Deattach Type-C connector on component unbind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68371 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: musb: omap2430: Do not put borrowed of_node in probe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68369 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: printer: fix infinite loop in printer_read() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68368 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: f_ncm: validate datagram bounds in ncm_unwrap_ntb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68367 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: f_tcm: synchronize delayed set_alt with teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68366 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: uvc: clamp SEND_RESPONSE length to the response buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68365 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: io_edgeport: cap received transmit credits — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68364 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Fix ISM dc_lock deadlock during suspend — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68363 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: ath9k Wi-Fi driver use-after-free vulnerability leading to system crash — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68362 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68361 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (corsair-psu) Stop device IO before calling hid_hw_stop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68360 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (corsair-cpro) Stop device IO before calling hid_hw_stop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68359 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (nzxt-smart2) Stop device IO before calling hid_hw_stop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68358 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: (nzxt-kraken3) Stop device IO before calling hid_hw_stop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68357 | linux-libc-dev | 7.0.0-30.30 |
| kernel: watchdog: pretimeout: Fix UAF in watchdog_unregister_governor() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68356 | linux-libc-dev | 7.0.0-30.30 |
| kernel: watchdog: airoha: Prevent division by zero when clock frequency is zero — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68355 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68354 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firewire: net: Fix fragmented datagram reassembly — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68352 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath6kl: fix OOB read from firmware IE lengths in connect event — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68351 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68350 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel carl9170 Wi-Fi driver: Out-of-bounds read vulnerability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68349 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: carl9170: fix buffer overflow in rx_stream failover path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68401 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware: arm_ffa: Fix out-of-bound writes in ffa_setup_and_transmit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68400 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68398 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: PPP over L2TP Use-After-Free vulnerability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68397 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/iucv: take a reference on the socket found in afiucv_hs_rcv() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68396 | linux-libc-dev | 7.0.0-30.30 |
| kernel: scsi: core: wake eh reliably when using scsi_schedule_eh — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68395 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ata: sata_dwc_460ex: enable SATA interrupts only after IRQ handler is registered — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68394 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68392 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68391 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68390 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: hold hdev->lock for hci_conn_params lookups — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68389 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_qca: Clear memdump state on invalid dump size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68388 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb/client: handle overlapping allocated ranges in fallocate — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68387 | linux-libc-dev | 7.0.0-30.30 |
| kernel: can: raw: add locking for raw flags bitfield — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68386 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf, sockmap: Reject unhashed UDP sockets on sockmap update — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68385 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/checksum: Fix csum_partial() without vector facility — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68384 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/vf: Fix VF CCS attach/detach race with in-flight BO moves — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68383 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/guc: Keep scheduler timeline name alive — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68382 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/guc: Hold device ref until queue teardown completes — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68381 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: Use-after-free vulnerability due to race condition in connection handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68379 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: fix TIME_WAIT socket reference leak on PSP policy failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68378 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dpll: fix NULL pointer dereference in dpll_msg_add_pin_ref_sync() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68377 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Denial of Service due to use-after-free in act_tunnel_key — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68376 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: fix auth_hmacs array size in struct sctp_cookie — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68375 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bnxt_en: Handle partially initialized auxiliary devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68348 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: tas2781: bound firmware description string parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68319 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pds_core: fix deadlock between reset thread and remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68318 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pds_core: fix use-after-free on workqueue during remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68317 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pds_core: fix auxiliary device add/del races — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68316 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel: ethosu: Fix element size accounting for cmd stream validation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68315 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: validate stream count in sctp_process_strreset_inreq() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68313 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix infinite loop in __tipc_nl_compat_dumpit — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68312 | linux-libc-dev | 7.0.0-30.30 |
| kernel: cifs: fix cifsFileInfo leak on kmalloc failure in deferred close drain paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68311 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7925: guard link STA in decap offload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68310 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7915: guard HE capability lookups — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68309 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bss_he_tlv() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68308 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7996: check pointer returned by mt76_connac_get_he_phy_cap() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68307 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7925: fix crash in reset link replay — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68306 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68304 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: brcmfmac: fix 802.1X-SHA256 call trace warning — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68303 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vc4: hvs/v3d: Fix null dereference in unbind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68302 | linux-libc-dev | 7.0.0-30.30 |
| kernel: amt: re-read skb header pointers after every pull — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68301 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: hsr: fix memory leak on slave unregistration by removing synced VLANs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68300 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: auth: verify auth requirement when auth_chunk is NULL — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68299 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68298 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/vm: Fix SVM leak on resv obj alloc failure in xe_vm_create() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68297 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: fix u16 MTU truncation in media and bearer MTU validation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68296 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: gre: fix lltx regression for GRE tunnels with SEQ/CSUM — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68294 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: qrtr: restrict socket creation to the initial network namespace — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68293 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5: Fix MCIA register buffer overflow on 32 dword reads — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68347 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/amd: Fix IRQ unsafe locking in gdom allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68346 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: hda: cs35l41: validate and free ACPI mute object — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68345 | linux-libc-dev | 7.0.0-30.30 |
| kernel: arm_mpam: guard MBWU state before adding it to garbage — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68343 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: validate DFS referral PathConsumed — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68342 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ovpn: avoid putting unrelated P2P peer on socket release — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68341 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ovpn: fix use after free in unlock_ovpn() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68340 | linux-libc-dev | 7.0.0-30.30 |
| kernel: hwmon: occ: validate poll response sensor blocks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68339 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btusb: validate Realtek vendor event length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68338 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/packet: avoid fanout hook re-registration after unregister — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68337 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Denial of Service in BPF redirect helpers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68336 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bonding: fix devconf_all NULL dereference when IPv6 is disabled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68335 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rds: drop incoming messages that cross network namespace boundaries — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68334 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: `rxrpc` race condition causes Denial of Service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68333 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dpaa2-switch: put MAC endpoint device on disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68332 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: airoha: Fix potential use-after-free in airoha_ppe_deinit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68331 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dpaa2-eth: put MAC endpoint device on disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68328 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nfp: Check resource mutex allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68327 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wan: wanxl: Only reset hardware after BAR mapping — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68326 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mwifiex: bound uAP association event IEs to the event buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68325 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/amd: Bound the early ACPI HID map — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68324 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iommu/intel: Fix out-of-bounds memset in dmar_latency_disable() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68322 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rds: Fix inet6_addr_lst NULL dereference when IPv6 is disabled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68321 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: txgbe: fix FDIR filter leak on remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68320 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64586 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: w ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64553 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: psample: fix info leak in PSAMPLE_ATTR_DATA — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64552 | linux-libc-dev | 7.0.0-30.30 |
| kernel: virtio-net: fix len check in receive_big() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64551 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: validate STALE_COOKIE cause length before reading staleness — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64550 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: qualcomm: rmnet: validate MAP frame length before ingress parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64549 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64547 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: usb: net1080: validate packet_len before pad-byte access in rx_fixup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64546 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/edid: fix OOB read in drm_parse_tiled_block() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64545 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net, bpf: check master for NULL in xdp_master_redirect() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64544 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64542 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: ndisc: fix NULL deref in accept_untracked_na() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64541 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64540 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64539 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64538 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64537 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bridge: cfm: reject invalid CCM interval at configuration time — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64536 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: rtl8723bs: fix OOB reads in is_ap_in_tkip() IE loop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64534 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64533 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: validate lcns_follow in log_replay conversion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64532 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/ntfs3: bound NTFS_DE view.data_off in UpdateRecordData{Root,Allocation} — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64530 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: sched: UAF via missing handler for TC_ACT_CONSUMED in tcf_qevent_handle — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64529 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: qat - remove unused character device and IOCTLs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64514 | linux-libc-dev | 7.0.0-30.30 |
| kernel: userfaultfd: gate must_wait writability check on pte_present() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64513 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86: Unconditionally recompute CR8 intercept on PPR update — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64512 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ACPI: CPPC: Suppress UBSAN warning caused by field misuse — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64585 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: c ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64584 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: u ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64582 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/rxe: Fix a use-after-free problem in rxe_mmap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64581 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: x ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64580 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: x ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64579 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64578 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: validate compound request size before reading StructureSize2 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64577 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gtp: check skb_pull_data() return in gtp1u_send_echo_resp() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64576 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nexthop: initialize extack in nh_res_bucket_migrate() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64575 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: tcp: fix double sock release on batch realloc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64573 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: qca: fix NVM tag length underflow in TLV parser — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64572 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: fib: free fib_alias with kfree_rcu() on insert error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64571 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: p54: validate RX frame length in p54_rx_eeprom_readback() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64570 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: fix fils_discovery double free on alloc failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64569 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64568 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: w ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64566 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in iptfs_skb_add_frags() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64565 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64563 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rhashtable: clear stale iter->p on table restart — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64561 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64560 | linux-libc-dev | 7.0.0-30.30 |
| kernel: posix-cpu-timers: Prevent UAF caused by non-leader exec() race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64559 | linux-libc-dev | 7.0.0-30.30 |
| kernel: s390/pkey: Check length in PKEY_VERIFYPROTK ioctl — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64556 | linux-libc-dev | 7.0.0-30.30 |
| kernel: perf/core: Detach event groups during remove_on_exec — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64555 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64511 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ACPI: NFIT: core: Fix possible NULL pointer dereference — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64458 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/ops-common: handle extreme intervals in damon_hot_score() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64459 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: restore RCU grace period in tcp_ao_destroy_sock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64460 | linux-libc-dev | 7.0.0-30.30 |
| kernel: PCI/IOV: Skip VF Resizable BAR restore on read error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64461 | linux-libc-dev | 7.0.0-30.30 |
| kernel: PCI: mediatek: Fix IRQ domain leak when port fails to enable — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64462 | linux-libc-dev | 7.0.0-30.30 |
| kernel: PCI: altera: Fix resource leaks on probe failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64463 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: typec: tcpci_rt1711h: unregister TCPCI port with devres — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64464 | linux-libc-dev | 7.0.0-30.30 |
| kernel: xhci: sideband: fix ring sg table pages leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64465 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: xhci: Fix sleep in atomic context in xhci_free_streams() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64466 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rust_binder: clear freeze listener on node removal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64468 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binder: fix UAF in binder_free_transaction() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64469 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binder: fix UAF in binder_thread_release() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64470 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btusb: fix use-after-free on marvell probe failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64471 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: btusb: fix use-after-free on registration failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64472 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vfio/mlx5: Fix racy bitfields and tighten struct layout — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64473 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vfio: Remove device debugfs before releasing devres — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64474 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vfio: prevent infinite loop in vfio_mig_get_next_state() on blocked arc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64476 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vfio/pci: Latch disable_idle_d3 per device — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64477 | linux-libc-dev | 7.0.0-30.30 |
| kernel: x86,fs/resctrl: Prevent out-of-bounds access while offlining CPU when SNC enabled — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64478 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usb-audio: avoid kobject path lookup in DualSense match — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64479 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: seq: Fix uninitialised heap leak in snd_seq_event_dup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64480 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: ice1712: check snd_ctl_new1() return value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64482 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: gus: check snd_ctl_new1() return value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64483 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: firewire: isight: bound the sample count to the packet payload — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64484 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: es1938: check snd_ctl_new1() return value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64510 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ACPI: NFIT: core: Fix acpi_nfit_init() error cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64509 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rust: block: fix GenDisk cleanup paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64508 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Support for hardening against JIT spraying — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64507 | linux-libc-dev | 7.0.0-30.30 |
| kernel: x86/bugs: Enable IBPB flush on BPF JIT allocation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64505 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: function: rndis: add length check for header — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64504 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: accel: bmc150: clamp the device-reported FIFO frame count — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64503 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: accel: kxsd9: fix runtime PM imbalance on write_raw() error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64502 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: adc: ad_sigma_delta: fix clear_pending_event for registerless devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64501 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: adc: ad_sigma_delta: fix CS held asserted and state leaks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64500 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: adc: lpc32xx: Initialize completion before requesting IRQ — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64499 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: adc: ti-ads1119: fix PM reference leak in buffer preenable — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64497 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: chemical: scd30: Cleanup initializations and fix sign-extension bug — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64496 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: event: Fix event FIFO reset race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64495 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: gyro: bmg160: bail out when bandwidth/filter is not in table — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64494 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: light: gp2ap002: fix runtime PM leak on read error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64493 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: pressure: mpl115: fix runtime PM leak on read error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64492 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: temperature: tmp006: use devm_iio_trigger_register — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64491 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: usx2y: us144mkii: fix work UAF on disconnect — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64489 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: ymfpci: check snd_ctl_new1() return value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64488 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: aoa: check snd_ctl_new1() return value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64487 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parser — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64486 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: cmipci: check snd_ctl_new1() return value — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64485 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: compress: Fix task creation error unwind — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64457 | linux-libc-dev | 7.0.0-30.30 |
| kernel: virtio_pci: fix vq info pointer lookup via wrong index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68182 | linux-libc-dev | 7.0.0-30.30 |
| kernel: comedi: comedi_parport: deal with premature interrupt — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68152 | linux-libc-dev | 7.0.0-30.30 |
| kernel: amt: fix use-after-free in AMT delayed works — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68151 | linux-libc-dev | 7.0.0-30.30 |
| kernel: binfmt_elf_fdpic: only honour the first PT_INTERP — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68150 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs/super: fix emergency thaw double-unlock of s_umount — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68149 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fs: preserve ACL_DONT_CACHE state in forget_cached_acl() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68148 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fscrypt: Add missing superblock check in find_or_insert_direct_key() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68146 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ftrace: Add global mutex to serialize trace_parser access — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68145 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iomap: fix out-of-bounds bitmap_set() with zero-length range — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68144 | linux-libc-dev | 7.0.0-30.30 |
| kernel: phonet: pep: fix use-after-free in pep_get_sb() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68143 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel SLIP: Out-of-bounds write due to race condition during MTU change — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68141 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/af_iucv: fix NULL deref in afiucv_hs_callback_syn() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68140 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/iucv: fix use-after-free of a severed iucv_path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68139 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5e: Use sender devcom for MPV master-up — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68138 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/sched: serialize qdisc_rtab_list against concurrent get/put — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68137 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/x25: fix use-after-free in x25_kill_by_neigh() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68136 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: gro: fix double aggregation of flush-marked skbs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68135 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: hip04: fix RX buffer leak on build_skb failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68134 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ptp: ptp_s390: Add missing facility check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68133 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ice: fix PTP Call Trace during PTP release — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68132 | linux-libc-dev | 7.0.0-30.30 |
| kernel: super: fix emergency thaw deadlock on frozen block devices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68131 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rbd: Reset positive result codes to zero in object map update path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68130 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: defer destroy_previous_session() until after NTLM authentication — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68129 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gve: fix Rx queue stall on alloc failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68128 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel (ice): Denial of Service via out-of-range ptype in VIRTCHNL — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68127 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ila: reload IPv6 header after pskb_may_pull in checksum adjust — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68181 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mei: bus: access mei_device under device_lock on cleanup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68180 | linux-libc-dev | 7.0.0-30.30 |
| kernel: intel_th: fix MSC output device reference leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68179 | linux-libc-dev | 7.0.0-30.30 |
| kernel: misc: nsm: only unlock nsm_dev on post-lock error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68178 | linux-libc-dev | 7.0.0-30.30 |
| kernel: misc: nsm: pin the module while the device is open — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68177 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Delay module ref count for "enable_event" trigger — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68176 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Fix mmiotrace possible NULL dereferencing of hiter->dev — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68175 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Fix resource leak on mmiotrace trace_pipe close — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68174 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing: Fix union collision of module and refcnt for dynamic events — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68173 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ublk: wait on ublk_dev_ready() instead of ub->completion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68172 | linux-libc-dev | 7.0.0-30.30 |
| kernel: arm64: make huge_ptep_get handled unaligned addresses — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68170 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mptcp: fix stale skb->sk reference on subflow close — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68169 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mptcp: pm: userspace: fix use-after-free in get_local_id — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68168 | linux-libc-dev | 7.0.0-30.30 |
| kernel: afs: Fix afs_edit_dir_remove() to get, not find, block 0 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68166 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Arbitrary code execution via userfaultfd shadow stack manipulation — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68165 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/core: validate ranges in damon_set_regions() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68164 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/damon/core: disallow overlapping input ranges for damon_set_regions() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68163 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/page_vma_mapped: fix device-private PMD handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68161 | linux-libc-dev | 7.0.0-30.30 |
| kernel: sctp: close UDP tunnel sockets during netns teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68160 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68159 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: libceph stack out-of-bounds write via crafted OSDMap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68158 | linux-libc-dev | 7.0.0-30.30 |
| kernel: libceph: Fix multiplication overflow in decode_new_up_state_weight() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68157 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: libceph null pointer dereference leads to denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68155 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel (libceph): Denial of Service due to malformed monitor maps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68154 | linux-libc-dev | 7.0.0-30.30 |
| kernel: libceph: reject zero bucket types in crush_decode — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68093 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68092 | linux-libc-dev | 7.0.0-30.30 |
| kernel: time/jiffies: Register jiffies clocksource before usage — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68091 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: wacom: stop hardware after post-start probe failures — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68090 | linux-libc-dev | 7.0.0-30.30 |
| kernel: debugobjects: Plug race against a concurrent OOM disable — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68089 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: core: fix uninitialized data in debugfs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68088 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: function: rndis: add length check to response query — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68087 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68086 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/khugepaged: write all dirty file folios when collapsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68084 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: vme_user: fix location monitor leak in tsi148 bridge — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68083 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: fix path resolution in ksmbd_vfs_kern_path_create — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68082 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: l ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68081 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: K ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64604 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: K ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64603 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: p ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64602 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: i ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64600 | linux-libc-dev | 7.0.0-30.30 |
| kernel: XFS data corruption using reflink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64599 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: c ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64596 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: l ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64594 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: u ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64593 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: b ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64592 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: r ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64591 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: i ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64590 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: d ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64589 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: i ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-64588 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: f ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68122 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ovpn: fix peer refcount leak in TCP error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68123 | linux-libc-dev | 7.0.0-30.30 |
| kernel: openvswitch: fix GSO userspace truncation underflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68114 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68111 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx9: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68110 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68109 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/sdma7.1: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68108 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/vce: fix integer overflow in image size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68125 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mac802154: llsec: reject frames shorter than the authentication tag — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68126 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mac802154: hold an interface reference across the scan worker — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68106 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: fix division by zero with invalid uvd dimensions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68115 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68112 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68105 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: Fix kernel panic during driver load failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68103 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: reject mapping a reserved doorbell to a new queue — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68113 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68102 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: fix aperture mapping leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68118 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: challenge ACK for non-exact RST in SYN-RECEIVED — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68120 | linux-libc-dev | 7.0.0-30.30 |
| kernel: rtase: Workaround for TX hang caused by hardware packet parsing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68100 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68099 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ksmbd: restore DACL size on check_add_overflow() to avoid malformed ACL — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68097 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: k ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68096 | linux-libc-dev | 7.0.0-30.30 |
| kernel: audit: fix recursive locking deadlock in audit_dupe_exe() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68095 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fuse-uring: fix race between registration and connection abortion — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| MEDIUM |
CVE-2026-68119 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: initialize standalone TCP-AO response padding — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72482 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpib: fix double decrement of descriptor_busy in command_ioctl() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74262 | linux-libc-dev | 7.0.0-30.30 |
| kernel: kcm: use WRITE_ONCE() when changing lower socket callbacks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72476 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dmaengine: Fix possible use after free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72454 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i3c: mipi-i3c-hci: Fix race in i3c_hci_addr_to_dev() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72410 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-af: Validate NIX maximum LFs correctly — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72352 | linux-libc-dev | 7.0.0-30.30 |
| kernel: HID: bpf: Fix hid_bpf_get_data() range check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72342 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5e: Fix HV VHCA stats agent registration race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74312 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vhost/vdpa: validate virtqueue index in mmap and fault paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74313 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vduse: hold vduse_lock across IDR lookup in open path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74361 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvme: fix FDP fdpcidx bounds check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74371 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: fix BPF_PROG_QUERY OOB write and cgroup backward compat — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74383 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvme-pci: fix out-of-bounds access in nvme_setup_descriptor_pools — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74397 | linux-libc-dev | 7.0.0-30.30 |
| kernel: IB/mlx5: Fix transport-domain rollback and initialize lb mutex earlier — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74401 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dlm: fix add msg handle in send_queue ordered — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74403 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ccp - Check for page allocation failure correctly in TIO — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74405 | linux-libc-dev | 7.0.0-30.30 |
| kernel: OPP: Fix race between OPP addition and lookup — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74412 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: rtw88: fix wrong pci_get_drvdata type in AER handlers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68314 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mctp i3c: clean up notifier and buses if driver register fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68330 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: airoha: Fix DMA direction for NPU mailbox buffer — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53146 | linux-libc-dev | 7.0.0-30.30 |
| kernel: kernel: Information disclosure in Thunderbolt XDomain response handling — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68353 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath6kl: fix OOB read from firmware num_msg in TX complete handler — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68370 | linux-libc-dev | 7.0.0-30.30 |
| kernel: usb: gadget: dummy_hcd: prevent fifo_req reuse during giveback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68432 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vxlan: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68454 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: s390: pci: Fix handling of AIF enable without AISB — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68466 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mtd: rawnand: lpc32xx_slc: fail DMA transfer on completion timeout — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72051 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ip6_tunnel: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72054 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ip_vti: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72071 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tracing/user_events: Fix use-after-free in user_event_mm_dup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72090 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/amdxdna: Use caller client for debug BO sync — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72100 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm-integrity: fix a bug if the bio is out of limits — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72108 | linux-libc-dev | 7.0.0-30.30 |
| kernel: dm thin metadata: fix metadata snapshot consistency on commit failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72134 | linux-libc-dev | 7.0.0-30.30 |
| kernel: spi: imx: reconfigure for PIO when DMA cannot be started — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72154 | linux-libc-dev | 7.0.0-30.30 |
| kernel: openrisc: Fix jump_label smp syncing — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72286 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: SEV: Do not allow intra-host migration/mirroring of SNP VMs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72303 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ASoC: SOF: ipc4-control: Validate notification payload size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72310 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: fix overflow in passthrough ioctl bounds check — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72312 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-af: fix VF bringup affecting PF promiscuous state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72314 | linux-libc-dev | 7.0.0-30.30 |
| kernel: regulator: core: regulator_lock_two() should test for EDEADLK not EDEADLOCK — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-72329 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/liquidio: drop cached VF pci_dev LUT — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74450 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/pm: fix pptable use-after-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-58767 | ruby3.3-dev | 3.3.8-2ubuntu3.1 |
| rexml: REXML denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-61594 | ruby3.3-dev | 3.3.8-2ubuntu3.1 |
| uri: URI module: Credential exposure via URI + operator — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-40228 | libudev1 | 259.5-0ubuntu3.4 |
| systemd: systemd-journald: Unintended output to user terminals via logger command — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-40228 | libsystemd0 | 259.5-0ubuntu3.4 |
| systemd: systemd-journald: Unintended output to user terminals via logger command — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-75803 | libssl3t64 | 3.5.5-1ubuntu3.4 |
| Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-75803 | libssl-dev | 3.5.5-1ubuntu3.4 |
| Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | libsframe3 | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-61594 | libruby3.3 | 3.3.8-2ubuntu3.1 |
| uri: URI module: Credential exposure via URI + operator — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-58767 | libruby3.3 | 3.3.8-2ubuntu3.1 |
| rexml: REXML denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | libgprofng0 | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2024-2236 | libgcrypt20 | 1.12.0-2ubuntu1 |
| libgcrypt: vulnerable to Marvin Attack — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | libctf0 | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | libctf-nobfd0 | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | libbinutils | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-27171 | zlib1g | 1:1.3.dfsg+really1.3.1-1ubuntu3 |
| zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-27171 | zlib1g-dev | 1:1.3.dfsg+really1.3.1-1ubuntu3 |
| zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | binutils-x86-64-linux-gnu | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | binutils-common | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13716 | binutils | 2.46-3ubuntu2 |
| binutils: Memory leak with the C++ symbol demangler routine in libiberty — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74481 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/page_reporting: use system_freezable_wq to fix UAF during suspend — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74490 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tipc: avoid use-after-free in poll trace queue dumps — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74512 | linux-libc-dev | 7.0.0-30.30 |
| kernel: audit: fix potential use-after-free in audit_del_rule() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74519 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pinctrl: devicetree: don't free uninitialized dev_name on error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74527 | linux-libc-dev | 7.0.0-30.30 |
| kernel: octeontx2-af: Block VFs from clobbering special CGX PKIND state — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74554 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-74568 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: vgic: Fix race between LPI release and re-registration — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2024-56433 | login.defs | 1:4.17.4-2ubuntu3 |
| shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-55654 | openssh-client | 1:10.2p1-2ubuntu3.5 |
| openssh: Heap out-of-bounds read in Red Hat Enterprise Linux versions of OpenSSH GSSAPI indicator cleanup due to missing NULL sentinel termination — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-75803 | openssl | 3.5.5-1ubuntu3.4 |
| Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-75803 | openssl-provider-legacy | 3.5.5-1ubuntu3.4 |
| Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2024-56433 | passwd | 1:4.17.4-2ubuntu3 |
| shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2018-6952 | patch | 2.8-2build1 |
| patch: Double free of memory in pch.c:another_hunk() causes a crash — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2019-20633 | patch | 2.8-2build1 |
| patch: double free in another_hunk function in pch.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2021-45261 | patch | 2.8-2build1 |
| patch: Invalid Pointer via another_hunk function — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-56288 | patch | 2.8-2build1 |
| patch: GNU patch: Denial of Service via specially crafted patch file — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-56289 | patch | 2.8-2build1 |
| patch: GNU patch: Denial of Service via crafted unified-diff input — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-58767 | ruby3.3 | 3.3.8-2ubuntu3.1 |
| rexml: REXML denial of service — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-61594 | ruby3.3 | 3.3.8-2ubuntu3.1 |
| uri: URI module: Credential exposure via URI + operator — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53147 | linux-libc-dev | 7.0.0-30.30 |
| kernel: thunderbolt: Validate XDomain request packet size before type cast — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53152 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mmc: dw_mmc-rockchip: Add missing private data for very old controllers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53154 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/hugetlb: restore reservation on error in hugetlb folio copy paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53156 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvmem: core: fix use-after-free bugs in error paths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53157 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: phonet: free phonet_device after RCU grace period — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53158 | linux-libc-dev | 7.0.0-30.30 |
| kernel: misc: fastrpc: Fix NULL pointer dereference in rpmsg callback — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53160 | linux-libc-dev | 7.0.0-30.30 |
| kernel: misc: fastrpc: fix use-after-free race in fastrpc_map_create — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53161 | linux-libc-dev | 7.0.0-30.30 |
| kernel: misc: fastrpc: fix use-after-free of fastrpc_user in workqueue context — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53162 | linux-libc-dev | 7.0.0-30.30 |
| kernel: memcg: use round-robin victim selection in refill_stock — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53177 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bnxt_en: Fix NULL pointer dereference — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53188 | linux-libc-dev | 7.0.0-30.30 |
| kernel: RDMA/core: Validate the passed in fops for ib_get_ucaps() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53189 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/huge_memory: update file PMD counter before folio_put() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53195 | linux-libc-dev | 7.0.0-30.30 |
| kernel: USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53200 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: nv: Fix handling of XN[0] when !FEAT_XNX — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53202 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Kernel: Privilege escalation and denial of service via integer truncation in accel/ivpu — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53203 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ivpu: Add buffer overflow check in MS get_info_ioctl — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53204 | linux-libc-dev | 7.0.0-30.30 |
| kernel: firmware: stratix10-rsu: Fix NULL deref on rsu_send_msg() timeout in probe — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53205 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ivpu: Add bounds checks for firmware log indices — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53206 | linux-libc-dev | 7.0.0-30.30 |
| kernel: accel/ivpu: Add bounds check for firmware runtime memory — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53207 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53209 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53213 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/vc4: fix krealloc() memory leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53217 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: mvpp2: sync RX data at the hardware packet offset — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53222 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ptp: ocp: fix resource freeing order — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64272 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Input: mms114 - fix touch indexing for MMS134S and MMS136 — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-0537 | linux-libc-dev | 7.0.0-30.30 |
| ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13165 | linux-libc-dev | 7.0.0-30.30 |
| ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2017-13693 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ACPI operand cache leak in dsutils.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2018-1121 | linux-libc-dev | 7.0.0-30.30 |
| procps: process hiding through race condition enumerating /proc — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2018-12928 | linux-libc-dev | 7.0.0-30.30 |
| kernel: NULL pointer dereference in hfs_ext_read_extent in hfs.ko — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2018-12929 | linux-libc-dev | 7.0.0-30.30 |
| kernel: use-after-free in ntfs_read_locked_inode in the ntfs.ko — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2018-12930 | linux-libc-dev | 7.0.0-30.30 |
| kernel: stack-based out-of-bounds write in ntfs_end_buffer_async_read in the ntfs.ko — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2018-12931 | linux-libc-dev | 7.0.0-30.30 |
| kernel: stack-based out-of-bounds write in ntfs_attr_find in the ntfs.ko — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2019-14899 | linux-libc-dev | 7.0.0-30.30 |
| VPN: an attacker can inject data into the TCP stream which allows a hijack of active connections inside the VPN tunnel — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2019-15213 | linux-libc-dev | 7.0.0-30.30 |
| kernel: use-after-free caused by malicious USB device in drivers/media/usb/dvb-usb/dvb-usb-init.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2019-19378 | linux-libc-dev | 7.0.0-30.30 |
| kernel: out-of-bounds write in index_rbio_pages in fs/btrfs/raid56.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2019-19814 | linux-libc-dev | 7.0.0-30.30 |
| kernel: out-of-bounds write in __remove_dirty_segment in fs/f2fs/segment.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2019-20426 | linux-libc-dev | 7.0.0-30.30 |
| ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2020-14304 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ethtool when reading eeprom of device could lead to memory leak — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2020-35501 | linux-libc-dev | 7.0.0-30.30 |
| kernel: audit not logging access to syscall open_by_handle_at for users with CAP_DAC_READ_SEARCH capability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2021-26934 | linux-libc-dev | 7.0.0-30.30 |
| An issue was discovered in the Linux kernel 4.18 through 5.10.16, as u ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2022-41848 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Race condition between mgslpc_ioctl and mgslpc_detach — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2022-44034 | linux-libc-dev | 7.0.0-30.30 |
| Kernel: A use-after-free due to race between scr24x_open() and scr24x_remove() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2022-45885 | linux-libc-dev | 7.0.0-30.30 |
| kernel: use-after-free due to race condition occurring in dvb_frontend.c — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2023-20585 | linux-libc-dev | 7.0.0-30.30 |
| kernel-core: hw: amd: AMD-SN-3016: IOMMU Write Buffer Vulnerability — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2023-33053 | linux-libc-dev | 7.0.0-30.30 |
| ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2023-6238 | linux-libc-dev | 7.0.0-30.30 |
| kernel: nvme: memory corruption via unprivileged user passthrough — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2024-0564 | linux-libc-dev | 7.0.0-30.30 |
| kernel: max page sharing of Kernel Samepage Merging (KSM) may cause memory deduplication — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2025-22077 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: Fix netns refcount imbalance causing leaks and use-after-free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53135 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amd/display: Fix NULL deref and buffer over-read in SDP debugfs — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53142 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/display: fix oops in suspend/shutdown without display — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64279 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: core: fix adapter deregistration race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64286 | linux-libc-dev | 7.0.0-30.30 |
| kernel: KVM: arm64: Clear __hyp_running_vcpu when flushing the pKVM hyp vCPU — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64303 | linux-libc-dev | 7.0.0-30.30 |
| kernel: spi: fsl-lpspi: terminate the RX channel on TX prepare failure path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64313 | linux-libc-dev | 7.0.0-30.30 |
| kernel: crypto: ecc - Fix carry overflow in vli multiplication — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64355 | linux-libc-dev | 7.0.0-30.30 |
| kernel: bpf: Reject fragmented frames in devmap — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64375 | linux-libc-dev | 7.0.0-30.30 |
| kernel: proc: protect ptrace_may_access() with exec_update_lock (FD links) — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64378 | linux-libc-dev | 7.0.0-30.30 |
| kernel: writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64401 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: resolve SWN tcon from live registrations — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64435 | linux-libc-dev | 7.0.0-30.30 |
| kernel: audit: Fix data races of skb_queue_len() readers on audit_queue — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64448 | linux-libc-dev | 7.0.0-30.30 |
| kernel: smb: client: restrict implied bcc[0] exemption to responses without data area — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64449 | linux-libc-dev | 7.0.0-30.30 |
| kernel: staging: vme_user: bound slave read/write to the kern_buf size — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64475 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vfio/pci: Release the VGA arbiter client on register_device() failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64481 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ALSA: hda/cs35l41: Fix firmware load work teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64574 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: mac80211: tear down new links on vif update error path — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64583 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: u ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64598 | linux-libc-dev | 7.0.0-30.30 |
| In the Linux kernel, the following vulnerability has been resolved: s ... — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68104 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu: invoke pm_genpd_remove() before freeing genpd — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68107 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/amdgpu/vcn4: avoid rereading IB param length — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68116 | linux-libc-dev | 7.0.0-30.30 |
| kernel: vxlan: mdb: Fix source list corruption on a failed replace — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68124 | linux-libc-dev | 7.0.0-30.30 |
| kernel: mctp: serial: handle zero-length frames to prevent rx buffer overflow — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68142 | linux-libc-dev | 7.0.0-30.30 |
| kernel: geneve: require CAP_NET_ADMIN in the device netns for changelink — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68153 | linux-libc-dev | 7.0.0-30.30 |
| kernel: libceph: remove debugfs files before client teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68156 | linux-libc-dev | 7.0.0-30.30 |
| kernel: libceph: refresh auth->authorizer_buf{,_len} after authorizer update — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68240 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/gpusvm: publish dpagemap early to avoid device mapping leak on error — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-68305 | linux-libc-dev | 7.0.0-30.30 |
| kernel: drm/xe/vf: Add drm_dev guards when detaching CCS read/write buffers — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53226 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: rockchip: fix generic IRQ chip leak on remove — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53229 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53230 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53232 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: phy: clean the sfp upstream if phy probing fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53233 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netdev: fix double-free in netdev_nl_bind_rx_doit() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53234 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: ibm: emac: Fix use-after-free during device removal — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53236 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tcp: restrict SO_ATTACH_FILTER to priv users — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53237 | linux-libc-dev | 7.0.0-30.30 |
| kernel: gpio: mvebu: fix NULL pointer dereference in suspend/resume — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53238 | linux-libc-dev | 7.0.0-30.30 |
| kernel: netlabel: validate unlabeled address and mask attribute lengths — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53248 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: airoha: Fix use-after-free in metadata dst teardown — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53249 | linux-libc-dev | 7.0.0-30.30 |
| kernel: ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53253 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel Bluetooth BNEP: Denial of Service and information disclosure via malformed frames — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53255 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Bluetooth: MGMT: validate advertising TLV before type checks — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53258 | linux-libc-dev | 7.0.0-30.30 |
| kernel: wifi: fix leak if split 6 GHz scanning fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53261 | linux-libc-dev | 7.0.0-30.30 |
| kernel: devlink: Release nested relation on devlink free — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53265 | linux-libc-dev | 7.0.0-30.30 |
| kernel: Linux kernel: Denial of service and data corruption in device mapper cache policy via race condition. — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53272 | linux-libc-dev | 7.0.0-30.30 |
| kernel: erofs: fix use-after-free on sbi->sync_decompress — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53273 | linux-libc-dev | 7.0.0-30.30 |
| kernel: tee: optee: prevent use-after-free when the client exits before the supplicant — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53384 | linux-libc-dev | 7.0.0-30.30 |
| kernel: serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53386 | linux-libc-dev | 7.0.0-30.30 |
| kernel: iio: adc: ti-ads1298: add bounds check to pga_settings index — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-53400 | linux-libc-dev | 7.0.0-30.30 |
| kernel: i2c: core: fix adapter registration race — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-63800 | linux-libc-dev | 7.0.0-30.30 |
| kernel: pNFS: Fix use-after-free in pnfs_update_layout() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-63827 | linux-libc-dev | 7.0.0-30.30 |
| kernel: apparmor: fix use-after-free in rawdata dedup loop — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-63830 | linux-libc-dev | 7.0.0-30.30 |
| kernel: net: skmsg: preserve sg.copy across SG transforms — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64245 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fbdev: modedb: fix a possible UAF in fb_find_mode() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |
| LOW |
CVE-2026-64249 | linux-libc-dev | 7.0.0-30.30 |
| kernel: fpga: region: fix use-after-free in child_regions_with_firmware() — ghcr.io/openvoxproject/openvoxserver:latest (ubuntu 26.04) |