VendorsLinuxlinux_kernel7.1
Vulnerabilities

Linux Kernel 7.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

643CVEs
CVE-2026-52989
nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers
Published 2026-06-24 · Modified
9.8EPSS 0.005
CVE-2026-52955
libceph: Fix potential out-of-bounds access in crush_decode()
Published 2026-06-24 · Analyzed
9.8EPSS 0.005
CVE-2026-64068
netfs: Fix missing locking around retry adding new subreqs
Published 2026-07-19 · Modified
9.8EPSS 0.005
CVE-2026-53175
inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush
Published 2026-06-25 · Modified
9.8EPSS 0.005
CVE-2026-64067
netfs: Fix missing barriers when accessing stream->subrequests locklessly
Published 2026-07-19 · Analyzed
9.8EPSS 0.004
CVE-2026-53355
net: rds: clear i_sends on setup unwind
Published 2026-07-01 · Analyzed
9.8EPSS 0.004
CVE-2026-53363
xfrm: iptfs: preserve shared-frag marker in iptfs_consume_frags()
Published 2026-07-10 · Analyzed
9.8EPSS 0.003
CVE-2026-46316
KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry
Published 2026-06-09 · Modified
9.3EPSS 0.002
CVE-2026-64080
firmware: arm_ffa: Snapshot notifier callbacks under lock
Published 2026-07-19 · Analyzed
9.3EPSS 0.002
CVE-2026-53224
sctp: validate embedded INIT chunk and address list lengths in cookie
Published 2026-06-25 · Analyzed
9.1EPSS 0.007
CVE-2026-53186
RDMA/srp: bound SRP_RSP sense copy by the received length
Published 2026-06-25 · Analyzed
9.1EPSS 0.007
CVE-2026-52958
libceph: Fix potential out-of-bounds access in osdmap_decode()
Published 2026-06-24 · Analyzed
9.1EPSS 0.007
CVE-2026-53225
sctp: fix uninit-value in __sctp_rcv_asconf_lookup()
Published 2026-06-25 · Analyzed
9.1EPSS 0.007
CVE-2026-46185
smb/client: fix out-of-bounds read in symlink_data()
Published 2026-05-28 · Analyzed
9.1EPSS 0.007
CVE-2026-46155
smb/client: fix out-of-bounds read in smb2_compound_op()
Published 2026-05-28 · Analyzed
9.1EPSS 0.007
CVE-2026-46244
netfilter: nft_inner: Fix IPv6 inner_thoff desync
Published 2026-06-03 · Modified
9.1EPSS 0.005
CVE-2026-64106
KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits
Published 2026-07-19 · Analyzed
9.0EPSS 0.002
CVE-2026-53266
netfilter: bridge: make ebt_snat ARP rewrite writable
Published 2026-06-25 · Analyzed
8.8KEVEPSS 0.006
CVE-2026-64437
ksmbd: fix use-after-free of a deferred file_lock on SMB2_CLOSE then SMB2_CANCEL
Published 2026-07-25 · Analyzed
8.8EPSS 0.006
CVE-2026-64138
ksmbd: validate SID in parent security descriptor during ACL inheritance
Published 2026-07-19 · Analyzed
8.8EPSS 0.006
CVE-2026-43490
ksmbd: validate inherited ACE SID length
Published 2026-05-15 · Analyzed
8.8EPSS 0.006
CVE-2026-31717
ksmbd: validate owner of durable handle on reconnect
Published 2026-05-01 · Modified
8.8EPSS 0.006
CVE-2026-46125
wifi: mac80211: remove station if connection prep fails
Published 2026-05-28 · Undergoing Analysis
8.8EPSS 0.004
CVE-2026-53198
ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL
Published 2026-06-25 · Analyzed
8.8EPSS 0.004
CVE-2026-52934
batman-adv: tvlv: reject oversized TVLV packets
Published 2026-06-24 · Analyzed
8.8EPSS 0.004
CVE-2026-46198
batman-adv: fix integer overflow on buff_pos
Published 2026-05-28 · Analyzed
8.8EPSS 0.004
CVE-2026-64088
batman-adv: tt: fix negative tt_buff_len
Published 2026-07-19 · Analyzed
8.8EPSS 0.004
CVE-2026-64178
Bluetooth: bnep: Fix UAF read of dev->name
Published 2026-07-19 · Analyzed
8.8EPSS 0.004
CVE-2026-46238
batman-adv: stop caching unowned originator pointers in BAT IV
Published 2026-05-28 · Analyzed
8.8EPSS 0.004
CVE-2026-64093
batman-adv: tp_meter: directly shut down timer on cleanup
Published 2026-07-19 · Analyzed
8.8EPSS 0.004
CVE-2026-43495
net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handler
Published 2026-05-21 · Analyzed
8.8EPSS 0.004
CVE-2026-46212
batman-adv: bla: prevent use-after-free when deleting claims
Published 2026-05-28 · Analyzed
8.8EPSS 0.004
CVE-2026-64434
Bluetooth: L2CAP: Fix UAF in channel timeout by holding conn ref
Published 2026-07-25 · Analyzed
8.8EPSS 0.004
CVE-2026-64096
batman-adv: mcast: fix use-after-free in orig_node RCU release
Published 2026-07-19 · Analyzed
8.8EPSS 0.004
CVE-2026-53240
xfrm: iptfs: fix use-after-free on first_skb in __input_process_payload
Published 2026-06-25 · Analyzed
8.8EPSS 0.004
CVE-2026-53248
net: airoha: Fix use-after-free in metadata dst teardown
Published 2026-06-25 · Analyzed
8.8EPSS 0.004
CVE-2026-64117
wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb
Published 2026-07-19 · Analyzed
8.8EPSS 0.003
CVE-2026-53358
Bluetooth: L2CAP: use chan timer to close channels in cleanup_listen()
Published 2026-07-02 · Analyzed
8.8EPSS 0.003
CVE-2026-46166
wifi: mac80211: use safe list iteration in radar detect work
Published 2026-05-28 · Modified
8.8EPSS 0.003
CVE-2026-52918
Bluetooth: serialize accept_q access
Published 2026-06-24 · Analyzed
8.8EPSS 0.003
← Prev2 / 17Next →