Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.9 CVE-2026-54411

CVE-2026-54411_CVE-2026-54411

Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in module...

Linux-PAM Linux-PAM CVE
HIGH 7.8 CVE-2026-54410

CVE-2026-54410_CVE-2026-54410

nanoMODBUS through v1.23.0 contains an off-by-one buffer overflow in the recv_msg_header() function of the Modbus/TCP server that allows remote una...

debevv nanoMODBUS CVE
HIGH 7.8 CVE-2026-46275

Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths_CVE-2026-46275

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths Vul...

Linux Linux 3b799254cf6f481460719023d7a18f46651e5e7f CVE
HIGH 7.8 CVE-2026-46274

io-wq: check that the predecessor is hashed in io_wq_remove_pending()_CVE-2026-46274

In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_wq_remove_pending() io_wq_r...

Linux Linux 204361a77f4018627addd4a06877448f088ddfc0 CVE
HIGH 7.8 CVE-2026-46311

drm/amdgpu/userq: fix access to stale wptr mapping_CVE-2026-46311

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping Use drm_exec to take both ...

Linux Linux 5fb2f7fc21a3668e5794cc0d153641b9719713e1 CVE
HIGH 8.3 CVE-2026-46307

wifi: ath5k: do not access array OOB_CVE-2026-46307

In the Linux kernel, the following vulnerability has been resolved: wifi: ath5k: do not access array OOB Vincent reports: > The ath5k driver seem...

Linux Linux 6d7b97b23e114c8fbb825e6721164d228c1af3fc CVE
HIGH 7.5 CVE-2026-46306

flow_dissector: do not dissect PPPoE PFC frames_CVE-2026-46306

In the Linux kernel, the following vulnerability has been resolved: flow_dissector: do not dissect PPPoE PFC frames RFC 2516 Section 7 states tha...

Linux Linux 10f665b52a75df6eb26ddebbbc072ee264183731 CVE
HIGH 7.5 CVE-2026-46304

nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free_CVE-2026-46304

In the Linux kernel, the following vulnerability has been resolved: nvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free nvmet_tcp_release_qu...

Linux Linux 06406d81a2d7cfb8abcc4fa6cdfeb8e5897007c5 CVE
HIGH 8.2 CVE-2026-46303

isofs: validate Rock Ridge CE continuation extent against volume size_CVE-2026-46303

In the Linux kernel, the following vulnerability has been resolved: isofs: validate Rock Ridge CE continuation extent against volume size rock_co...

Linux Linux f54e18f1b831c92f6512d2eedb224cd63d607d3d CVE
HIGH 7 CVE-2026-46299

hfsplus: fix held lock freed on hfsplus_fill_super()_CVE-2026-46299

In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix held lock freed on hfsplus_fill_super() hfsplus_fill_super() cal...

Linux Linux 89ac9b4d3d1a049ae1054f99b1aed81092cd0a82 CVE