Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.5 CVE-2026-53235

net: add pskb_may_pull() to skb_gro_receive_list()_CVE-2026-53235

In the Linux kernel, the following vulnerability has been resolved: net: add pskb_may_pull() to skb_gro_receive_list() skb_gro_receive_list() cal...

Linux Linux 8d95dc474f85481652a0e422d2f1f079de81f63c CVE
HIGH 8.8 CVE-2026-53232

net: phy: clean the sfp upstream if phy probing fails_CVE-2026-53232

In the Linux kernel, the following vulnerability has been resolved: net: phy: clean the sfp upstream if phy probing fails Sashiko reported that w...

Linux Linux 298e54fa810e027f1b0800d789eb862592721f08 CVE
HIGH 8.7 CVE-2026-53230

net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list_CVE-2026-53230

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list mlx5_query_...

Linux Linux e16aea2744abea612c27ee0eef606c6a6a8204de CVE
HIGH 7.5 CVE-2026-53229

net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure_CVE-2026-53229

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure In the XSK ...

Linux Linux 84a0a2310d6de247335574649726cb000c7c0074 CVE
CRITICAL 9.8 CVE-2026-53228

ipv6: sit: reload inner IPv6 header after GSO offloads_CVE-2026-53228

In the Linux kernel, the following vulnerability has been resolved: ipv6: sit: reload inner IPv6 header after GSO offloads ipip6_tunnel_xmit() ca...

Linux Linux 14909664e4e192f4c6f6fcdccd9919af7cf783ab CVE
CRITICAL 9.1 CVE-2026-53225

sctp: fix uninit-value in __sctp_rcv_asconf_lookup()_CVE-2026-53225

In the Linux kernel, the following vulnerability has been resolved: sctp: fix uninit-value in __sctp_rcv_asconf_lookup() __sctp_rcv_asconf_lookup...

Linux Linux df21857714398acb8b24a8bb5a6d2286dd9c59ef CVE
CRITICAL 9.1 CVE-2026-53224

sctp: validate embedded INIT chunk and address list lengths in cookie_CVE-2026-53224

In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded INIT chunk and address list lengths in cookie sctp_un...

Linux Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 CVE
HIGH 7.1 CVE-2026-53223

net: guard timestamp cmsgs to real error queue skbs_CVE-2026-53223

In the Linux kernel, the following vulnerability has been resolved: net: guard timestamp cmsgs to real error queue skbs skb_is_err_queue() treats...

Linux Linux 8605330aac5a5785630aec8f64378a54891937cc CVE
CRITICAL 9.8 CVE-2026-53221

ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup()_CVE-2026-53221

In the Linux kernel, the following vulnerability has been resolved: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() In vti6_tnl_looku...

Linux Linux fbe68ee87522f6eaa10f9076c0a7117e1613f2f7 CVE
HIGH 8.6 CVE-2026-53217

net: mvpp2: sync RX data at the hardware packet offset_CVE-2026-53217

In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: sync RX data at the hardware packet offset mvpp2 programs the RX ...

Linux Linux e1921168bbd4810de4197446e52f652cd0dd9541 CVE