Количество 19
Количество 19
CVE-2026-23193
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation.
CVE-2026-23193
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation.
CVE-2026-23193
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation.
CVE-2026-23193
In the Linux kernel, the following vulnerability has been resolved: s ...
GHSA-fccp-g2rw-8q2g
In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation.
RLSA-2026:6571
Moderate: kernel security update
ELSA-2026-6571
ELSA-2026-6571: kernel security update (MODERATE)
ELSA-2026-50275
ELSA-2026-50275: Unbreakable Enterprise kernel security update (IMPORTANT)
RLSA-2026:6632
Moderate: kernel security update
ELSA-2026-6632
ELSA-2026-6632: kernel security update (MODERATE)
RLSA-2026:6153
Moderate: kernel security update
ELSA-2026-6153
ELSA-2026-6153: kernel security update (MODERATE)
ELSA-2026-50299
ELSA-2026-50299: Unbreakable Enterprise kernel security update (IMPORTANT)
SUSE-SU-2026:1661-1
Security update for the Linux Kernel
SUSE-SU-2026:1573-1
Security update for the Linux Kernel
openSUSE-SU-2026:20572-1
Security update for the Linux Kernel
SUSE-SU-2026:2068-1
Security update for the Linux Kernel
ELSA-2026-50232
ELSA-2026-50232: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2026-50160
ELSA-2026-50160: Unbreakable Enterprise kernel security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-23193 In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation. | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
CVE-2026-23193 In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation. | CVSS3: 7.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-23193 In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation. | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
CVE-2026-23193 In the Linux kernel, the following vulnerability has been resolved: s ... | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
GHSA-fccp-g2rw-8q2g In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() In iscsit_dec_session_usage_count(), the function calls complete() while holding the sess->session_usage_lock. Similar to the connection usage count logic, the waiter signaled by complete() (e.g., in the session release path) may wake up and free the iscsit_session structure immediately. This creates a race condition where the current thread may attempt to execute spin_unlock_bh() on a session structure that has already been deallocated, resulting in a KASAN slab-use-after-free. To resolve this, release the session_usage_lock before calling complete() to ensure all dereferences of the sess pointer are finished before the waiter is allowed to proceed with deallocation. | CVSS3: 7.8 | 0% Низкий | 4 месяца назад | |
RLSA-2026:6571 Moderate: kernel security update | 2 месяца назад | |||
ELSA-2026-6571 ELSA-2026-6571: kernel security update (MODERATE) | 3 месяца назад | |||
ELSA-2026-50275 ELSA-2026-50275: Unbreakable Enterprise kernel security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:6632 Moderate: kernel security update | 2 месяца назад | |||
ELSA-2026-6632 ELSA-2026-6632: kernel security update (MODERATE) | 3 месяца назад | |||
RLSA-2026:6153 Moderate: kernel security update | 2 месяца назад | |||
ELSA-2026-6153 ELSA-2026-6153: kernel security update (MODERATE) | 3 месяца назад | |||
ELSA-2026-50299 ELSA-2026-50299: Unbreakable Enterprise kernel security update (IMPORTANT) | 19 дней назад | |||
SUSE-SU-2026:1661-1 Security update for the Linux Kernel | около 2 месяцев назад | |||
SUSE-SU-2026:1573-1 Security update for the Linux Kernel | около 2 месяцев назад | |||
openSUSE-SU-2026:20572-1 Security update for the Linux Kernel | 2 месяца назад | |||
SUSE-SU-2026:2068-1 Security update for the Linux Kernel | 26 дней назад | |||
ELSA-2026-50232 ELSA-2026-50232: Unbreakable Enterprise kernel security update (IMPORTANT) | 2 месяца назад | |||
ELSA-2026-50160 ELSA-2026-50160: Unbreakable Enterprise kernel security update (IMPORTANT) | 3 месяца назад |
Уязвимостей на страницу