Количество 5
Количество 5
CVE-2026-92520
(In the Linux kernel, the following vulnerability has been resolved: b ...)
CVE-2026-92520
In the Linux kernel, the following vulnerability has been resolved: bpf: Zero queue and stack outputs on lock failure Queue and stack pop/peek helpers accept an uninitialized output buffer because the verifier expects the helper to initialize it. The empty-map error path clears the buffer, but a failed lock acquisition returns -EBUSY without writing it. Clear the output before returning -EBUSY so BPF programs cannot observe uninitialized stack contents after a failed helper call.
CVE-2026-92520
bpf: Zero queue and stack outputs on lock failure
CVE-2026-92520
In the Linux kernel, the following vulnerability has been resolved: b ...
GHSA-fc4c-4457-gw27
In the Linux kernel, the following vulnerability has been resolved: bpf: Zero queue and stack outputs on lock failure Queue and stack pop/peek helpers accept an uninitialized output buffer because the verifier expects the helper to initialize it. The empty-map error path clears the buffer, but a failed lock acquisition returns -EBUSY without writing it. Clear the output before returning -EBUSY so BPF programs cannot observe uninitialized stack contents after a failed helper call.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-92520 (In the Linux kernel, the following vulnerability has been resolved: b ...) | 0% Низкий | 7 дней назад | ||
CVE-2026-92520 In the Linux kernel, the following vulnerability has been resolved: bpf: Zero queue and stack outputs on lock failure Queue and stack pop/peek helpers accept an uninitialized output buffer because the verifier expects the helper to initialize it. The empty-map error path clears the buffer, but a failed lock acquisition returns -EBUSY without writing it. Clear the output before returning -EBUSY so BPF programs cannot observe uninitialized stack contents after a failed helper call. | 0% Низкий | 7 дней назад | ||
CVE-2026-92520 bpf: Zero queue and stack outputs on lock failure | CVSS3: 5.5 | 0% Низкий | 2 дня назад | |
CVE-2026-92520 In the Linux kernel, the following vulnerability has been resolved: b ... | 0% Низкий | 7 дней назад | ||
GHSA-fc4c-4457-gw27 In the Linux kernel, the following vulnerability has been resolved: bpf: Zero queue and stack outputs on lock failure Queue and stack pop/peek helpers accept an uninitialized output buffer because the verifier expects the helper to initialize it. The empty-map error path clears the buffer, but a failed lock acquisition returns -EBUSY without writing it. Clear the output before returning -EBUSY so BPF programs cannot observe uninitialized stack contents after a failed helper call. | 0% Низкий | 7 дней назад |
Уязвимостей на страницу