Количество 142
Количество 142
SUSE-SU-2026:1775-1
Security update for the Linux Kernel (Live Patch 11 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1736-1
Security update for the Linux Kernel (Live Patch 22 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1724-1
Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1706-1
Security update for the Linux Kernel (Live Patch 79 for SUSE Linux Enterprise 12 SP5)
SUSE-SU-2026:1690-1
Security update for the Linux Kernel RT (Live Patch 10 for SUSE Linux Enterprise 15 SP7)
SUSE-SU-2026:1678-1
Security update for the Linux Kernel
SUSE-SU-2026:1672-1
Security update for the Linux Kernel
SUSE-SU-2026:1671-2
Security update for the Linux Kernel
SUSE-SU-2026:1671-1
Security update for the Linux Kernel
SUSE-SU-2026:1670-1
Security update for the Linux Kernel
SUSE-SU-2026:1669-1
Security update for the Linux Kernel
GHSA-2274-3hgr-wxv6
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.
ELSA-2026-50255
ELSA-2026-50255: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT)
ELSA-2026-50254
ELSA-2026-50254: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT)
ELSA-2026-50253
ELSA-2026-50253: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT)
BDU:2026-06123
Уязвимость модуля для реализации AEAD-алгоритмов algif_aead ядра операционной системы Linux, позволяющая нарушителю повысить свои привилегии
CVE-2026-31677
In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a gate before extracting data into the RX scatterlist. Limit each extraction to the remaining af_alg_rcvbuf(sk) budget so that receive-side accounting matches the amount of data attached to the request. If skcipher cannot obtain enough RX space for at least one chunk while more data remains to be processed, reject the recvmsg call instead of rounding the request length down to zero.
CVE-2026-31677
In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a gate before extracting data into the RX scatterlist. Limit each extraction to the remaining af_alg_rcvbuf(sk) budget so that receive-side accounting matches the amount of data attached to the request. If skcipher cannot obtain enough RX space for at least one chunk while more data remains to be processed, reject the recvmsg call instead of rounding the request length down to zero.
CVE-2026-31677
In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a gate before extracting data into the RX scatterlist. Limit each extraction to the remaining af_alg_rcvbuf(sk) budget so that receive-side accounting matches the amount of data attached to the request. If skcipher cannot obtain enough RX space for at least one chunk while more data remains to be processed, reject the recvmsg call instead of rounding the request length down to zero.
CVE-2026-31677
crypto: af_alg - limit RX SG extraction by receive buffer budget
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
SUSE-SU-2026:1775-1 Security update for the Linux Kernel (Live Patch 11 for SUSE Linux Enterprise 15 SP7) | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1736-1 Security update for the Linux Kernel (Live Patch 22 for SUSE Linux Enterprise 15 SP6) | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1724-1 Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP7) | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1706-1 Security update for the Linux Kernel (Live Patch 79 for SUSE Linux Enterprise 12 SP5) | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1690-1 Security update for the Linux Kernel RT (Live Patch 10 for SUSE Linux Enterprise 15 SP7) | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1678-1 Security update for the Linux Kernel | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1672-1 Security update for the Linux Kernel | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1671-2 Security update for the Linux Kernel | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1671-1 Security update for the Linux Kernel | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1670-1 Security update for the Linux Kernel | 96% Критический | 3 месяца назад | ||
SUSE-SU-2026:1669-1 Security update for the Linux Kernel | 96% Критический | 3 месяца назад | ||
GHSA-2274-3hgr-wxv6 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly. | CVSS3: 7.8 | 96% Критический | 3 месяца назад | |
ELSA-2026-50255 ELSA-2026-50255: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT) | 3 месяца назад | |||
ELSA-2026-50254 ELSA-2026-50254: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT) | 3 месяца назад | |||
ELSA-2026-50253 ELSA-2026-50253: Unbreakable Enterprise kernel security update: Copy Fail (IMPORTANT) | 3 месяца назад | |||
BDU:2026-06123 Уязвимость модуля для реализации AEAD-алгоритмов algif_aead ядра операционной системы Linux, позволяющая нарушителю повысить свои привилегии | CVSS3: 7.8 | 96% Критический | 4 месяца назад | |
CVE-2026-31677 In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a gate before extracting data into the RX scatterlist. Limit each extraction to the remaining af_alg_rcvbuf(sk) budget so that receive-side accounting matches the amount of data attached to the request. If skcipher cannot obtain enough RX space for at least one chunk while more data remains to be processed, reject the recvmsg call instead of rounding the request length down to zero. | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-31677 In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a gate before extracting data into the RX scatterlist. Limit each extraction to the remaining af_alg_rcvbuf(sk) budget so that receive-side accounting matches the amount of data attached to the request. If skcipher cannot obtain enough RX space for at least one chunk while more data remains to be processed, reject the recvmsg call instead of rounding the request length down to zero. | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-31677 In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - limit RX SG extraction by receive buffer budget Make af_alg_get_rsgl() limit each RX scatterlist extraction to the remaining receive buffer budget. af_alg_get_rsgl() currently uses af_alg_readable() only as a gate before extracting data into the RX scatterlist. Limit each extraction to the remaining af_alg_rcvbuf(sk) budget so that receive-side accounting matches the amount of data attached to the request. If skcipher cannot obtain enough RX space for at least one chunk while more data remains to be processed, reject the recvmsg call instead of rounding the request length down to zero. | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-31677 crypto: af_alg - limit RX SG extraction by receive buffer budget | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу