Количество 39
Количество 39
GHSA-6p99-w6f4-qcvq
In the Linux kernel, the following vulnerability has been resolved: xfs: resample the data fork mapping after cycling ILOCK xfs_reflink_fill_{cow_hole,delalloc} are both presented with an inode, a data fork mapping, and a cow fork mapping. Unfortunately, these two helpers cycle the ILOCK to grab a transaction, which means that the mappings are stale as soon as we reacquire the ILOCK. Currently we refresh the cow fork mapping by re-calling xfs_find_trim_cow_extent, but we don't refresh the data fork mapping beforehand, which means that the xfs_bmap_trim_cow in that function queries the refcount btree about the wrong physical blocks and returns an inaccurate value in *shared. If *shared is now false, the directio write proceeds with a stale data fork mapping. Fix this by querying the data fork mapping if the sequence counter changes across the ILOCK cycle.
BDU:2026-10442
Уязвимость функций xfs_reflink_fill_cow_hole() и xfs_reflink_fill_delalloc() модуля fs/xfs/xfs_reflink.c файловой системы XFS ядра операционных систем Linux, позволяющая нарушителю оказать влияние на конфиденциальность, целостность и доступность защищаемой информации
GHSA-96hg-7p79-ggx2
In the Linux kernel, the following vulnerability has been resolved: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete KASAN reproduces a slab-use-after-free in __xfrm_state_delete()'s hlist_del_rcu calls under syzkaller load on linux-6.12.y stable (reproduced on 6.12.47, also reachable via the same code path on torvalds/master and on the ipsec tree). Nine unique signatures cluster in the xfrm_state lifecycle, the load-bearing one being: BUG: KASAN: slab-use-after-free in __hlist_del include/linux/list.h:990 [inline] BUG: KASAN: slab-use-after-free in hlist_del_rcu include/linux/rculist.h:516 [inline] BUG: KASAN: slab-use-after-free in __xfrm_state_delete net/xfrm/xfrm_state.c Write of size 8 at addr ffff8881198bcb70 by task kworker/u8:9/435 Workqueue: netns cleanup_net Call Trace: __hlist_del / hlist_del_rcu __xfrm_state_delete xfrm_state_delete xfrm_state_flush xfrm_state_fini ops_exit_list cleanup_net The other observed signatur...
RLSA-2026:39494
Important: kernel security, bug fix, and enhancement update
ELSA-2026-39494
ELSA-2026-39494: kernel security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-50319
ELSA-2026-50319: Unbreakable Enterprise kernel security update (IMPORTANT)
RLSA-2026:36018
Important: kernel security, bug fix, and enhancement update
ELSA-2026-42919
ELSA-2026-42919: kernel security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-36018
ELSA-2026-36018: kernel security, bug fix, and enhancement update (IMPORTANT)
SUSE-SU-2026:2638-1
Security update for the Linux Kernel
SUSE-SU-2026:2658-1
Security update for the Linux Kernel
SUSE-SU-2026:3156-1
Security update for the Linux Kernel
SUSE-SU-2026:2450-1
Security update for the Linux Kernel
SUSE-SU-2026:2800-1
Security update for the Linux Kernel
SUSE-SU-2026:3166-1
Security update for the Linux Kernel
SUSE-SU-2026:3130-1
Security update for the Linux Kernel
SUSE-SU-2026:2799-1
Security update for the Linux Kernel
ELSA-2026-50372
ELSA-2026-50372: Unbreakable Enterprise kernel security update (IMPORTANT)
openSUSE-SU-2026:21388-1
Security update for the Linux Kernel
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-6p99-w6f4-qcvq In the Linux kernel, the following vulnerability has been resolved: xfs: resample the data fork mapping after cycling ILOCK xfs_reflink_fill_{cow_hole,delalloc} are both presented with an inode, a data fork mapping, and a cow fork mapping. Unfortunately, these two helpers cycle the ILOCK to grab a transaction, which means that the mappings are stale as soon as we reacquire the ILOCK. Currently we refresh the cow fork mapping by re-calling xfs_find_trim_cow_extent, but we don't refresh the data fork mapping beforehand, which means that the xfs_bmap_trim_cow in that function queries the refcount btree about the wrong physical blocks and returns an inaccurate value in *shared. If *shared is now false, the directio write proceeds with a stale data fork mapping. Fix this by querying the data fork mapping if the sequence counter changes across the ILOCK cycle. | CVSS3: 7.8 | 1% Низкий | 4 дня назад | |
BDU:2026-10442 Уязвимость функций xfs_reflink_fill_cow_hole() и xfs_reflink_fill_delalloc() модуля fs/xfs/xfs_reflink.c файловой системы XFS ядра операционных систем Linux, позволяющая нарушителю оказать влияние на конфиденциальность, целостность и доступность защищаемой информации | CVSS3: 8.4 | 1% Низкий | 15 дней назад | |
GHSA-96hg-7p79-ggx2 In the Linux kernel, the following vulnerability has been resolved: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete KASAN reproduces a slab-use-after-free in __xfrm_state_delete()'s hlist_del_rcu calls under syzkaller load on linux-6.12.y stable (reproduced on 6.12.47, also reachable via the same code path on torvalds/master and on the ipsec tree). Nine unique signatures cluster in the xfrm_state lifecycle, the load-bearing one being: BUG: KASAN: slab-use-after-free in __hlist_del include/linux/list.h:990 [inline] BUG: KASAN: slab-use-after-free in hlist_del_rcu include/linux/rculist.h:516 [inline] BUG: KASAN: slab-use-after-free in __xfrm_state_delete net/xfrm/xfrm_state.c Write of size 8 at addr ffff8881198bcb70 by task kworker/u8:9/435 Workqueue: netns cleanup_net Call Trace: __hlist_del / hlist_del_rcu __xfrm_state_delete xfrm_state_delete xfrm_state_flush xfrm_state_fini ops_exit_list cleanup_net The other observed signatur... | CVSS3: 7.8 | 0% Низкий | 2 месяца назад | |
RLSA-2026:39494 Important: kernel security, bug fix, and enhancement update | 12 дней назад | |||
ELSA-2026-39494 ELSA-2026-39494: kernel security, bug fix, and enhancement update (IMPORTANT) | 12 дней назад | |||
ELSA-2026-50319 ELSA-2026-50319: Unbreakable Enterprise kernel security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:36018 Important: kernel security, bug fix, and enhancement update | 16 дней назад | |||
ELSA-2026-42919 ELSA-2026-42919: kernel security, bug fix, and enhancement update (IMPORTANT) | 6 дней назад | |||
ELSA-2026-36018 ELSA-2026-36018: kernel security, bug fix, and enhancement update (IMPORTANT) | 20 дней назад | |||
SUSE-SU-2026:2638-1 Security update for the Linux Kernel | около 1 месяца назад | |||
SUSE-SU-2026:2658-1 Security update for the Linux Kernel | около 1 месяца назад | |||
SUSE-SU-2026:3156-1 Security update for the Linux Kernel | 6 дней назад | |||
SUSE-SU-2026:2450-1 Security update for the Linux Kernel | около 1 месяца назад | |||
SUSE-SU-2026:2800-1 Security update for the Linux Kernel | 19 дней назад | |||
SUSE-SU-2026:3166-1 Security update for the Linux Kernel | 6 дней назад | |||
SUSE-SU-2026:3130-1 Security update for the Linux Kernel | 7 дней назад | |||
SUSE-SU-2026:2799-1 Security update for the Linux Kernel | 19 дней назад | |||
ELSA-2026-50372 ELSA-2026-50372: Unbreakable Enterprise kernel security update (IMPORTANT) | 26 дней назад | |||
openSUSE-SU-2026:21388-1 Security update for the Linux Kernel | 6 дней назад |
Уязвимостей на страницу