CVE-2023-1386 Qemu: 9pfs: suid/sgid bits not dropped on file write
Information published.
Categories: Microsoft
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums
Information published.
Categories: Microsoft
CVE-2025-9901 Libsoup: improper handling of http vary header in libsoup caching
Information published.
Categories: Microsoft
CVE-2026-53160 misc: fastrpc: fix use-after-free race in fastrpc_map_create
Information published.
Categories: Microsoft
CVE-2024-25740 A memory leak flaw was found in the UBI driver in drivers/mtd/ubi/attach.c in the Linux kernel through 6.7.4 for UBI_IOCATT, because kobj->name is not released.
Information published.
Categories: Microsoft
CVE-2024-27079 iommu/vt-d: Fix NULL domain on device release
Information published.
Categories: Microsoft
CVE-2025-39707 drm/amdgpu: check if hubbub is NULL in debugfs/amdgpu_dm_capabilities
Information published.
Categories: Microsoft
CVE-2026-27136 Invoking duplicate attributes can cause XSS in golang.org/x/net/html
Information published.
Categories: Microsoft
CVE-2026-53010 ksmbd: fix use-after-free in smb2_open during durable reconnect
Information published.
Categories: Microsoft
CVE-2024-24864 Race condition vulnerability in Linux kernel media/dvb-core in dvbdmx_write()
Information published.
Categories: Microsoft
CVE-2024-41023 sched/deadline: Fix task_struct reference leak
Information published.
Categories: Microsoft
CVE-2026-52943 net: skbuff: fix missing zerocopy reference in pskb_carve helpers
Information published.
Categories: Microsoft
CVE-2025-39677 net/sched: Fix backlog accounting in qdisc_dequeue_internal
Information published.
Categories: Microsoft
CVE-2024-23848 In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c.
Information published.
Categories: Microsoft
CVE-2025-21635 rds: sysctl: rds_tcp_{rcv,snd}buf: avoid using current->nsproxy
Information published.
Categories: Microsoft
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.
Information published.
Categories: Microsoft
CVE-2023-52586 drm/msm/dpu: Add mutex lock in control vblank irq
Information published.
Categories: Microsoft
CVE-2026-53655 node-tar applies PAX size override to intermediary GNU long-name/long-link headers, causing tar parser interpretation differential (file smuggling)
Information published.
Categories: Microsoft
CVE-2026-44889 WebOb: Location header normalization during redirect leads to open redirect
Information published.
Categories: Microsoft


