CVE-2026-53146 thunderbolt: Limit XDomain response copy to actual frame size
Information published.
Categories: Microsoft
CVE-2025-38064 virtio: break and reset virtio devices on device_shutdown()
Information published.
Categories: Microsoft
CVE-2026-4224 Stack overflow parsing XML with deeply nested DTD content models
Information published.
Categories: Microsoft
CVE-2024-53114 x86/CPU/AMD: Clear virtualized VMLOAD/VMSAVE on Zen4 client
Information published.
Categories: Microsoft
CVE-2025-38041 clk: sunxi-ng: h616: Reparent GPU clock during frequency changes
Information published.
Categories: Microsoft
CVE-2026-48142 NGINX ngx_http_charset_module vulnerability
Information published.
Categories: Microsoft
CVE-2026-23247 tcp: secure_seq: add back ports to TS offset
Information published.
Categories: Microsoft
CVE-2026-53159 misc: fastrpc: fix DMA address corruption due to find_vma misuse
Information published.
Categories: Microsoft
CVE-2024-41008 drm/amdgpu: change vm->task_info handling
Information published.
Categories: Microsoft
CVE-2026-23240 tls: Fix race condition in tls_sw_cancel_work_tx()
Information published.
Categories: Microsoft
CVE-2026-53147 thunderbolt: Validate XDomain request packet size before type cast
Information published.
Categories: Microsoft
CVE-2026-56412 libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this...
Information published.
Categories: Microsoft
CVE-2025-21870 ASoC: SOF: ipc4-topology: Harden loops for looking up ALH copiers
Information published.
Categories: Microsoft
CVE-2026-2297 SourcelessFileLoader does not use io.open_code()
Information published.
Categories: Microsoft
CVE-2024-53133 drm/amd/display: Handle dml allocation failure to avoid crash
Information published.
Categories: Microsoft
CVE-2026-53236 tcp: restrict SO_ATTACH_FILTER to priv users
Information published.
Categories: Microsoft
CVE-2025-71227 wifi: mac80211: don't WARN for connections on invalid channels
Information published.
Categories: Microsoft
CVE-2025-21888 RDMA/mlx5: Fix a WARN during dereg_mr for DM type
Information published.
Categories: Microsoft


