A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.12.87/6.18.26/7.0.3/7.1-rc1. Affected by this issue is the function loopback_check_format of the component ALSA. The manipulation of the argument streams[] results in use after free.
This vulnerability is reported as CVE-2026-46090. The attacker must have access to the local network to execute the attack. No exploit exists.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. Affected by this vulnerability is the function array_index_nospec of the component ipv4. The manipulation of the argument icmp_pointers[] leads to privilege escalation.
This vulnerability is documented as CVE-2026-46037. The attack requires being on the local network. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.18.26/7.0.3/7.1-rc1. Affected is the function alloc_frozen_pages_nolock. Executing a manipulation can lead to stack-based buffer overflow.
This vulnerability is registered as CVE-2026-46035. The attack requires access to the local network. No exploit is available.
Upgrading the affected component is advised.
A vulnerability classified as critical has been found in Linux Kernel. This impacts the function pci_upstream_bridge of the component wifi. Performing a manipulation results in denial of service.
This vulnerability is cataloged as CVE-2026-46092. The attack must originate from the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3/7.1-rc1. This affects the function crypto_authenc_esn_setauthsize of the component crypto. Such manipulation leads to out-of-bounds read.
This vulnerability is listed as CVE-2026-46033. The attack must be carried out from within the local network. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. The impacted element is the function strnlen of the component ALSA. This manipulation causes infinite loop.
This vulnerability is tracked as CVE-2026-46088. The attack is only possible within the local network. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. The affected element is the function mana_ib_destroy_qp_rss of the component RDMA. The manipulation results in privilege escalation.
This vulnerability is identified as CVE-2026-46084. The attack can only be performed from the local network. There is not any exploit available.
The affected component should be upgraded.
A vulnerability identified as critical has been detected in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. Impacted is the function cleanup. The manipulation leads to allocation of resources.
This vulnerability is referenced as CVE-2026-46083. The attack needs to be initiated within the local network. No exploit is available.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. This issue affects the function device_add_disk of the file /sys/bus/rbd/add_single_major of the component rbd. Executing a manipulation can lead to null pointer dereference.
The identification of this vulnerability is CVE-2026-46079. The attack needs to be done within the local network. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.85/6.18.26/7.0.3. It has been rated as critical. This vulnerability affects the function nested_svm_l2_tlb_flush_enabled of the component nSVM. Performing a manipulation results in privilege escalation.
This vulnerability was named CVE-2026-46076. The attack needs to be approached within the local network. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability was found in Linux Kernel up to 6.12.85/6.18.26/7.0.3. It has been declared as critical. This affects an unknown part of the component spi. Such manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2026-46074. The attack can only be initiated within the local network. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. It has been classified as critical. Affected by this issue is the function run_unpack of the component ntfs3. This manipulation causes out-of-bounds read.
This vulnerability is handled as CVE-2026-46072. The attack can only be done within the local network. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Linux Kernel up to 6.12.85/6.18.26/7.0.3 and classified as critical. Affected by this vulnerability is the function jbd2_journal_cancel_revoke. The manipulation results in deadlock.
This vulnerability is known as CVE-2026-46061. Access to the local network is required for this attack. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.18.26/7.0.3 and classified as critical. Affected is the function adf_dev_up of the component IRQ Handler. The manipulation leads to privilege escalation.
This vulnerability is traded as CVE-2026-46060. Access to the local network is required for this attack to succeed. There is no exploit available.
The affected component should be upgraded.
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. This impacts the function __rds_rdma_map of the component net. Executing a manipulation can lead to privilege escalation.
This vulnerability appears as CVE-2026-46053. The attacker needs to be present on the local network. There is no available exploit.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3/7.1-rc1. This affects the function create_card. Performing a manipulation results in improper update of reference count.
This vulnerability is reported as CVE-2026-46048. The attacker must have access to the local network to execute the attack. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. The impacted element is the function v4l2_m2m_ctx_release of the component Amphion Vpu Driver. Such manipulation leads to use after free.
This vulnerability is documented as CVE-2026-46058. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. The affected element is the function spdif_passthru_playback_get_resources of the component ALSA. This manipulation causes infinite loop.
This vulnerability is registered as CVE-2026-46049. The attack requires access to the local network. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. Impacted is the function brelse of the component ext4. The manipulation results in improper update of reference count.
This vulnerability is cataloged as CVE-2026-46046. The attack must originate from the local network. There is no exploit available.
Upgrading the affected component is recommended.