Posts of last 24 hours
A vulnerability has been found in Linux Kernel up to 6.18.38/7.1.3 and classified as critical. Affected by this vulnerability is the function handle_tpr_below_threshold of the component KVM. Performing a manipulation results in denial of service.
This vulnerability is known as CVE-2026-64513. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.
https://vuldb.com/vuln/383296
A vulnerability, which was classified as critical, was found in Linux Kernel up to 7.1.3. Affected is an unknown function of the component rtw89. Such manipulation leads to state issue.
This vulnerability is traded as CVE-2026-64506. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.
https://vuldb.com/vuln/383295
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 7.1.3. This impacts the function cpc_write of the file drivers/acpi/cppc_acpi.c of the component Cppc. This manipulation of the argument access_width causes out-of-bounds read.
This vulnerability appears as CVE-2026-64512. The attack requires local access. There is no available exploit.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/383294
A vulnerability classified as very critical was found in Linux Kernel up to 7.1.3. This affects the function FIELD_GET of the file linux/bitfield.h of the component scd30. The manipulation results in integer overflow.
This vulnerability is reported as CVE-2026-64497. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
https://vuldb.com/vuln/383293
A vulnerability described as critical has been identified in Linux Kernel up to 7.1.3. The affected element is the function bmg160_get_filter/bmg160_set_filter of the file drivers/iio/gyro/bmg160_core.c of the component Bmg160. Executing a manipulation of the argument bw_bits can lead to out-of-bounds read.
This vulnerability is registered as CVE-2026-64495. The attack needs to be launched locally. No exploit is available.
Upgrading the affected component is recommended.
https://vuldb.com/vuln/383291
A vulnerability classified as critical has been found in Linux Kernel up to 7.2-rc2. The impacted element is the function iio_event_getfd of the component IIO Event. The manipulation leads to out-of-bounds read.
This vulnerability is documented as CVE-2026-64496. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/383292
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.6.144/6.12.96/6.18.38/7.1.3/7.2-rc2. Impacted is the function mpl115_read_raw of the component Mpl115. Performing a manipulation results in denial of service.
This vulnerability is cataloged as CVE-2026-64493. The attack must be initiated from a local position. There is no exploit available.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/383290
A vulnerability labeled as critical has been found in Linux Kernel up to 7.2-rc2. This issue affects the function gp2ap002_read_raw of the component iio light gp2ap002. Such manipulation leads to missing release of resource.
This vulnerability is listed as CVE-2026-64494. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
https://vuldb.com/vuln/383289
A vulnerability identified as critical has been detected in Linux Kernel up to 6.1.177/6.6.144/6.12.95/6.18.38/7.1.3. This vulnerability affects the function snd_ctl_new1 of the component ALSA. This manipulation causes null pointer dereference.
This vulnerability is tracked as CVE-2026-64489. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
https://vuldb.com/vuln/383288
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.18.38/7.1.3. This affects the function tmp006_probe of the component iio temperature driver. The manipulation results in use after free.
This vulnerability is identified as CVE-2026-64492. The attack is only possible with local access. There is not any exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/383287