Posts of last 24 hours
A vulnerability classified as critical has been found in Linux Kernel up to 7.2-rc2. The impacted element is the function iio_event_getfd of the component IIO Event. The manipulation leads to out-of-bounds read.
This vulnerability is documented as CVE-2026-64496. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/383292
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.6.144/6.12.96/6.18.38/7.1.3/7.2-rc2. Impacted is the function mpl115_read_raw of the component Mpl115. Performing a manipulation results in denial of service.
This vulnerability is cataloged as CVE-2026-64493. The attack must be initiated from a local position. There is no exploit available.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/383290
A vulnerability labeled as critical has been found in Linux Kernel up to 7.2-rc2. This issue affects the function gp2ap002_read_raw of the component iio light gp2ap002. Such manipulation leads to missing release of resource.
This vulnerability is listed as CVE-2026-64494. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
https://vuldb.com/vuln/383289
A vulnerability identified as critical has been detected in Linux Kernel up to 6.1.177/6.6.144/6.12.95/6.18.38/7.1.3. This vulnerability affects the function snd_ctl_new1 of the component ALSA. This manipulation causes null pointer dereference.
This vulnerability is tracked as CVE-2026-64489. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
https://vuldb.com/vuln/383288
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.18.38/7.1.3. This affects the function tmp006_probe of the component iio temperature driver. The manipulation results in use after free.
This vulnerability is identified as CVE-2026-64492. The attack is only possible with local access. There is not any exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/383287
A vulnerability was found in Linux Kernel up to 7.1.3. It has been rated as problematic. Affected by this issue is the function snd_usb_caiaq_tks4_dispatch of the component ALSA. The manipulation leads to out-of-bounds read.
This vulnerability is referenced as CVE-2026-64487. The attack can only be performed from a local environment. No exploit is available.
Upgrading the affected component is advised.
https://vuldb.com/vuln/383286
A vulnerability was found in Linux Kernel up to 7.1.3. It has been declared as very critical. Affected by this vulnerability is the function snd_ctl_new1 of the file layout.c of the component ALSA. Executing a manipulation can lead to null pointer dereference.
The identification of this vulnerability is CVE-2026-64488. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
https://vuldb.com/vuln/383285
A vulnerability was found in Linux Kernel up to 6.12.95/6.18.38/7.1.3. It has been classified as very critical. Affected is the function virtsnd_kctl_parse_cfg of the component ALSA. Performing a manipulation results in out-of-bounds read.
This vulnerability was named CVE-2026-64490. The attack needs to be approached locally. There is no available exploit.
Upgrading the affected component is recommended.
https://vuldb.com/vuln/383284
A vulnerability was found in Linux Kernel up to 6.1.177/6.6.144/6.12.95/6.18.38/7.1.3 and classified as problematic. This impacts the function snd_cmipci_spdif_controls of the component cmipci. Such manipulation leads to null pointer dereference.
This vulnerability is uniquely identified as CVE-2026-64486. Local access is required to approach this attack. No exploit exists.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/383283
A vulnerability has been found in Linux Kernel up to 6.18.38/7.1.3 and classified as very critical. This affects the function snd_compr_task_new of the component ALSA. This manipulation causes allocation of resources.
This vulnerability is handled as CVE-2026-64485. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
https://vuldb.com/vuln/383282