CVE-2025-38303 Bluetooth: eir: Fix possible crashes on eir_create_adv_data
Information published.
Categories: Microsoft
CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames
Information published.
Categories: Microsoft
CVE-2024-56712 udmabuf: fix memory leak on last export_udmabuf() error path
Information published.
Categories: Microsoft
CVE-2026-53163 locking/rtmutex: Skip remove_waiter() when waiter is not enqueued
Information published.
Categories: Microsoft
CVE-2025-38333 f2fs: fix to bail out in get_new_segment()
Information published.
Categories: Microsoft
CVE-2026-3634 Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header
Information published.
Categories: Microsoft
CVE-2026-12003 CPython >3.11 Insecure Input Validation resulting in privilege escalation
Information published.
Categories: Microsoft
CVE-2024-53089 LoongArch: KVM: Mark hrtimer to expire in hard interrupt context
Information published.
Categories: Microsoft
CVE-2026-53150 thunderbolt: Reject zero-length property entries in validator
Information published.
Categories: Microsoft
CVE-2026-55653 Openssh: double free in red hat enterprise linux versions of openssh dh-gex client path during fips known-group validation leads to client-side denial of service
Information published.
Categories: Microsoft
CVE-2025-38264 nvme-tcp: sanitize request list handling
Information published.
Categories: Microsoft
CVE-2026-23276 net: add xmit recursion limit to tunnel xmit functions
Information published.
Categories: Microsoft
CVE-2026-52924 sctp: purge outqueue on stale COOKIE-ECHO handling
Information published.
Categories: Microsoft
CVE-2026-55655 Openssh: local mitm of x11 forwarding via abstract unix socket pre-binding in red hat enterprise linux openssh client versions
Information published.
Categories: Microsoft
CVE-2025-38096 wifi: iwlwifi: don't warn when if there is a FW error
Information published.
Categories: Microsoft
CVE-2026-23278 netfilter: nf_tables: always walk all pending catchall elements
Information published.
Categories: Microsoft
CVE-2026-53194 USB: serial: kl5kusb105: fix bulk-out buffer overflow
Information published.
Categories: Microsoft
CVE-2024-26962 dm-raid456, md/raid456: fix a deadlock for dm-raid456 while io concurrent with reshape
Information published.
Categories: Microsoft
CVE-2026-11525 undici vulnerable to Set-Cookie SameSite attribute downgrade via permissive substring matching
Information published.
Categories: Microsoft


