Threats Tagged 'cve-2026-46056'
View all threats tagged with 'cve-2026-46056'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-46056'
Click on any threat for detailed analysis and mitigation recommendations
Linux hwe edge: In the Linux kernel, the following vulnerability has been resolved: can: isotp: fix tx.buf use-after-free in isotp_sendmsg() isotp_sendmsg() uses… (CVE-2026-31474)CVE-2026-31474 0 A use-after-free vulnerability in the Linux kernel's CAN ISO-TP implementation (isotp_sendmsg) was resolved. The issue occurs when tx.buf is freed prematurely during socket release while still potentially being accessed, leading to memory corruption. This vulnerability affects multiple Linux kernel versions prior to 6.8.0 and related distributions. It has a high severity with a CVSS score of 7.8. A patch is available and should be applied to prevent potential system compromise. Join the discussion | GCVE Database | 04/22/2026, 14:16:00 UTC Added: 07/18/2026, 11:23:40 UTC |
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: fix potential UAF in SSP passkey handlers hci_conn lookup… (CVE-2026-46056)CVE-2026-46056 0 A use-after-free (UAF) vulnerability was identified and resolved in the Linux kernel's Bluetooth subsystem, specifically in the SSP passkey handlers. The flaw involved insufficient locking around connection lookup and field access, which could lead to concurrent freeing of connections. This vulnerability has a high CVSS score of 8.8, indicating significant potential impact on confidentiality, integrity, and availability. The issue is fixed by extending the hci_dev_lock critical section to cover all connection usage in the affected handlers. Multiple Linux kernel versions prior to 6.8.0-1061.64~22.04.1 and related builds are affected. A patch is available and should be applied to mitigate the risk. Join the discussion | GCVE Database | 05/27/2026, 14:17:00 UTC Added: 07/17/2026, 10:21:20 UTC |
Linux hwe edge: In the Linux kernel, the following vulnerability has been resolved: mptcp: fix slab-use-after-free in __inet_lookup_established The ehash table… (CVE-2026-31669)CVE-2026-31669 0 A high severity use-after-free vulnerability (CVE-2026-31669) in the Linux kernel's Multipath TCP (MPTCP) implementation was resolved. The flaw involves incorrect socket memory allocation for MPTCP IPv6 subflow child sockets due to improper slab cache initialization, leading to potential memory corruption. This vulnerability could allow an attacker to cause system compromise with high impact on confidentiality, integrity, and availability. Multiple Linux kernel subsystems were updated to fix this and related issues. Official patches are available and included in updated Linux kernel versions. Users should apply these updates and reboot to mitigate the risk. Join the discussion | GCVE Database | 04/24/2026, 15:16:00 UTC Added: 07/16/2026, 10:39:14 UTC |
Showing 1 to 3 of 3 results