Threats Tagged 'cve-2026-52972'
View all threats tagged with 'cve-2026-52972'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-52972'
Click on any threat for detailed analysis and mitigation recommendations
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 (CVE-2026-46076) * kernel: ext4: fix e4b bitmap inconsistency reports (CVE-2026-45942) * kernel: KVM: arm64: Reassign nested_mmus array behind mmu_lock (CVE-2026-46317) * kernel: fhandle: fix UAF due to unlocked ->mnt_ns read in may_decode_fh() (CVE-2026-53341) * kernel: perf/core: Detach event groups during remove_on_exec (CVE-2026-64556) * kernel: vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets (CVE-2026-68299) * kernel: crypto: tegra - fix rctx->cryptlen calculation in tegra_gcm_do_one_req() (CVE-2026-80522) * kernel: perf: Reject exited events as group leaders (CVE-2026-74753) * kernel: nvme-tcp: reject a read that transferred too few bytes (CVE-2026-89480) * kernel: KVM: arm64: Handle negative S1 walk levels in VNCR TLB size evaluation (CVE-2026-89775) Bug Fix(es) and Enhancement(s): * KVM: s390: Limit adapter indicator access to mapped page [rhel-10.2.z] (JIRA:RHEL-188661) * crypto: xxhash64 should not be fips approved [rhel-10.2.z] (JIRA:RHEL-254943) * kata-tdx TD vCPU stuck at reset vector (EIP=0xFFF0) on Intel Xeon 6 (Granite Rapids / Sierra Forest) ? guest never executes. (10.2.z) (JIRA:RHEL-260402) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 09/28/2026, 19:09:30 UTC Added: 07/17/2026, 10:21:54 UTC |
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 (CVE-2026-46076) * kernel: ext4: fix e4b bitmap inconsistency reports (CVE-2026-45942) * kernel: KVM: arm64: Reassign nested_mmus array behind mmu_lock (CVE-2026-46317) * kernel: fhandle: fix UAF due to unlocked ->mnt_ns read in may_decode_fh() (CVE-2026-53341) * kernel: perf/core: Detach event groups during remove_on_exec (CVE-2026-64556) * kernel: vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets (CVE-2026-68299) * kernel: crypto: tegra - fix rctx->cryptlen calculation in tegra_gcm_do_one_req() (CVE-2026-80522) * kernel: perf: Reject exited events as group leaders (CVE-2026-74753) * kernel: nvme-tcp: reject a read that transferred too few bytes (CVE-2026-89480) * kernel: KVM: arm64: Handle negative S1 walk levels in VNCR TLB size evaluation (CVE-2026-89775) Bug Fix(es) and Enhancement(s): * KVM: s390: Limit adapter indicator access to mapped page [rhel-10.2.z] (JIRA:RHEL-188661) * crypto: xxhash64 should not be fips approved [rhel-10.2.z] (JIRA:RHEL-254943) * kata-tdx TD vCPU stuck at reset vector (EIP=0xFFF0) on Intel Xeon 6 (Granite Rapids / Sierra Forest) ? guest never executes. (10.2.z) (JIRA:RHEL-260402) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 09/28/2026, 19:09:30 UTC Added: 05/28/2026, 20:54:26 UTC |
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.35.1 fixes various security issues. The following security issues were fixed: - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1270023). - CVE-2026-53233: netdev: fix double-free in netdev_nl_bind_rx_doit() (bsc#1269803). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1270024). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/26/2026, 19:11:03 UTC Added: 07/17/2026, 10:21:27 UTC |
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.35.1 fixes various security issues. The following security issues were fixed: - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1270023). - CVE-2026-53233: netdev: fix double-free in netdev_nl_bind_rx_doit() (bsc#1269803). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1270024). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/26/2026, 19:11:03 UTC Added: 05/28/2026, 20:54:45 UTC |
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.7.1 fixes various security issues. The following security issues were fixed: - CVE-2026-23161: mm/shmem, swap: fix race of truncate and swap entry split (bsc#1259134). - CVE-2026-23449: net/sched: teql: Fix double-free in teql_master_xmit (bsc#1262213). - CVE-2026-31629: nfc: llcp: add missing return after LLCP_CLOSED checks (bsc#1263791). - CVE-2026-31759: usb: ulpi: fix double free in ulpi_register_interface() error path (bsc#1264078). - CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306). - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-43110: wifi: brcmfmac: validate bsscfg indices in IF events (bsc#1264483). - CVE-2026-43206: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() (bsc#1266668). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46274: io-wq: check that the predecessor is hashed in io_wq_remove_pending() (bsc#1268624). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-53205: accel/ivpu: Add bounds checks for firmware log indices (bsc#1269903). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1270023). - CVE-2026-53233: netdev: fix double-free in netdev_nl_bind_rx_doit() (bsc#1269803). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1270024). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/26/2026, 16:20:27 UTC Added: 07/31/2026, 15:39:21 UTC |
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.28.1 fixes various security issues. The following security issues were fixed: - CVE-2026-23449: net/sched: teql: Fix double-free in teql_master_xmit (bsc#1262213). - CVE-2026-31629: nfc: llcp: add missing return after LLCP_CLOSED checks (bsc#1263791). - CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306). - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-43110: wifi: brcmfmac: validate bsscfg indices in IF events (bsc#1264483). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46274: io-wq: check that the predecessor is hashed in io_wq_remove_pending() (bsc#1268624). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-53205: accel/ivpu: Add bounds checks for firmware log indices (bsc#1269903). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1270023). - CVE-2026-53233: netdev: fix double-free in netdev_nl_bind_rx_doit() (bsc#1269803). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1270024). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/26/2026, 10:45:12 UTC Added: 07/18/2026, 11:24:50 UTC |
This update for the SUSE Linux Enterprise Kernel 6.12.0-160000.33.1 fixes various security issues. The following security issues were fixed: - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-53205: accel/ivpu: Add bounds checks for firmware log indices (bsc#1269903). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1270023). - CVE-2026-53233: netdev: fix double-free in netdev_nl_bind_rx_doit() (bsc#1269803). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1270024). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/26/2026, 10:43:46 UTC Added: 07/17/2026, 10:25:52 UTC |
0 This update for the SUSE Linux Enterprise Kernel 6.4.0-150600.23.115 fixes various security issues: The following security issues were fixed: - CVE-2025-40204,CVE-2026-53224,CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1253437 bsc#1270023 bsc#1270024). - CVE-2026-31759: usb: ulpi: fix double free in ulpi_register_interface() error path (bsc#1264078). - CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306). - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/25/2026, 01:33:37 UTC Added: 07/17/2026, 10:27:45 UTC |
0 This update for the SUSE Linux Enterprise Kernel 6.4.0-150600.23.112 fixes various security issues: The following security issues were fixed: - CVE-2025-40204,CVE-2026-53224,CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1253437 bsc#1270023 bsc#1270024). - CVE-2026-31629: nfc: llcp: add missing return after LLCP_CLOSED checks (bsc#1263791). - CVE-2026-31759: usb: ulpi: fix double free in ulpi_register_interface() error path (bsc#1264078). - CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306). - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-43206: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() (bsc#1266668). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/25/2026, 00:33:55 UTC Added: 07/18/2026, 11:21:51 UTC |
0 This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.53.52 fixes various security issues: The following security issues were fixed: - CVE-2025-40204,CVE-2026-53224,CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1253437 bsc#1270023 bsc#1270024). - CVE-2026-23240: Amend fix for CVE-2026-23240 ('tls: Fix race condition in tls_sw_cancel_work_tx()') (bsc#1262404). - CVE-2026-23449: net/sched: teql: Fix double-free in teql_master_xmit (bsc#1262213). - CVE-2026-31629: nfc: llcp: add missing return after LLCP_CLOSED checks (bsc#1263791). - CVE-2026-43077: crypto: algif_aead - Fix minimum RX size check for decryption (bsc#1265306). - CVE-2026-43109: x86: shadow stacks: proper error handling for mmap lock (bsc#1269282). - CVE-2026-43110: wifi: brcmfmac: validate bsscfg indices in IF events (bsc#1264483). - CVE-2026-46037: ipv4: icmp: validate reply type before using icmp_pointers (bsc#1267362). - CVE-2026-46242: eventpoll: fix ep_remove struct eventpoll / struct file UAF (bsc#1270300). - CVE-2026-46319: net/sched: act_ct: Only release RCU read lock after ct_ft (bsc#1268281). - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269034). - CVE-2026-52956: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() (bsc#1272139). - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269196). - CVE-2026-53133: RDMA/umem: Fix truncation for block sizes >= 4G (bsc#1269822). - CVE-2026-53182: wifi: nl80211: reject oversized EMA RNR lists (bsc#1269885). - CVE-2026-64530: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_hand (bsc#1271867). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (RefluXFS) (bsc#1271543). Join the discussion | GCVE Database | 08/25/2026, 00:33:45 UTC Added: 07/18/2026, 11:26:44 UTC |
Showing 1 to 10 of 15 results