Patch Day month
January 2026 vulnerabilities
A server-rendered hunting trail for January 2026: 310 returned patch records across 1 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.
310all patches
30critical
2exploitation detected
3in CISA KEV
139tracked here
Microsoft 310
Page 1 of 2 · records 1–200 of 310
Microsoft Security Response Center
CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-15504 ↗2026-04-11azl3 nodejs24 24.14.1-2 on Azure Linux 3.0ModerateOut-of-band—lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference
CVE-2026-23004 ↗2026-03-27cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list()
CVE-2025-71184 ↗2026-03-27cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—btrfs: fix NULL dereference on root when tracing inode eviction
CVE-2025-71183 ↗2026-03-27cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—btrfs: always detect conflicting inodes when logging inode refs
CVE-2026-24821 ↗2026-03-05cbl2 ceph 16.2.10-11 on CBL Mariner 2.0CriticalOut-of-band—A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine.
CVE-2026-22999 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net/sched: sch_qfq: do not free existing class in qfq_change_class()
CVE-2026-22998 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec
CVE-2026-22997 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net: can: j1939: j1939_xtp_rx_rts_session_active(): deactivate session upon receiving the second rts
CVE-2026-22996 ↗2026-02-28cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—net/mlx5e: Don't store mlx5e_priv in mlx5e_dev devlink priv
CVE-2026-22992 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—libceph: return the handler error from mon_handle_auth_done()
CVE-2026-22991 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—libceph: make free_choose_arg_map() resilient to partial allocation
CVE-2026-22990 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—libceph: replace overzealous BUG_ON in osdmap_apply_incremental()
CVE-2026-22984 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—libceph: prevent potential out-of-bounds reads in handle_auth_done()
CVE-2026-22982 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net: mscc: ocelot: Fix crash when adding interface under a lag
CVE-2026-22980 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—nfsd: provide locking for v4_end_grace
CVE-2026-22979 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net: fix memory leak in skb_segment_list for GRO packets
CVE-2026-22978 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0LowOut-of-band—wifi: avoid kernel-infoleak from struct iw_point
CVE-2026-22977 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net: sock: fix hardened usercopy panic in sock_recv_errqueue
CVE-2026-22976 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset
CVE-2025-71163 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—dmaengine: idxd: fix device leaks on compat bind and unbind
CVE-2025-71162 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-band—dmaengine: tegra-adma: Fix use-after-free
CVE-2025-71161 ↗2026-02-28cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—dm-verity: disable recursive forward error correction
CVE-2025-71160 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—netfilter: nf_tables: avoid chain re-validation if possible
CVE-2025-71154 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—net: usb: rtl8150: fix memory leak on usb_submit_urb() failure
CVE-2025-71152 ↗2026-02-28cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-band—net: dsa: properly keep track of conduit reference
CVE-2025-71150 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—ksmbd: Fix refcount leak when invalid session is found on session lookup
CVE-2025-71147 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-band—KEYS: trusted: Fix a memory leak in tpm2_load_cmd
CVE-2026-23000 ↗2026-02-26cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-band—net/mlx5e: Fix crash on profile change rollback failure
CVE-2026-1504 ↗2026-01-30Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-1504 Inappropriate implementation in Background Fetch API
CVE-2026-21509 ↗2026-01-26Microsoft Office 2019 for 32-bit editionsImportantOut-of-band72%Exploitation detectedCISA KEVVulnCheckENISAKB5002713Microsoft Office Security Feature Bypass Vulnerability
CVE-2026-1220 ↗2026-01-23Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-1220 Race in V8
CVE-2026-21227 ↗2026-01-22Azure Logic AppsCriticalOut-of-band0%Azure Logic Apps Elevation of Privilege Vulnerability
CVE-2026-21264 ↗2026-01-22Microsoft AccountCriticalOut-of-band0%Microsoft Account Spoofing Vulnerability
CVE-2026-21520 ↗2026-01-22Microsoft Copilot StudioCriticalOut-of-band1%Copilot Studio Information Disclosure Vulnerability
CVE-2026-21521 ↗2026-01-22Microsoft 365 Word CopilotCriticalOut-of-band1%Word Copilot Information Disclosure Vulnerability
CVE-2026-21524 ↗2026-01-22Azure Data ExplorerCriticalOut-of-band1%Azure Data Explorer Information Disclosure Vulnerability
CVE-2026-24304 ↗2026-01-22Azure Resource ManagerCriticalOut-of-band1%Azure Resource Manager Elevation of Privilege Vulnerability
CVE-2026-24305 ↗2026-01-22Microsoft Entra IDCriticalOut-of-band0%Azure Entra ID Elevation of Privilege Vulnerability
CVE-2026-24306 ↗2026-01-22Azure Front DoorCriticalOut-of-band1%Azure Front Door Elevation of Privilege Vulnerability
CVE-2026-24307 ↗2026-01-22Microsoft 365 CopilotCriticalOut-of-band1%M365 Copilot Information Disclosure Vulnerability
CVE-2026-23490 ↗2026-01-21azl3 python-pyasn1 0.4.8-1 on Azure Linux 3.0ImportantOut-of-band—pyasn1 has a DoS vulnerability in decoder
CVE-2025-56226 ↗2026-01-21azl3 libsndfile 1.2.2-3 on Azure Linux 3.0ModerateOut-of-band—Libsndfile <=1.2.2 contains a memory leak vulnerability in the mpeg_l3_encoder_init() function within the mpeg_l3_encode.c file.
CVE-2025-24528 ↗2026-01-21azl3 krb5 1.21.3-2 on Azure Linux 3.0ModerateOut-of-band—In MIT Kerberos 5 (aka krb5) before 1.22 (with incremental propagation), there is an integer overflow for a large update size to resize() in kdb_log.c. An authenticated attacker can cause an out-of-bounds write and kadmind daemon crash.
CVE-2025-15281 ↗2026-01-21azl3 glibc 2.38-16 on Azure Linux 3.0ModerateOut-of-band—wordexp with WRDE_REUSE and WRDE_APPEND may return uninitialized memory
CVE-2026-0992 ↗2026-01-19azl3 libxml2 2.11.5-7 on Azure Linux 3.0LowOut-of-band—Libxml2: libxml2: denial of service via crafted xml catalogs
CVE-2026-0989 ↗2026-01-19cbl2 libxml2 2.10.4-9 on CBL Mariner 2.0LowOut-of-band—Libxml2: unbounded relaxng include recursion leading to stack overflow
CVE-2026-0990 ↗2026-01-19cbl2 libxml2 2.10.4-9 on CBL Mariner 2.0ModerateOut-of-band—Libxml2: libxml2: denial of service via uncontrolled recursion in xml catalog processing
CVE-2025-62291 ↗2026-01-18azl3 strongswan 5.9.14-7 on Azure Linux 3.0ImportantOut-of-band—In the eap-mschapv2 plugin (client-side) in strongSwan before 6.0.3, a malicious EAP-MSCHAPv2 server can send a crafted message of size 6 through 8, and cause an integer underflow that potentially results in a heap-based buffer overflow.
CVE-2026-0716 ↗2026-01-17azl3 libsoup 3.4.4-14 on Azure Linux 3.0ModerateOut-of-band—Libsoup: out-of-bounds read in libsoup websocket frame processing
CVE-2026-0915 ↗2026-01-17azl3 glibc 2.38-16 on Azure Linux 3.0ModerateOut-of-band—getnetbyaddr and getnetbyaddr_r leak stack contents to DNS resovler
CVE-2026-0908 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0908 Use after free in ANGLE
CVE-2026-0907 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band8%Chromium: CVE-2026-0907 Incorrect security UI in Split View
CVE-2026-0905 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0905 Insufficient policy enforcement in Network
CVE-2026-0906 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0906 Incorrect security UI
CVE-2026-0904 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0904 Incorrect security UI in Digital Credentials
CVE-2026-0903 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0903 Insufficient validation of untrusted input in Downloads
CVE-2026-0902 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0902 Inappropriate implementation in V8
CVE-2026-0901 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0901 Inappropriate implementation in Blink
CVE-2026-0900 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0900 Inappropriate implementation in V8
CVE-2026-0899 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-0899 Out of bounds memory access in V8
CVE-2026-20960 ↗2026-01-16Microsoft Power Apps Desktop ClientImportantOut-of-band0%PowerApps Desktop Client Remote Code Execution Vulnerability
CVE-2026-21223 ↗2026-01-16Microsoft Edge (Chromium-based)N/AOut-of-band0%Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2026-0897 ↗2026-01-16azl3 keras 3.3.3-5 on Azure Linux 3.0ImportantOut-of-band—Denial of Service in Keras via Excessive Memory Allocation in HDF5 Metadata
CVE-2025-71120 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy_verf
CVE-2025-71107 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—f2fs: ensure node page reads complete before f2fs_put_super() finishes
CVE-2025-71105 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—f2fs: use global inline_xattr_slab instead of per-sb slab cache
CVE-2025-71102 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—scs: fix a wrong parameter in __scs_magic
CVE-2025-71138 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—drm/msm/dpu: Add missing NULL pointer check for pingpong interface
CVE-2025-71113 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—crypto: af_alg - zero initialize memory allocated via sock_kmalloc
CVE-2025-71125 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—tracing: Do not register unsupported perf events
CVE-2025-71130 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer
CVE-2025-71131 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—crypto: seqiv - Do not use req->iv after crypto_aead_encrypt
CVE-2025-71122 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—iommufd/selftest: Check for overflow in IOMMU_TEST_OP_ADD_RESERVED
CVE-2025-71127 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—wifi: mac80211: Discard Beacon frames to non-broadcast address
CVE-2025-71121 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—parisc: Do not reprogram affinitiy on ASP chip
CVE-2025-71129 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—LoongArch: BPF: Sign extend kfunc call arguments
CVE-2025-71115 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—um: init cpu_tasks[] earlier
CVE-2025-71108 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—usb: typec: ucsi: Handle incorrect num_connectors capability
CVE-2025-71143 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—clk: samsung: exynos-clkout: Assign .num before accessing .hws
CVE-2025-71137 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—octeontx2-pf: fix "UBSAN: shift-out-of-bounds error"
CVE-2025-71109 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—MIPS: ftrace: Fix memory corruption when kernel is located beyond 32 bits
CVE-2025-71112 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—net: hns3: add VLAN id validation before using
CVE-2025-71132 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—smc91x: fix broken irq-context in PREEMPT_RT
CVE-2025-71119 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—powerpc/kexec: Enable SMT before waking offline CPUs
CVE-2025-71114 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—via_wdt: fix critical boot hang due to unnamed resource allocation
CVE-2025-71118 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—ACPICA: Avoid walking the Namespace if start_node is NULL
CVE-2025-71111 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—hwmon: (w83791d) Convert macros to functions to avoid TOCTOU
CVE-2025-71133 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ImportantOut-of-band—RDMA/irdma: avoid invalid read in irdma_net_event
CVE-2025-71136 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status()
CVE-2025-71116 ↗2026-01-16azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—libceph: make decode_pool() more resilient against corrupted osdmaps
CVE-2026-0861 ↗2026-01-16cbl2 glibc 2.35-7 on CBL Mariner 2.0ModerateOut-of-band—Integer overflow in memalign leads to heap corruption
CVE-2025-68780 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—sched/deadline: only set free_cpus for online runqueues
CVE-2025-71101 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—platform/x86: hp-bioscfg: Fix out-of-bounds array access in ACPI package parsing
CVE-2025-71069 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—f2fs: invalidate dentry cache on failed whiteout creation
CVE-2025-68786 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—ksmbd: skip lock-range check on equal size to avoid size==0 underflow
CVE-2025-68794 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—iomap: adjust read range correctly for non-block-aligned positions
CVE-2025-68771 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—ocfs2: fix kernel BUG in ocfs2_find_victim_chain
CVE-2025-71094 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0LowOut-of-band—net: usb: asix: validate PHY address before use
CVE-2025-71074 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—functionfs: fix the open/removal races
CVE-2025-71091 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—team: fix check for port enabled in team_queue_override_port_prio_changed()
CVE-2025-68776 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—net/hsr: fix NULL pointer dereference in prp_get_untagged_frame()
CVE-2025-71098 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—ip6_gre: make ip6gre_header() robust
CVE-2025-71081 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—ASoC: stm32: sai: fix OF node leak on probe
CVE-2025-68797 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—char: applicom: fix NULL pointer dereference in ac_ioctl
CVE-2025-68775 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—net/handshake: duplicate handshake cancellations leak socket
CVE-2025-71088 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—mptcp: fallback earlier on simult connection
CVE-2025-68777 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—Input: ti_am335x_tsc - fix off-by-one error in wire_order validation
CVE-2025-68788 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—fsnotify: do not generate ACCESS/MODIFY events on child for special files
CVE-2025-68774 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—hfsplus: fix missing hfs_bnode_get() in __hfs_bnode_create
CVE-2025-71064 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—net: hns3: using the num_tqps in the vf driver to apply for resources
CVE-2025-71077 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—tpm: Cap the number of PCR banks
CVE-2025-68817 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency
CVE-2025-68819 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0CriticalOut-of-band—media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg()
CVE-2025-68816 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—net/mlx5: fw_tracer, Validate format string parameters
CVE-2025-68815 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—net/sched: ets: Remove drr class from the active list if it changes to strict
CVE-2025-68809 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—ksmbd: vfs: fix race on m_flags in vfs_cache
CVE-2025-71072 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—shmem: fix recovery on rename failures
CVE-2025-71084 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—RDMA/cm: Fix leaking the multicast GID table reference
CVE-2025-68773 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—spi: fsl-cpm: Check length parity before switching to 16 bit mode
CVE-2025-68795 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—ethtool: Avoid overflowing userspace buffer on stats query
CVE-2025-68818 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path"
CVE-2025-71097 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—ipv4: Fix reference count leak when using error routes with nexthop objects
CVE-2025-71067 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—ntfs: set dummy blocksize to read boot_block when mounting
CVE-2025-71075 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ImportantOut-of-band—scsi: aic94xx: fix use-after-free in device removal path
CVE-2025-68769 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix return value of f2fs_recover_fsync_data()
CVE-2025-71066 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change
CVE-2025-68787 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—netrom: Fix memory leak in nr_sendmsg()
CVE-2025-68772 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix to avoid updating compression context during writeback
CVE-2025-71065 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix to avoid potential deadlock
CVE-2025-68814 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—io_uring: fix filename leak in __io_openat_prep()
CVE-2025-68800 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats
CVE-2025-71068 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—svcrdma: bound check rq_pages index in inline path
CVE-2025-68783 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—ALSA: usb-mixer: us16x08: validate meter packet indices
CVE-2025-71083 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—drm/ttm: Avoid NULL pointer deref for evicted BOs
CVE-2025-68801 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—mlxsw: spectrum_router: Fix neighbour use-after-free
CVE-2025-68782 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—scsi: target: Reset t_task_cdb pointer in error case
CVE-2025-68768 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—inet: frags: flush pending skbs in fqdir_pre_exit()
CVE-2025-68798 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—perf/x86/amd: Check event before enable to avoid GPF
CVE-2025-71073 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—Input: lkkbd - disable pending work before freeing device
CVE-2025-71096 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—RDMA/core: Check for the presence of LS_NLA_TYPE_DGID correctly
CVE-2025-68778 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—btrfs: don't log conflicting inode if it's a dir moved in the current transaction
CVE-2025-68808 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—media: vidtv: initialize local pointers upon transfer of memory ownership
CVE-2025-71082 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—Bluetooth: btusb: revert use of devm_kzalloc in btusb
CVE-2025-71079 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—net: nfc: fix deadlock between nfc_unregister_device and rfkill_fop_write
CVE-2025-68785 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—net: openvswitch: fix middle attribute validation in push_nsh() action
CVE-2025-71093 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—e1000: fix OOB in e1000_tbi_should_accept()
CVE-2025-71089 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—iommu: disable SVA when CONFIG_X86 is set
CVE-2025-68799 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—caif: fix integer underflow in cffrml_receive()
CVE-2025-71087 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—iavf: fix off-by-one issues in iavf_config_rss_reg()
CVE-2025-68789 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0CriticalOut-of-band—hwmon: (ibmpex) fix use-after-free in high/low store
CVE-2025-68781 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-band—usb: phy: fsl-usb: Fix use-after-free in delayed work during device removal
CVE-2025-68767 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—hfsplus: Verify inode mode when loading from disk
CVE-2025-68806 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—ksmbd: fix buffer validation by including null terminator size in EA length
CVE-2025-71078 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—powerpc/64s/slb: Fix SLB multihit issue during SLB preload
CVE-2025-68796 ↗2026-01-15azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-band—f2fs: fix to avoid updating zero-sized extent in extent cache
CVE-2025-71095 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—net: stmmac: fix the crash issue for zero copy XDP_TX action
CVE-2025-68822 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—Input: alps - fix use-after-free bugs caused by dev3_register_work
CVE-2025-68803 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-band—NFSD: NFSv4 file creation neglects setting ACL
CVE-2025-68823 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-band—ublk: fix deadlock when reading partition table
CVE-2025-68471 ↗2026-01-14cbl2 avahi 0.8-4 on CBL Mariner 2.0ModerateOut-of-band—Avahi has a reachable assertion in lookup_start
CVE-2025-68468 ↗2026-01-14cbl2 avahi 0.8-4 on CBL Mariner 2.0ModerateOut-of-band—Avahi has a reachable assertion in lookup_multicast_callback
CVE-2025-68276 ↗2026-01-14cbl2 avahi 0.8-4 on CBL Mariner 2.0ModerateOut-of-band—Avahi has a reachable assertion in avahi_wide_area_scan_cache
CVE-2026-22695 ↗2026-01-14cbl2 libpng 1.6.52-1 on CBL Mariner 2.0ModerateOut-of-band—LIBPNG has a heap buffer over-read in png_image_read_direct_scaled (regression from CVE-2025-65018 fix)
CVE-2026-22801 ↗2026-01-14azl3 libpng 1.6.52-1 on Azure Linux 3.0ModerateOut-of-band—LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_*
CVE-2023-31096 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%More likelyKB5073379KB5073450MITRE: CVE-2023-31096 Windows Agere Soft Modem Driver Elevation of Privilege Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2024-55414 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Windows Motorola Soft Modem Driver Elevation of Privilege Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-0386 ↗2026-01-13Windows Server 2019Important1%KB5073379KB5073450Windows Deployment Services Remote Code Execution Vulnerability
CVE-2026-20803 ↗2026-01-13Microsoft SQL Server 2022 for x64-based Systems (GDR)Important1%KB5072936KB5073031Microsoft SQL Server Elevation of Privilege Vulnerability
and 1 more
KB5073177CVE-2026-20804 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450Windows Hello Tampering Vulnerability
CVE-2026-20805 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant5%Exploitation detectedCISA KEVVulnCheckENISAKB5073379KB5073450Desktop Window Manager Information Disclosure Vulnerability
CVE-2026-20808 ↗2026-01-13Windows Server 2025 (Server Core installation)Important0%KB5073379KB5073450Windows File Explorer Elevation of Privilege Vulnerability
and 1 more
KB5074109CVE-2026-20809 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450Windows Kernel Memory Elevation of Privilege Vulnerability
CVE-2026-20810 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073723KB5073724Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-20811 ↗2026-01-13Windows Server 2022Important0%KB5073379KB5073450Win32k Elevation of Privilege Vulnerability
CVE-2026-20812 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450LDAP Tampering Vulnerability
CVE-2026-20814 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2026-20815 ↗2026-01-13Windows Server 2025 (Server Core installation)Important0%KB5073379KB5074109Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability
CVE-2026-20816 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant2%More likelyKB5073379KB5073450Windows Installer Elevation of Privilege Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-20817 ↗2026-01-13Windows Server 2022Important5%More likelyKB5073379KB5073450Windows Error Reporting Service Elevation of Privilege Vulnerability
CVE-2026-20818 ↗2026-01-13Windows Server 2019Important1%KB5073379KB5073450Windows Kernel Information Disclosure Vulnerability
CVE-2026-20819 ↗2026-01-13Windows 11 Version 25H2 for x64-based SystemsImportant1%KB5073455KB5074109Windows Virtualization-Based Security (VBS) Information Disclosure Vulnerability
CVE-2026-20820 ↗2026-01-13Windows Server 2022 (Server Core installation)Important3%More likelyKB5073379KB5073450Windows Common Log File System Driver Elevation of Privilege Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-20821 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Remote Procedure Call Information Disclosure Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-20822 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsCritical0%KB5073379KB5073450Windows Graphics Component Elevation of Privilege Vulnerability
CVE-2026-20823 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Windows File Explorer Information Disclosure Vulnerability
CVE-2026-20824 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Windows Remote Assistance Security Feature Bypass Vulnerability
CVE-2026-20825 ↗2026-01-13Windows 10 Version 1809 for x64-based SystemsImportant1%KB5073379KB5073450Windows Hyper-V Information Disclosure Vulnerability
CVE-2026-20826 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450Tablet Windows User Interface (TWINUI) Subsystem Information Disclosure Vulnerability
CVE-2026-20827 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Tablet Windows User Interface (TWINUI) Subsystem Information Disclosure Vulnerability
CVE-2026-20828 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Windows rndismp6.sys Information Disclosure Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-20829 ↗2026-01-13Windows 10 Version 1809 for x64-based SystemsImportant1%KB5073379KB5073450TPM Trustlet Information Disclosure Vulnerability
CVE-2026-20830 ↗2026-01-13Windows Server 2025 (Server Core installation)Important0%KB5073379Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability
CVE-2026-20831 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-20832 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of Privilege Vulnerability
CVE-2026-20833 ↗2026-01-13Windows Server 2019Important0%KB5073379KB5073450Windows Kerberos Information Disclosure Vulnerability
CVE-2026-20834 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Windows Spoofing Vulnerability
and 12 more
KB5073455KB5073457KB5073695KB5073696KB5073697KB5073698KB5073699KB5073700KB5073722KB5073723KB5073724KB5074109CVE-2026-20835 ↗2026-01-13Windows Server 2025 (Server Core installation)Important1%KB5073379KB5073450Capability Access Management Service (camsvc) Information Disclosure Vulnerability
and 1 more
KB5074109CVE-2026-20836 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant0%KB5073379KB5073450DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2026-20837 ↗2026-01-13Windows 10 Version 1809 for 32-bit SystemsImportant1%KB5073379KB5073450Windows Media Remote Code Execution Vulnerability
The next page could not be added in place. The ordinary page link remains available; try it again to navigate normally.