CYBERSECURITYTRACKER
TRACKING3,741 stories685 vuln stories
Patch Day month

August 2026 vulnerabilities

A server-rendered hunting trail for August 2026: 1,834 returned patch records across 4 vendors. Browse page by page, or use “Load next” to keep adding rows without losing your place.

1,834all patches
57critical
0exploitation detected
1in CISA KEV
293tracked here
Microsoft 1,222Red Hat 581Cisco 30Android 1

Page 7 of 10 · records 1,201–1,400 of 1,834

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-43048 ↗2026-05-02azl3 kernel 6.6.145.2-1 on Azure Linux 3.0ImportantOut-of-bandHID: core: Mitigate potential OOB by removing bogus memset()
CVE-2026-43053 ↗2026-05-02azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandxfs: close crash window in attr dabtree inactivation
CVE-2026-4948 ↗2026-05-02cbl2 firewalld 1.0.3-2 on CBL Mariner 2.0ModerateOut-of-bandFirewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization
CVE-2026-31692 ↗2026-05-01azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandrtnetlink: add missing netlink_ns_capable() check for peer netns
CVE-2026-41607 ↗2026-04-30cbl2 ceph 16.2.10-11 on CBL Mariner 2.0ModerateOut-of-bandApache Thrift: C++ JSON OOB read
CVE-2026-41606 ↗2026-04-30azl3 thrift 0.15.0-6 on Azure Linux 3.0ModerateOut-of-bandApache Thrift: c_glib dispatch stack overflow
CVE-2026-41602 ↗2026-04-30azl3 influxdb 2.7.5-15 on Azure Linux 3.0ImportantOut-of-bandApache Thrift: Go TFramedTransport uint32 overflow
CVE-2026-31499 ↗2026-04-30azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandBluetooth: L2CAP: Fix deadlock in l2cap_conn_del()
CVE-2026-6238 ↗2026-04-30azl3 glibc 2.38-19 on Azure Linux 3.0ModerateOut-of-bandBuffer overread in ns_printrrf with corrupted RDATA field
CVE-2026-34003 ↗2026-04-29cbl2 xorg-x11-server 1.20.10-16ModerateOut-of-band0%Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access
CVE-2026-34001 ↗2026-04-29cbl2 xorg-x11-server 1.20.10-16 on CBL Mariner 2.0ImportantOut-of-bandXorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption
CVE-2018-5407 ↗2026-04-29cbl2 shim-unsigned-aarch64 15-5 on CBL Mariner 2.0ModerateOut-of-bandSimultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.
CVE-2026-40556 ↗2026-04-29cbl2 nano 6.0-3LowOut-of-bandInsecure Directory Permissions in GNU nano Leading to Privilege Abuse
CVE-2026-5435 ↗2026-04-29azl3 glibc 2.38-19 on Azure Linux 3.0ImportantOut-of-bandPotential buffer overflow in ns_sprintrrf TSIG handling path
CVE-2026-31688 ↗2026-04-29azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-banddriver core: enforce device_lock for driver_match_device()
CVE-2026-31592 ↗2026-04-26azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ModerateOut-of-bandKVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock
CVE-2026-31677 ↗2026-04-26azl3 kernel 6.6.138.1-1 on Azure Linux 3.0ModerateOut-of-bandcrypto: af_alg - limit RX SG extraction by receive buffer budget
CVE-2026-31579 ↗2026-04-26azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandwireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit
CVE-2026-31630 ↗2026-04-26cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandrxrpc: proc: size address buffers for %pISpc output
CVE-2026-31575 ↗2026-04-26cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandmm/userfaultfd: fix hugetlb fault mutex hash calculation
CVE-2026-31568 ↗2026-04-26azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-bands390/mm: Add missing secure storage access fixups for donated memory
CVE-2026-41907 ↗2026-04-26azl3 uuid 1.6.2-51 on Azure Linux 3.0ImportantOut-of-banduuid: Missing buffer bounds check in `v3`/`v5`/`v6` when `buf` is provided
CVE-2026-31431 ↗2026-04-23azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ImportantOut-of-band100%CISA KEVVulnCheckENISA5 mentionscrypto: algif_aead - Revert to operating out-of-place
CVE-2026-40255 ↗2026-04-18azl3 httpd 2.4.66-1 on Azure Linux 3.0ModerateOut-of-band@adonisjs/http-server has an Open Redirect vulnerability
CVE-2026-35469 ↗2026-04-17azl3 containerd2 0.0.0-1 on Azure Linux 3.0ImportantOut-of-bandSpdyStream: DOS on CRI
CVE-2026-29181 ↗2026-04-11azl3 containerd2 2.1.6-1 on Azure Linux 3.0ModerateOut-of-bandOpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification)
CVE-2026-34446 ↗2026-04-09azl3 pytorch 2.2.2-12 on Azure Linux 3.0ModerateOut-of-bandONNX: Arbitrary File Read via ExternalData Hardlink Bypass in ONNX load
CVE-2026-23472 ↗2026-04-05azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandserial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN
CVE-2026-23473 ↗2026-04-05azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandio_uring/poll: fix multishot recv missing EOF on wakeup race
CVE-2026-35549 ↗2026-04-04azl3 mariadb 10.11.16-1 on Azure Linux 3.0ModerateOut-of-bandAn issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 12.x before 12.2.2. If the caching_sha2_password authentication plugin is installed, and some user accounts are configured to use it, a large packet can crash the server because sha256_crypt_r uses alloca.
CVE-2026-34743 ↗2026-04-04azl3 xz 5.4.4-2 on Azure Linux 3.0LowOut-of-bandXZ Utils: Buffer overflow in lzma_index_append()
CVE-2026-35414 ↗2026-04-04azl3 openssh 9.8p1-5 on Azure Linux 3.0ModerateOut-of-bandOpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.
CVE-2026-35388 ↗2026-04-04cbl2 openssh 8.9p1-9 on CBL Mariner 2.0LowOut-of-bandOpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing sessions.
CVE-2026-4732 ↗2026-04-02azl3 libsndfile 1.2.2-4 on Azure Linux 3.0ImportantOut-of-bandOut-of-bounds Read Overflow in tildearrow/furnace
CVE-2026-4046 ↗2026-04-02cbl2 glibc 2.35-10 on CBL Mariner 2.0ImportantOut-of-bandiconv crash due to assertion failure with untrusted input
CVE-2026-21710 ↗2026-04-01cbl2 nodejs18 18.20.3-12ImportantOut-of-band26%A flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a request is received with a header named `__proto__` and the application accesses `req.headersDistinct`. When this occurs, `dest["__proto__"]` resolves to `Object.prototype` rather than `undefined`, causing `.push()` to be called on a non-array. This exception is thrown synchronously inside a property getter and cannot be intercepted by `error` event listeners, meaning it cannot be handled without wrapping every `req.headersDistinct` access in a `try/catch`. * This vulnerability affects all Node.js HTTP servers on **20.x, 22.x, 24.x, and v25.x**
CVE-2026-21717 ↗2026-04-01azl3 nodejs 20.14.0-15 on Azure Linux 3.0ModerateOut-of-bandA flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8's internal string table, an attacker can significantly degrade performance of the Node.js process. The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table. This vulnerability affects **20.x, 22.x, 24.x, and 25.x**.
CVE-2026-4833 ↗2026-03-29azl3 rubygem-rdiscount 2.2.7.1-1 on Azure Linux 3.0ModerateOut-of-bandOrc discount Markdown markdown.c compile recursion
CVE-2026-1519 ↗2026-03-29cbl2 bind 9.16.50-3 on CBL Mariner 2.0ImportantOut-of-bandExcessive NSEC3 iterations cause high CPU load during insecure delegation validation
CVE-2026-4647 ↗2026-03-27cbl2 binutils 2.37-20 on CBL Mariner 2.0ModerateOut-of-bandBinutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library
CVE-2025-71183 ↗2026-03-27cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandbtrfs: always detect conflicting inodes when logging inode refs
CVE-2026-23371 ↗2026-03-26azl3 kernel 6.6.130.1-3 on Azure Linux 3.0ModerateOut-of-bandsched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting
CVE-2026-23383 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandbpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing
CVE-2026-23377 ↗2026-03-26azl3 kernel 6.6.134.1-2 on Azure Linux 3.0ImportantOut-of-bandice: change XDP RxQ frag_size from DMA write length to xdp.frame_sz
CVE-2026-23361 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandPCI: dwc: ep: Flush MSI-X write before unmapping its ATU entry
CVE-2026-23333 ↗2026-03-26azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnetfilter: nft_set_rbtree: validate open interval overlap
CVE-2026-33186 ↗2026-03-26cbl2 grpc 1.42.0-11 on CBL Mariner 2.0ImportantOut-of-bandgRPC-Go has an authorization bypass via missing leading slash in :path
CVE-2026-27623 ↗2026-03-25azl3 valkey 8.0.7-1 on Azure Linux 3.0ImportantOut-of-bandValkey has Pre-Authentication DOS from malformed RESP request
CVE-2026-3099 ↗2026-03-25azl3 libsoup 3.4.4-12 on Azure Linux 3.0ModerateOut-of-bandLibsoup: libsoup: authentication bypass via digest authentication replay attack
CVE-2026-4438 ↗2026-03-22azl3 glibc 2.38-19 on Azure Linux 3.0ModerateOut-of-bandgethostbyaddr and gethostbyaddr_r return invalid DNS hostnames
CVE-2026-4437 ↗2026-03-22azl3 glibc 2.38-19 on Azure Linux 3.0ModerateOut-of-bandgethostbyaddr and gethostbyaddr_r may incorrectly handle DNS response
CVE-2026-3633 ↗2026-03-21azl3 libsoup 3.4.4-12 on Azure Linux 3.0LowOut-of-bandLibsoup: libsoup: header and http request injection via crlf injection
CVE-2026-3632 ↗2026-03-21azl3 libsoup 3.4.4-12 on Azure Linux 3.0LowOut-of-bandLibsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames
CVE-2026-3634 ↗2026-03-21cbl2 libsoup 3.0.4-12 on CBL Mariner 2.0LowOut-of-bandLibsoup: libsoup: http header injection and response splitting via crlf injection in content-type header
CVE-2026-23276 ↗2026-03-21azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandnet: add xmit recursion limit to tunnel xmit functions
CVE-2026-23207 ↗2026-03-20azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandspi: tegra210-quad: Protect curr_xfer check in IRQ handler
CVE-2026-3644 ↗2026-03-19azl3 python3 3.12.9-9 on Azure Linux 3.0ModerateOut-of-bandIncomplete control character validation in http.cookies
CVE-2026-4224 ↗2026-03-19azl3 python3 3.12.9-9 on Azure Linux 3.0ModerateOut-of-bandStack overflow parsing XML with deeply nested DTD content models
CVE-2026-23247 ↗2026-03-19azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ModerateOut-of-bandtcp: secure_seq: add back ports to TS offset
CVE-2025-71202 ↗2026-03-19cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandiommu/sva: invalidate stale IOTLB entries for kernel address space
CVE-2026-4105 ↗2026-03-17cbl2 systemd 250.3-23 on CBL Mariner 2.0ModerateOut-of-bandSystemd: systemd: privilege escalation via improper access control in registermachine d-bus method
CVE-2025-69648 ↗2026-03-15cbl2 binutils 2.37-20 on CBL Mariner 2.0ImportantOut-of-bandGNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF .debug_rnglists data. A logic flaw in the DWARF parsing path causes readelf to repeatedly print the same warning message without making forward progress, resulting in a non-terminating output loop that requires manual interruption. No evidence of memory corruption or code execution was observed.
CVE-2025-69647 ↗2026-03-15cbl2 binutils 2.37-20 on CBL Mariner 2.0ModerateOut-of-bandGNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF loclists data. A logic flaw in the DWARF parsing code can cause readelf to repeatedly print the same table output without making forward progress, resulting in an unbounded output loop that never terminates unless externally interrupted. A local attacker can trigger this behavior by supplying a malicious input file, causing excessive CPU and I/O usage and preventing readelf from completing its analysis.
CVE-2026-31802 ↗2026-03-14cbl2 tar 1.34-3 on CBL Mariner 2.0ImportantOut-of-bandnode-tar Symlink Path Traversal via Drive-Relative Linkpath
CVE-2026-23240 ↗2026-03-12azl3 kernel 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandtls: Fix race condition in tls_sw_cancel_work_tx()
CVE-2026-27137 ↗2026-03-11azl3 golang 1.25.7-1 on Azure Linux 3.0ModerateOut-of-bandIncorrect enforcement of email constraints in crypto/x509
CVE-2025-69644 ↗2026-03-11cbl2 binutils 2.37-20ModerateOut-of-band0%An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless output until manually interrupted. This issue affects versions prior to the upstream fix and allows a local attacker to cause excessive resource consumption by supplying a malicious input file.
CVE-2025-69651 ↗2026-03-11azl3 binutils 2.41-10 on Azure Linux 3.0ImportantOut-of-bandGNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitialized. Later, process_got_section_contents() may attempt to free an invalid r_symbol pointer, triggering memory corruption checks in glibc and causing the program to terminate with SIGABRT. No evidence of further memory corruption or code execution was observed; the impact is limited to denial of service.
CVE-2025-69649 ↗2026-03-11azl3 binutils 2.41-10 on Azure Linux 3.0ModerateOut-of-bandGNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) and abrupt termination. No evidence of memory corruption beyond the null pointer dereference, nor any possibility of code execution, was observed.
CVE-2025-69645 ↗2026-03-11azl3 binutils 2.41-11 on Azure Linux 3.0ModerateOut-of-bandBinutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was observed in binutils 2.44. A local attacker can trigger the crash by supplying a malicious input file.
CVE-2025-69650 ↗2026-03-11azl3 binutils 2.41-10 on Azure Linux 3.0ImportantOut-of-bandGNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT relocation handling, dump_relocations may return early without initializing the all_relocations array. As a result, process_got_section_contents() may pass an uninitialized r_symbol pointer to free(), leading to a double free and terminating the program with SIGABRT. No evidence of exploitable memory corruption or code execution was observed; the impact is limited to denial of service.
CVE-2025-69646 ↗2026-03-11azl3 binutils 2.41-10 on Azure Linux 3.0ModerateOut-of-bandBinutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop until the process is interrupted. The issue was observed in binutils 2.44. A local attacker can exploit this vulnerability by supplying a malicious input file, leading to excessive CPU and I/O usage and preventing completion of the objdump analysis.
CVE-2026-29786 ↗2026-03-11azl3 tar 1.35-2 on Azure Linux 3.0ImportantOut-of-bandnode-tar: Hardlink Path Traversal via Drive-Relative Linkpath
CVE-2026-2297 ↗2026-03-07cbl2 python3 3.9.19-19 on CBL Mariner 2.0ModerateOut-of-bandSourcelessFileLoader does not use io.open_code()
CVE-2026-0031 ↗2026-03-07cbl2 hyperv-daemons 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandIn multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-0032 ↗2026-03-07cbl2 hyperv-daemons 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandIn multiple functions of mem_protect.c, there is a possible out-of-bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2025-68121 ↗2026-03-05azl3 golang 1.26.0-1 on Azure Linux 3.0ImportantOut-of-bandUnexpected session resumption in crypto/tls
CVE-2026-0038 ↗2026-03-05azl3 hyperv-daemons 6.6.126.1-1 on Azure Linux 3.0ImportantOut-of-bandIn multiple functions of mem_protect.c, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2025-71161 ↗2026-02-28cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-banddm-verity: disable recursive forward error correction
CVE-2025-71150 ↗2026-02-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandksmbd: Fix refcount leak when invalid session is found on session lookup
CVE-2023-53543 ↗2026-02-25cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ImportantOut-of-bandvdpa: Add max vqp attr to vdpa_nl_policy for nlattr length check
CVE-2025-69299 ↗2026-02-22azl3 doxygen 1.9.8-2 on Azure Linux 3.0ImportantOut-of-bandWordPress Oxygen theme <= 6.0.8 - Server Side Request Forgery (SSRF) vulnerability
CVE-2025-71227 ↗2026-02-21azl3 kernel 6.6.121.1-1 on Azure Linux 3.0ModerateOut-of-bandwifi: mac80211: don't WARN for connections on invalid channels
CVE-2026-23214 ↗2026-02-21azl3 kernel 6.6.121.1-1 on Azure Linux 3.0ImportantOut-of-bandbtrfs: reject new transactions if the fs is fully read-only
CVE-2025-71225 ↗2026-02-21cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandmd: suspend array while updating raid_disks via sysfs
CVE-2026-23213 ↗2026-02-21azl3 kernel 6.6.121.1-1 on Azure Linux 3.0ImportantOut-of-banddrm/amd/pm: Disable MMIO access during SMU Mode 1 reset
CVE-2025-71228 ↗2026-02-21azl3 kernel 6.6.121.1-1 on Azure Linux 3.0ImportantOut-of-bandLoongArch: Set correct protection_map[] for VM_NONE/VM_SHARED
CVE-2026-0989 ↗2026-01-19cbl2 libxml2 2.10.4-9 on CBL Mariner 2.0LowOut-of-bandLibxml2: unbounded relaxng include recursion leading to stack overflow
CVE-2025-39770 ↗2026-01-18cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet: gso: Forbid IPv6 TSO with extensions on devices with only IPV6_CSUM
CVE-2025-71109 ↗2026-01-16azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-bandMIPS: ftrace: Fix memory corruption when kernel is located beyond 32 bits
CVE-2025-71074 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandfunctionfs: fix the open/removal races
CVE-2025-71072 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandshmem: fix recovery on rename failures
CVE-2025-71073 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandInput: lkkbd - disable pending work before freeing device
CVE-2025-71095 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-bandnet: stmmac: fix the crash issue for zero copy XDP_TX action
CVE-2025-68822 ↗2026-01-15azl3 kernel 6.6.119.3-3 on Azure Linux 3.0CriticalOut-of-bandInput: alps - fix use-after-free bugs caused by dev3_register_work
CVE-2024-58240 ↗2026-01-11cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandtls: separate no-async decryption request handling from async
CVE-2026-22184 ↗2026-01-09azl3 ceph 18.2.2-12 on Azure Linux 3.0CriticalOut-of-bandzlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname()
CVE-2025-68972 ↗2025-12-29cbl2 gnupg2 2.4.0-3 on CBL Mariner 2.0ModerateOut-of-bandIn GnuPG through 2.4.8, if a signed message has \f at the end of a plaintext line, an adversary can construct a modified message that places additional text after the signed material, such that signature verification of the modified message succeeds (although an "invalid armor" message is printed during verification). This is related to use of \f as a marker to denote truncation of a long plaintext line.
CVE-2025-59529 ↗2025-12-21cbl2 avahi 0.8-4 on CBL Mariner 2.0ModerateOut-of-bandsimple protocol server ignores accepts unlimited connections and logs failures without limit
CVE-2025-68384 ↗2025-12-20azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandElasticsearch Allocation of Resources Without Limits or Throttling
CVE-2025-68390 ↗2025-12-20azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandElasticsearch Allocation of Resources Without Limits or Throttling
CVE-2025-68146 ↗2025-12-19azl3 python-filelock 3.14.0-1 on Azure Linux 3.0ModerateOut-of-bandfilelock has TOCTOU race condition that allows symlink attacks during lock file creation
CVE-2025-68304 ↗2025-12-18azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ImportantOut-of-bandBluetooth: hci_core: lookup hci_conn on RX path on protocol side
CVE-2025-37959 ↗2025-12-18cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandbpf: Scrub packet on bpf_redirect_peer
CVE-2025-68188 ↗2025-12-17azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-bandtcp: use dst_dev_rcu() in tcp_fastopen_active_disable_ofo_check()
CVE-2025-68209 ↗2025-12-17azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-bandmlx5: Fix default values in create CQ
CVE-2025-40355 ↗2025-12-17azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-bandsysfs: check visibility before changing group attribute ownership
CVE-2025-68174 ↗2025-12-17azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ImportantOut-of-bandamd/amdkfd: enhance kfd process check in switch partition
CVE-2025-68230 ↗2025-12-17azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-banddrm/amdgpu: fix gpu page fault after hibernation on PF passthrough
CVE-2025-68201 ↗2025-12-17azl3 kernel 6.6.119.3-1 on Azure Linux 3.0ModerateOut-of-banddrm/amdgpu: remove two invalid BUG_ON()s
CVE-2025-68223 ↗2025-12-17azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-banddrm/radeon: delete radeon_fence_process in is_signaled, no deadlock
CVE-2025-68190 ↗2025-12-17azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ImportantOut-of-banddrm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked()
CVE-2025-68224 ↗2025-12-17azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ImportantOut-of-bandscsi: core: Fix a regression triggered by scsi_host_busy()
CVE-2025-44904 ↗2025-12-16cbl2 hdf5 1.14.6-1 on CBL Mariner 2.0ImportantOut-of-bandhdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.
CVE-2025-37731 ↗2025-12-16azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandElasticsearch Improper Authentication
CVE-2024-58241 ↗2025-12-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandBluetooth: hci_core: Disable works on hci_unregister_dev
CVE-2023-53376 ↗2025-12-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandscsi: mpi3mr: Use number of bits to manage bitmap sizes
CVE-2022-50393 ↗2025-12-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-banddrm/amdgpu: SDMA update use unlocked iterator
CVE-2024-26800 ↗2025-12-12cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandtls: fix use-after-free on failed backlog decryption
CVE-2023-53429 ↗2025-12-12cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandbtrfs: don't check PageError in __extent_writepage
CVE-2022-50407 ↗2025-12-12cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandcrypto: hisilicon/qm - increase the memory of local variables
CVE-2025-40339 ↗2025-12-10azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ModerateOut-of-banddrm/amdgpu: fix nullptr err of vm_handle_moved
CVE-2023-53749 ↗2025-12-09azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-bandx86: fix clear_user_rep_good() exception handling annotation
CVE-2025-40289 ↗2025-12-08azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-banddrm/amdgpu: hide VRAM sysfs attributes on GPUs without VRAM
CVE-2025-59775 ↗2025-12-07cbl2 httpd 2.4.65-1 on CBL Mariner 2.0ImportantOut-of-bandApache HTTP Server: NTLM Leakage on Windows through UNC SSRF
CVE-2025-61727 ↗2025-12-06cbl2 golang 1.18.8-10 on CBL Mariner 2.0ModerateOut-of-bandImproper application of excluded DNS name constraints when verifying wildcard names in crypto/x509
CVE-2025-40251 ↗2025-12-06azl3 kernel 6.6.112.1-2 on Azure Linux 3.0CriticalOut-of-banddevlink: rate: Unset parent pointer in devl_rate_nodes_destroy
CVE-2025-40247 ↗2025-12-06azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-banddrm/msm: Fix pgtable prealloc error path
CVE-2025-13837 ↗2025-12-05cbl2 python3 3.9.19-16 on CBL Mariner 2.0LowOut-of-bandOut-of-memory when loading Plist
CVE-2023-53254 ↗2025-12-05cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandcacheinfo: Fix shared_cpu_map to handle shared caches at different levels
CVE-2023-53178 ↗2025-12-03cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandmm: fix zswap writeback race condition
CVE-2022-50350 ↗2025-12-03cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandscsi: target: iscsi: Fix a race condition between login_work and the login thread
CVE-2025-64713 ↗2025-11-29cbl2 fluent-bit 3.0.6-4 on CBL Mariner 2.0ModerateOut-of-bandWebAssembly Micro Runtime frame_offset_bottom array bounds overflow in fast Interpreter mode when handling GET_GLOBAL(I32) followed by if opcode
CVE-2025-64704 ↗2025-11-29azl3 fluent-bit 3.1.9-6 on Azure Linux 3.0ModerateOut-of-bandWebAssembly Micro Runtime vulnerable to a segmentation fault in v128.store instruction
CVE-2025-38656 ↗2025-11-28azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandwifi: iwlwifi: Fix error code in iwl_op_mode_dvm_start()
CVE-2025-54770 ↗2025-11-21cbl2 grub2 2.06-15 on CBL Mariner 2.0ModerateOut-of-bandGrub2: use-after-free in net_set_vlan
CVE-2025-54771 ↗2025-11-21cbl2 grub2 2.06-15 on CBL Mariner 2.0ModerateOut-of-bandGrub2: use-after-free in grub_file_close()
CVE-2022-50233 ↗2025-11-21cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandBluetooth: eir: Fix using strlen with hdev->{dev_name,short_name}
CVE-2022-50167 ↗2025-11-19cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandbpf: fix potential 32-bit overflow when accessing ARRAY map element
CVE-2022-50073 ↗2025-11-19cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null
CVE-2025-2998 ↗2025-11-15azl3 pytorch 2.2.2-7 on Azure Linux 3.0ModerateOut-of-bandPyTorch torch.nn.utils.rnn.pad_packed_sequence memory corruption
CVE-2025-37820 ↗2025-11-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandxen-netfront: handle NULL returned by xdp_convert_buff_to_frame()
CVE-2023-53093 ↗2025-11-14cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandtracing: Do not let histogram values have some modifiers
CVE-2023-53074 ↗2025-11-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-banddrm/amdgpu: fix ttm_bo calltrace warning in psp_hw_fini
CVE-2023-53068 ↗2025-11-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet: usb: lan78xx: Limit packet length to skb->len
CVE-2023-53042 ↗2025-11-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-banddrm/amd/display: Do not set DRR on pipe Commit
CVE-2023-53037 ↗2025-11-14cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandscsi: mpi3mr: Bad drive in topology results kernel crash
CVE-2022-49932 ↗2025-11-14cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandKVM: VMX: Do _all_ initialization before exposing /dev/kvm to userspace
CVE-2025-40180 ↗2025-11-14azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-bandmailbox: zynqmp-ipi: Fix out-of-bounds access in mailbox cleanup loop
CVE-2011-10034 ↗2025-11-14azl3 autogen 5.18.16-9 on Azure Linux 3.0ModerateOut-of-bandIRAI AUTOMGEN <= 8.0.0.7 Use-After-Free Remote DoS
CVE-2025-40158 ↗2025-11-13azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-bandipv6: use RCU in ip6_output()
CVE-2025-40170 ↗2025-11-13azl3 kernel 6.6.119.3-3 on Azure Linux 3.0ImportantOut-of-bandnet: use dst_dev_rcu() in sk_setup_caps()
CVE-2025-40168 ↗2025-11-13azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandsmc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match().
CVE-2025-40146 ↗2025-11-13azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ModerateOut-of-bandblk-mq: fix potential deadlock while nr_requests grown
CVE-2025-40139 ↗2025-11-13azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ImportantOut-of-bandsmc: Use __sk_dst_get() and dst_dev_rcu() in in smc_clc_prfx_set().
CVE-2025-60876 ↗2025-11-13azl3 busybox 1.36.1-19 on Azure Linux 3.0ImportantOut-of-bandBusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).
CVE-2025-64436 ↗2025-11-09cbl2 kubevirt 0.59.0-30 on CBL Mariner 2.0ModerateOut-of-bandKubeVirt Excessive Role Permissions Could Enable Unauthorized VMI Migrations Between Nodes
CVE-2025-22124 ↗2025-11-05azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandmd/md-bitmap: fix wrong bitmap_limit for clustermd when write sb
CVE-2025-22090 ↗2025-11-02cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandx86/mm/pat: Fix VM_PAT handling when fork() fails in copy_page_range()
CVE-2025-21899 ↗2025-11-02cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandtracing: Fix bad hist from corrupting named_triggers list
CVE-2025-21907 ↗2025-11-02azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandmm: memory-failure: update ttu flag inside unmap_poisoned_folio
CVE-2024-38595 ↗2025-11-02azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ModerateOut-of-bandnet/mlx5: Fix peer devlink set for SF representor devlink port
CVE-2025-21881 ↗2025-11-01cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-banduprobes: Reject the shared zeropage in uprobe_write_opcode()
CVE-2025-21872 ↗2025-11-01cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandefi: Don't map the entire mokvar table to determine its size
CVE-2023-53012 ↗2025-11-01cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0LowOut-of-bandthermal: core: call put_device() only after device_register() fails
CVE-2023-53010 ↗2025-11-01cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandbnxt: Do not read past the end of test names
CVE-2023-53009 ↗2025-11-01cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-banddrm/amdkfd: Add sync after creating vram bo
CVE-2025-40102 ↗2025-10-31azl3 kernel 6.6.104.2-4 on Azure Linux 3.0ImportantOut-of-bandKVM: arm64: Prevent access to vCPU events before init
CVE-2025-58186 ↗2025-10-31cbl2 gcc 11.2.0-8 on CBL Mariner 2.0ModerateOut-of-bandLack of limit when parsing cookies can cause memory exhaustion in net/http
CVE-2025-61725 ↗2025-10-31cbl2 golang 1.22.7-5 on CBL Mariner 2.0ImportantOut-of-bandExcessive CPU consumption in ParseAddress in net/mail
CVE-2025-58183 ↗2025-10-31cbl2 cri-o 1.22.3-16 on CBL Mariner 2.0ModerateOut-of-bandUnbounded allocation when parsing GNU sparse map in archive/tar
CVE-2025-21838 ↗2025-10-31cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandusb: gadget: core: flush gadget workqueue after device removal
CVE-2025-21831 ↗2025-10-31cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandPCI: Avoid putting some root ports into D3 on TUXEDO Sirius Gen1
CVE-2025-21738 ↗2025-10-30cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandata: libata-sff: Ensure that we cannot write outside the allocated buffer
CVE-2023-52981 ↗2025-10-30cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-banddrm/i915: Fix request ref counting during error capture & debugfs dump
CVE-2025-40057 ↗2025-10-29azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandptp: Add a upper bound on max_vclocks
CVE-2025-40075 ↗2025-10-29azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandtcp_metrics: use dst_dev_net_rcu()
CVE-2025-40065 ↗2025-10-29azl3 kernel 6.6.117.1-1 on Azure Linux 3.0ImportantOut-of-bandRISC-V: KVM: Write hgatp register with valid mode bits
CVE-2025-11840 ↗2025-10-29cbl2 binutils 2.37-19LowOut-of-band0%GNU Binutils ldmisc.c vfinfo out-of-bounds
CVE-2025-40039 ↗2025-10-29cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandksmbd: Fix race condition in RPC handle list access
CVE-2025-40064 ↗2025-10-29azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandsmc: Fix use-after-free in __pnet_find_base_ndev().
CVE-2025-40074 ↗2025-10-29azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandipv4: start using dst_dev_rcu()
CVE-2024-58053 ↗2025-10-29cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandrxrpc: Fix handling of received connection abort
CVE-2024-46716 ↗2025-10-28cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-banddmaengine: altera-msgdma: properly free descriptor in msgdma_free_descriptor
CVE-2025-21712 ↗2025-10-25cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandmd/md-bitmap: Synchronize bitmap_get_stats() with bitmap lifetime
CVE-2025-62813 ↗2025-10-24cbl2 lz4 1.9.4-1 on CBL Mariner 2.0ModerateOut-of-bandLZ4 through 1.10.0 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact when the application processes untrusted LZ4 frames. For example, LZ4F_createCDict_advanced in lib/lz4frame.c mishandles NULL checks.
CVE-2022-49562 ↗2025-10-24cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandKVM: x86: Use __try_cmpxchg_user() to update guest PTE A/D bits
CVE-2024-38564 ↗2025-10-22cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandbpf: Add BPF_PROG_TYPE_CGROUP_SKB attach type enforcement in BPF_LINK_CREATE
CVE-2025-40003 ↗2025-10-19azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-bandnet: mscc: ocelot: Fix use-after-free caused by cyclic delayed work
CVE-2024-57899 ↗2025-10-19cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandwifi: mac80211: fix mbss changed flags corruption on 32 bit systems
CVE-2025-21629 ↗2025-10-18cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets
CVE-2024-56709 ↗2025-10-17cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandio_uring: check if iowq is killed before queuing
CVE-2024-49568 ↗2025-10-17cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg
CVE-2025-39990 ↗2025-10-16azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandbpf: Check the helper function is valid in get_helper_proto
CVE-2020-8130 ↗2025-10-12azl3 ruby 3.3.5-5 on Azure Linux 3.0ModerateOut-of-bandThere is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character `|`.
CVE-2025-37727 ↗2025-10-11azl3 rubygem-elasticsearch 8.9.0-1 on Azure Linux 3.0ModerateOut-of-bandElasticsearch Insertion of sensitive information in log file
CVE-2025-11413 ↗2025-10-11cbl2 binutils 2.37-16 on CBL Mariner 2.0ModerateOut-of-bandGNU Binutils Linker elflink.c elf_link_add_object_symbols out-of-bounds
CVE-2024-46717 ↗2025-10-11cbl2 kernel 5.15.202.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet/mlx5e: SHAMPO, Fix incorrect page release
CVE-2024-41079 ↗2025-10-11cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandnvmet: always initialize cqe.result
CVE-2024-56641 ↗2025-10-08cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandnet/smc: initialize close_work early to avoid warning