CYBERSECURITYTRACKER
TRACKING8,104 stories in this site build1,791 vulnerability news stories in this site build
Vulnerabilities

August 2026 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 1 vulnerability with exploitation detected in the wild this month. This defender-focused view covers 6,966 vulnerabilities across 19,043 returned patch records from 5 vendors. Filter the complete month, or browse the static page trail without JavaScript.

19,043all patch recordsClear filters2,469criticalShow these records1Microsoft exploitation detectedShow these records3Microsoft in the Known Exploited Vulnerabilities catalogShow these records15,939tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

My Stack only keeps records whose vendor you have pinned. Pins are the vendors you added to My Stack on the home page. Your pin list is saved only in this browser. Shared view and feed requests include the selected vendor names in their URLs. Pins never change what the tracker collects or scores.

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 92 of 96 · records 18,201 to 18,400 of 19,043

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2023-52920 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: support non-r10 register spill/fill to/from stack in precision tracking
CVE-2024-43824 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablePCI: endpoint: pci-epf-test: Make use of cached 'epc_features' in pci_epf_test_core_init()
CVE-2025-38333 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix to bail out in get_new_segment()
CVE-2025-38097 ↗azl3 kernel 6.6.92.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableespintcp: remove encap socket caching to avoid reference leak
CVE-2025-38127 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableice: fix Tx scheduler error handling in XDP callback
CVE-2025-38192 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: clear the dst when changing skb protocol
CVE-2025-38334 ↗azl3 kernel 6.6.92.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablex86/sgx: Prevent attempts to reclaim poisoned pages
CVE-2025-4432 ↗azl3 python-tensorboard 2.16.2-6 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRing: some aes functions may panic when overflow checking is enabled in ring
CVE-2024-49569 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvme-rdma: unquiesce admin_q before destroy it
CVE-2025-22057 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: decrease cached dst counters in dst_release
CVE-2025-37800 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledriver core: fix potential NULL pointer dereference in dev_uevent()
CVE-2025-37801 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablespi: spi-imx: Add check for spi_imx_setupxfer()
CVE-2025-37852 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdgpu: handle amdgpu_cgs_create_device() errors in amd_powerplay_create()
CVE-2025-37853 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: debugfs hang_hws skip GPU with MES
CVE-2025-37878 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableperf/core: Fix WARN_ON(!ctx) in __free_event() for partial init
CVE-2025-37884 ↗azl3 kernel 6.6.92.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Fix deadlock between rcu_tasks_trace and event_mutex.
CVE-2024-50615 ↗azl3 tinyxml2 9.0.0-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableTinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/digit, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef.
CVE-2025-21947 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix type confusion via race condition when using ipc_msg_send_request
CVE-2025-21792 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableax25: Fix refcount leak caused by setting SO_BINDTODEVICE sockopt
CVE-2025-21667 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableiomap: avoid avoid truncating 64-bit offset to 32 bits
CVE-2025-21673 ↗azl3 kernel 6.6.64.2-9 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesmb: client: fix double free of TCP_Server_Info::hostname
CVE-2024-47141 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepinmux: Use sequential access to access desc->pinmux data
CVE-2024-47809 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledlm: fix possible lkb_resource null dereference
CVE-2024-48875 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebtrfs: don't take dev_replace rwsem on task already holding it
CVE-2024-56665 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf,perf: Fix invalid prog_array access in perf_event_detach_bpf_prog
CVE-2024-56703 ↗azl3 kernel 6.6.78.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableipv6: Fix soft lockups in fib6_select_path under high next hop churn
CVE-2024-56719 ↗azl3 kernel 6.6.76.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: stmmac: fix TSO DMA API usage causing oops
CVE-2024-50248 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablentfs3: Add bounds checking to mi_enum_attr()
CVE-2024-50256 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenetfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6()
CVE-2024-50284 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: Fix the missing xa_store error check
CVE-2024-50285 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: check outstanding simultaneous SMB operations
CVE-2024-53079 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemm/thp: fix deferred split unqueue naming and locking
CVE-2024-53091 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Add sk_is_inet and IS_ICSK check in tls_sw_has_ctx_tx/rx
CVE-2024-53093 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvme-multipath: defer partition scanning
CVE-2024-53094 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableRDMA/siw: Add sendpage_ok() check to disable MSG_SPLICE_PAGES
CVE-2024-53100 ↗azl3 kernel 6.6.64.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenvme: tcp: avoid race between queue_lock lock and destroy
CVE-2024-1543 ↗azl3 mariadb 10.11.6-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAES T-Table sub-cache-line leakage
CVE-2024-1544 ↗azl3 mariadb 10.11.6-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableECDSA nonce bias caused by truncation
CVE-2024-5288 ↗azl3 mariadb 10.11.6-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableSafe-error attack on TLS 1.3 Protocol
CVE-2024-49978 ↗azl3 kernel 6.6.57.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablegso: fix udp gso fraglist segmentation after pull from frag_list
CVE-2024-49987 ↗azl3 kernel 6.6.57.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpftool: Fix undefined behavior in qsort(NULL 0 ...)
CVE-2024-49988 ↗azl3 kernel 6.6.57.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: add refcnt to ksmbd_conn struct
CVE-2024-47678 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableicmp: change the order of rate limits
CVE-2024-47683 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Skip Recompute DSC Params if no Stream on Link
CVE-2024-47704 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Check link_res->hpo_dp_link_enc before using it
CVE-2024-47728 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Zero former ARG_PTR_TO_{LONGINT} args in case of error
CVE-2024-49859 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix to check atomic_file in f2fs ioctl interfaces
CVE-2024-49905 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Add null check for 'afb' in amdgpu_dm_plane_handle_cursor_update (v2)
CVE-2024-49912 ↗azl3 kernel 6.6.56.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amd/display: Handle null 'stream_status' in 'planes_changed_for_existing_stream'
CVE-2024-46678 ↗azl3 kernel 6.6.51.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebonding: change ipsec_lock from spin lock to mutex
CVE-2024-46762 ↗azl3 kernel 6.6.51.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexen: privcmd: Fix possible access to a freed kirqfd instance
CVE-2024-46765 ↗azl3 kernel 6.6.51.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableice: protect XDP configuration with a mutex
CVE-2024-46803 ↗azl3 kernel 6.6.51.1-5 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: Check debug trap enable before write dbg_ev_file
CVE-2024-27005 ↗azl3 hyperv-daemons 6.6.35.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableinterconnect: Don't access req_list while it's being manipulated
CVE-2024-35794 ↗azl3 hyperv-daemons 6.6.35.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledm-raid: really frozen sync_thread during suspend
CVE-2024-35808 ↗azl3 hyperv-daemons 6.6.35.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablemd/dm-raid: don't call md_reap_sync_thread() directly
CVE-2024-42067 ↗azl3 kernel 6.6.43.1-7 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Take return from set_memory_rox() into account with bpf_jit_binary_lock_ro()
CVE-2024-1151 ↗azl3 hyperv-daemons 6.6.22.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableKernel: stack overflow problem in open vswitch kernel module leading to dos
CVE-2024-36009 ↗azl3 hyperv-daemons 6.6.35.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableax25: Fix netdev refcount issue
CVE-2021-20227 ↗sqlite-3.34.1-1.cm1.x86_64.rpm on CBL Mariner 1.0 x64ModerateOut-of-bandNot availableMicrosoft rating unavailableA flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries locally on the SQLite database to cause a denial of service or possible code execution by triggering a use-after-free. The highest threat from this vulnerability is to system availability.
CVE-2020-15358 ↗cm1 mysql 8.0.26-1 on CBL Mariner 1.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn SQLite before 3.32.3 select.c mishandles query-flattener optimization leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.
CVE-2026-80628 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableALSA: seq: oss: Serialize readq reset state with q->lock
CVE-2026-80598 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablentfs3: fix out-of-bounds read in decompress_lznt
CVE-2026-80707 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablecan: j1939: transport: j1939_session_fresh_new(): initialize receive buffer
CVE-2026-80634 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablenetfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag
CVE-2026-80670 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailableperf tools: Use perf_env__get_cpu_topology() in machine__resolve()
CVE-2026-80585 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablemptcp: fastopen: only mark MPTFO subflows with SYN data
CVE-2026-80580 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablefbdev: bound mode sysfs output to the sysfs buffer
CVE-2026-80547 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailables390/vfio_ccw: Implement a crw lock
CVE-2026-80540 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailabledrm/amdgpu: Fix UVD decode image min size calculation
CVE-2026-80565 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablecrypto: qce - fix error path in devm_qce_register_algs
CVE-2026-80583 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableASoC: codecs: lpass-tx-macro: Fix enum kcontrol accesses
CVE-2026-74711 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablehwmon: (pmbus) Fix type confusion in notification logic
CVE-2026-74733 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablegpio: pca953x: fix pca953x_irq_bus_sync_unlock regmap lock
CVE-2026-74603 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableptp: ocp: Fix board ID over-read
CVE-2026-74655 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableserial: qcom-geni: fix TX DMA buffer flush
CVE-2026-74678 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablenet: usb: ax88179_178a: fix skb leak in ax88179_tx_fixup()
CVE-2026-74567 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablekeys: fix out-of-bounds read in keyring_get_key_chunk()
CVE-2026-72495 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableRDMA/bnxt_re: Avoid repeated requests to allocate WC pages
CVE-2026-72438 ↗azl3 kernel 6.6.157.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablemd/raid10: fix writes_pending and barrier reference leaks on discard failures
CVE-2026-74268 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailabletcp: clear sock_ops cb flags before force-closing a child socket
CVE-2026-72315 ↗azl3 kernel 6.6.152.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablesmb: client: fix busy dentry warning on unmount after DIO
CVE-2026-74338 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablebpf: Reject sleepable BPF_LSM_CGROUP programs at load time
CVE-2026-74475 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablevxlan: use neigh_ha_snapshot() in route_shortcircuit()
CVE-2026-74456 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablecan: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error
CVE-2026-74544 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablenet/sched: cls_u32: validate offshift to prevent shift-out-of-bounds
CVE-2026-74317 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableixgbe: do not configure xps for XDP queues
CVE-2026-74495 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailableigbvf: Fix leak in TX DMA error cleanup
CVE-2026-74564 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablenetfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH
CVE-2026-74579 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailablenetfilter: nft_payload: fix mask build for partial field offload
CVE-2026-68433 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0LowOut-of-band1%Microsoft rating unavailablelibceph: bound get_version reply decode to front len
CVE-2026-68446 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailabledrm/vmwgfx: Validate vmw_surface_metadata::array_size
CVE-2026-68229 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0Low0%Microsoft rating unavailablemedia: cedrus: skip invalid H.264 reference list entries
CVE-2026-68209 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0Low0%Microsoft rating unavailablemedia: sun4i-csi: Return queued buffers on start_streaming() failure
CVE-2026-68117 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0Low1%Microsoft rating unavailabletipc: clear sock->sk on the failed-insert path in tipc_sk_create()
CVE-2026-68376 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0Low0%Microsoft rating unavailablesctp: fix auth_hmacs array size in struct sctp_cookie
CVE-2026-68107 ↗azl3 kernel 6.6.150.1-1 on Azure Linux 3.0Low0%Microsoft rating unavailabledrm/amdgpu/vcn4: avoid rereading IB param length
CVE-2026-68417 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0Low0%Microsoft rating unavailableRDMA/siw: publish QP after initialization
CVE-2026-68302 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0Low1%Microsoft rating unavailableamt: re-read skb header pointers after every pull
CVE-2026-64532 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailable
CVE-2025-46686 ↗cbl2 redis 6.2.18-3LowOut-of-band0%Microsoft rating unavailableRedis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.
CVE-2026-64546 ↗azl3 kernel 6.6.144.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailabledrm/edid: fix OOB read in drm_parse_tiled_block()
CVE-2026-45893 ↗azl3 kernel 6.6.143.1-1 on Azure Linux 3.0LowOut-of-band0%Microsoft rating unavailableapparmor: Fix & Optimize table creation from possibly unaligned memory
CVE-2026-40556 ↗cbl2 nano 6.0-3LowOut-of-bandNot availableMicrosoft rating unavailableInsecure Directory Permissions in GNU nano Leading to Privilege Abuse

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
SuseCVE-2026-38752trackedCVSS 3.3SUSE Linux Enterprise High Performance Computing 12 SP5busybox-0:1.35.0-10.9.1.x86_64no patch linkAdvisory ↗
SuseCVE-2026-38755trackedCVSS 3.3SUSE Linux Enterprise High Performance Computing 12 SP5busybox-0:1.35.0-10.9.1.x86_64no patch linkAdvisory ↗
SuseCVE-2026-9944trackedCVSS 3.1openSUSE Leap 16.0chromedriver-0:148.0.7778.215-bp160.1.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-34181trackedCVSS 3.1openSUSE Tumbleweedlibopenssl-3-devel-0:3.5.3-8.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-38752trackedCVSS 3.3openSUSE Tumbleweedbusybox-0:1.38.0-2.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-38755trackedCVSS 3.3openSUSE Tumbleweedbusybox-0:1.38.0-2.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-5773trackedCVSS 3.7SUSE Linux Micro 6.1curl-0:8.14.1-slfo.1.1_9.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-5773trackedCVSS 3.7SUSE Linux Micro 6.0curl-0:8.14.1-8.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Enterprise Live Patching 15 SP7kernel-livepatch-6_4_0-150700_7_72-rt-0:1-150700.1.5.1.x86_64no patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Enterprise Live Patching 15 SP7kernel-livepatch-6_4_0-150700_7_72-rt-0:1-150700.1.5.1.x86_64no patch linkAdvisory ↗
SuseCVE-2026-5773trackedCVSS 3.7Open Enterprise Server 25.4curl-0:8.14.1-150700.7.23.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-6276trackedCVSS 3.7Open Enterprise Server 25.4curl-0:8.14.1-150700.7.23.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3Open Enterprise Server 25.4kernel-64kb-0:6.4.0-150700.53.78.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5Open Enterprise Server 25.4kernel-64kb-0:6.4.0-150700.53.78.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagesbootupd-0:0.2.36-3.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagesopenssl3-0:3.5.8-0.1.hum1@srcPatch ↗Advisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagesopenssl-0:3.5.8-0.1.hum1@aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74983trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.14.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74983trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)firefox-0:140.14.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-74983trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)firefox-0:140.14.0-1.el10_2.aarch64Patch ↗Advisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Micro 6.1kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Micro 6.1kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Micro 6.0kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Micro 6.0kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Micro 6.1kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Micro 6.1kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Micro 6.0kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Micro 6.0kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Micro 6.1kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Micro 6.1kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Micro 6.0kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Micro 6.0kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Micro 6.1kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Micro 6.1kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Micro 6.0kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Micro 6.0kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Micro 6.1kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Micro 6.1kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Micro 6.0kernel-devel-rt-0:6.4.0-51.1.noarchno patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Micro 6.0kernel-default-0:6.4.0-51.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-65183trackedCVSS 2.5Red Hat Hardened Imagestomcat11-0:11.0.25-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-66422trackedCVSS 2.7Red Hat Hardened Imagestomcat11-0:11.0.25-0.1.hum1@noarchPatch ↗Advisory ↗
Red HatCVE-2026-75803trackedCVSS 3.7Red Hat Hardened Imagespython-cryptography-0:50.0.0-1.hum1@srcPatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.4)firefox-0:140.13.0-1.el8_4.srcPatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)firefox-0:140.13.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.4)firefox-0:140.13.0-1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.2)firefox-0:140.13.0-1.el9_2.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux Server (v. 7 ELS)firefox-0:140.13.0-1.el7_9.ppc64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream EUS (v.9.6)firefox-0:140.13.0-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.6)firefox-0:140.13.0-1.el8_6.srcPatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.8.8)firefox-0:140.13.0-1.el8_8.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.4)thunderbird-0:140.13.0-1.el9_4.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream EUS (v. 10.0)thunderbird-0:140.13.0-1.el10_0.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream EUS (v.9.6)thunderbird-0:140.13.0-1.el9_6.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.6)thunderbird-0:140.13.0-1.el8_6.srcPatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.8.8)thunderbird-0:140.13.0-1.el8_8.ppc64lePatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream AUS (v.8.4)thunderbird-0:140.13.0-1.el8_4.srcPatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream E4S (v.9.2)thunderbird-0:140.13.0-1.el9_2.aarch64Patch ↗Advisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-46068trackedCVSS 3.3SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-52981trackedCVSS 3.7SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-53045trackedCVSS 2.9SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-53387trackedCVSS 3.3SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-53387trackedCVSS 3.3SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-53387trackedCVSS 3.3SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63869trackedCVSS 3.3SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-63883trackedCVSS 3.6SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63883trackedCVSS 3.6SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-63883trackedCVSS 3.6SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-64158trackedCVSS 3.3SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64158trackedCVSS 3.3SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64158trackedCVSS 3.3SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Micro Extras 6.2kernel-obs-build-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Micro 6.2kernel-64kb-0:6.12.0-160000.37.1.aarch64no patch linkAdvisory ↗
SuseCVE-2026-64330trackedCVSS 3.5SUSE Linux Enterprise High Availability Extension 16.0cluster-md-kmp-default-0:6.12.0-160000.37.1.ppc64leno patch linkAdvisory ↗
SuseCVE-2026-64413trackedCVSS 2.5openSUSE Tumbleweedkernel-devel-0:7.1.7-1.1.aarch64no patch linkAdvisory ↗
Red HatCVE-2026-53434trackedCVSS 3.7Red Hat JBoss Web Server 7.0 on RHEL 10jws7-tomcat-0:11.0.21-6.redhat_00005.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2026-53434trackedCVSS 3.7Red Hat JBoss Web Server 7.0.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-55276trackedCVSS 2.3Red Hat JBoss Web Server 7.0 on RHEL 10jws7-tomcat-0:11.0.21-6.redhat_00005.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2026-55276trackedCVSS 2.3Red Hat JBoss Web Server 7.0.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-59083trackedCVSS 3.7Red Hat JBoss Web Server 7.0 on RHEL 10jws7-tomcat-0:11.0.21-6.redhat_00005.1.el10jws.noarchPatch ↗Advisory ↗
Red HatCVE-2026-59083trackedCVSS 3.7Red Hat JBoss Web Server 7.0.1Not reportedPatch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)thunderbird-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 8)thunderbird-0:140.13.0-1.el8_10.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 9)firefox-0:140.13.0-1.el9_8.aarch64Patch ↗Advisory ↗
Red HatCVE-2026-16405trackedCVSS 3.4Red Hat Enterprise Linux AppStream (v. 10)thunderbird-0:140.13.0-1.el10_2.aarch64Patch ↗Advisory ↗
SuseCVE-2026-62430trackedCVSS 2.9SUSE Linux Enterprise High Performance Computing 12 SP5xen-0:4.12.4_72-3.148.4.x86_64no patch linkAdvisory ↗
SuseCVE-2026-62430trackedCVSS 2.9Open Enterprise Server 23.4xen-0:4.16.7_12-150400.4.89.3.x86_64no patch linkAdvisory ↗
SuseCVE-2026-62430trackedCVSS 2.9openSUSE Tumbleweedxen-0:4.22.0_02-1.1.aarch64no patch linkAdvisory ↗

Glossary