Aggregator
CVE-2026-46306 | Linux Kernel up to 7.0.6 flow_dissector infinite loop
CVE-2026-46299 | Linux Kernel up to 6.6.139/6.12.87/6.18.29/7.0.6 hfsplus hfsplus_fill_super max_unistr_len stack-based overflow
CVE-2026-46303 | Linux Kernel up to 7.1-rc1 isofs rock.c rock_continue cont_extent infinite loop
CVE-2026-46311 | Linux Kernel up to 7.0.8/7.1-rc2 drm privilege escalation
CVE-2026-46289 | Linux Kernel up to 6.6.139/6.12.87/6.18.29/7.0.6 lib extract_iter_to_sg memory leak
CVE-2026-46304 | Linux Kernel up to 7.1-rc1 nvmet nvmet_tcp_release_queue_work async_event_work deadlock
CVE-2026-46280 | Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3 lib mm/ksft_hmm.sh dmirror_fops_release use after free (Nessus ID 319687)
CVE-2026-46307 | Linux Kernel up to 7.1-rc2 wifi base.c __ubsan_handle_out_of_bounds.cold+0x46/0x4b ts_final_idx out-of-bounds write
CVE-2026-46277 | Linux Kernel up to 7.0.3 mm folio_free stack-based overflow
CVE-2026-46288 | Linux Kernel up to 6.12.85/6.18.26/7.0.3 of_unittest_changeset parent use after free (Nessus ID 320353)
CVE-2022-35048 | OTFCC 617837b otfccdump+0x6b0b2c heap-based overflow (EUVD-2022-37946)
CVE-2022-35050 | OTFCC 617837b otfccdump+0x6b04de heap-based overflow (EUVD-2022-37948)
CVE-2022-35051 | OTFCC 617837b otfccdump+0x6b55af heap-based overflow (EUVD-2022-37949)
CVE-2022-35045 | OTFCC 617837b otfccdump+0x6b0d63 heap-based overflow (EUVD-2022-37943)
CVE-2022-35046 | OTFCC 617837b otfccdump+0x6b0466 heap-based overflow (EUVD-2022-37944)
CVE-2022-35047 | OTFCC 617837b otfccdump+0x6b05aa heap-based overflow (EUVD-2022-37945)
Заблудился в лесу? Добудь стакан воды из собственной ветровки
Week in review: Exploited Check Point VPN zero-day, Oracle PeopleSoft servers under attack
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: DockSec: Open-source AI-powered Docker security scanner DockSec is an OWASP Incubator Project that combines three container security scanners with a language-model layer for explanation and remediation. Created by Advait Patel, the Python tool runs Trivy, Hadolint, and Docker Scout against a developer’s Dockerfile and image, correlates the findings, returns a 0-100 security score, and proposes line-specific fixes. Treating AI agents … More →
The post Week in review: Exploited Check Point VPN zero-day, Oracle PeopleSoft servers under attack appeared first on Help Net Security.
Anthropic Suspends Advanced Security Models Amid National Security Mandate
An Unprecedented Emergency Intervention Anthropic has long advocated for rigorous artificial intelligence safety protocols and government oversight. Earlier today, the prominent AI startup unexpectedly announced a complete suspension of access to its newly unveiled...
The post Anthropic Suspends Advanced Security Models Amid National Security Mandate appeared first on Information Security News.