These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
A use-after-free vulnerability was found in the Linux kernel's ACPICA implementation. This issue has been resolved by clearing references to method locals and arguments in acpi_ds_terminate_control_method(). The vulnerability could potentially lead to system crashes or instability and possible elevation of privileges. Immediate attention is required from Linux kernel developers, maintainers, and system ad [truncated]
A high-severity vulnerability has been resolved in the Linux kernel, specifically in the ACPICA component. The vulnerability, tracked as CVE-2026-97454, involves adding boundary checks in acpi_ps_get_next_field() to prevent out-of-bounds access. This CVE was published on 2026-09-24T17:17:23.823Z and was last modified on 2026-09-25T05:17:06.553Z. The vulnerability requires immediate attention from maintain [truncated]
A vulnerability in the Linux kernel has been resolved, preventing the addition of invalid references in acpi_ut_copy_simple_object(). This change impacts Linux kernel developers, system administrators, and security teams responsible for maintaining and securing Linux-based systems. The vulnerability has been addressed, but specific affected versions and exploitation details are not provided, requiring ver [truncated]
A high-severity vulnerability has been resolved in the Linux kernel, specifically in the ACPICA component. The vulnerability, tracked as CVE-2026-97451, involves an integer overflow in the acpi_ex_opcode_3A_1T_1R() function, which could lead to a negative size parameter being passed to memcpy(). This issue has been addressed with an overflow check for Index + Length to prevent integer overflow when calcul [truncated]
The Linux kernel has a vulnerability (CVE-2026-97450) that was resolved by validating handler object types in two places within the ACPICA. This vulnerability has a CVSS score of 8.4 and is considered HIGH severity. The vulnerability affects Linux kernel systems, and defenders should assess exposure and prioritize patching. The CVE record and NVD vulnerability detail page provide information on the vulner [truncated]
A use-after-free vulnerability was resolved in the Linux kernel's ACPICA by adding validation for nodes in acpi_ns_build_normalized_path(). This change prevents potential exploitation by ensuring that nodes are not accessed after they have been freed, addressing a critical issue in the ACPICA implementation. Linux kernel maintainers, administrators, and users of systems relying on affected kernel versions [truncated]
The Linux kernel has a vulnerability (CVE-2026-97447) that has been resolved through enhancements to OEM ID and Table ID validation in acpi_ex_load_table_op() to prevent buffer overflows. This change is crucial for ensuring the security and integrity of systems utilizing the Linux kernel, as buffer overflows could potentially allow attackers to execute arbitrary code or escalate privileges. Linux kernel m [truncated]
A NULL pointer dereference vulnerability in the Linux kernel's ACPICA has been addressed. The acpi_ns_custom_package() function did not check for NULL before dereferencing the first element of a package, potentially causing a crash when firmware returns a _BIX package with an unresolvable reference. This vulnerability affects Linux kernel systems that handle ACPI packages. Defenders should review system c [truncated]
A high-severity vulnerability has been resolved in the Linux kernel, affecting the ACPICA component. The vulnerability enhances buffer validation in acpi_ut_walk_aml_resources() to prevent buffer overflows. This change aims to improve the security of Linux kernel systems, especially those with ACPICA components, by preventing potential buffer overflow attacks. Defenders should assess exposure and prioriti [truncated]
A high-severity vulnerability has been resolved in the Linux kernel, involving the addition of boundary checks in two places within the ACPICA to prevent out-of-bounds access. This vulnerability, tracked as CVE-2026-97444, affects the Linux kernel and requires attention from administrators and developers to prevent potential out-of-bounds access. The vulnerability has a CVSS score of 7.7 and is considered [truncated]
A Linux kernel vulnerability was resolved, addressing a WARNING in __unregister_ftrace_function. The issue arose from perf_ftrace_function_unregister() calling unregister_ftrace_function() without checking if the ftrace_ops was successfully registered. This oversight could lead to warnings during error cleanup in perf_event_alloc(). The fix involves adding a check for FTRACE_OPS_FL_ENABLED before attempti [truncated]
A vulnerability in the Linux kernel's ath11k driver can lead to invalid data access and memory corruption due to a missing sanity check for packet lengths in certain Wi-Fi header cases. This vulnerability requires a patch to prevent potential memory corruption or invalid data access issues. Linux kernel maintainers, ath11k driver users, and system administrators responsible for Wi-Fi network security shou [truncated]
A vulnerability in the Linux kernel's qrtr_send_resume_tx() function can cause a node reference count leak when memory allocation fails. This issue was resolved by adding a call to qrtr_node_release() in the allocation failure path. The vulnerability affects Linux kernel versions and may impact system administrators and security teams responsible for managing Linux-based systems. They should assess exposu [truncated]
A Linux kernel vulnerability allows a NULL pointer dereference when handling corrupted ntfs3 images. The bug occurs when system.ntfs_attrib and system.dos_attrib are updated on the same file, causing a NULL function pointer call in generic_perform_write(). This issue arises from preserving non-DOS attribute bits in system.dos_attrib, ensuring consistent handling of compressed and sparse states with ATTR_D [truncated]
A vulnerability in the Linux kernel's ntfs3 filesystem implementation can allow for an out-of-bounds read when handling a malformed NTFS directory index entry. This issue arises because the index-header validators do not properly check each NTFS_DE entry for valid layout, subnode state, and key_size. Specifically, they fail to verify that the key_size fits within the entry payload and permit a last sentin [truncated]
A vulnerability in the Linux kernel's ntfs3 filesystem driver allows for an out-of-bounds read when processing directory entries in a crafted NTFS image. This issue arises from incorrect bounds checking in the `ntfs_dir_emit()` function and a missing validation in `hdr_find_e()`. The vulnerability can be triggered by a specially crafted NTFS image, potentially leading to information disclosure or system c [truncated]
A vulnerability in the Linux kernel's dpaa2-switch component has been addressed. The issue involves the management of Forwarding Database (FDB) entries when a port leaves a bridge. Specifically, the current implementation may lead to multiple ports sharing the same FDB when there are multiple bridges with ports from the same DPSW instance. This could potentially cause unexpected behavior or issues with ne [truncated]
A vulnerability in the Linux kernel's net: dsa: sja1105: flower component can cause cross-chip redirect issues, potentially leading to wrong port redirection or out-of-bounds access. This issue arises because the dsa_port_from_netdev() function may return a valid port from a different switch chip. The vulnerability has been addressed with a minimal fix that adds a check to catch this case and adjusts the [truncated]
A vulnerability in the Linux kernel's dp2a-switch handling of NAPI on the remove path has been resolved. The NAPI instances for a DPSW device are attached to the first switch port's net_device but shared by all ports. This causes an issue on the .remove() path where each port is unregistered and freed one at a time, causing the NAPI instances to be deleted even though they are not disabled. To fix this, t [truncated]
A vulnerability in the Linux kernel has been resolved, which could allow for unbounded iteration or reads past the buffer when validating FDP configuration descriptor sizes. This issue has been assigned a CVSS score of 8.2 and a severity of HIGH. The vulnerability affects Linux kernel versions and patches are available for affected systems. Linux kernel administrators, security teams, and IT personnel res [truncated]
A vulnerability in the Linux kernel's iwlwifi driver has been resolved, which could cause a firmware crash when a P2P-Device is removed from a binding. The issue arises from the P2P-Device being removed and re-added to the binding by unrelated code, leaving a PHY context pointer that is not properly handled. This situation can occur when a station interface is connected on a channel, the P2P-Device perfor [truncated]
A vulnerability in the Linux kernel's drm/amd/display component has been resolved. The issue arises from calling dc_update_planes_and_stream separately for a stream and its phantom stream, causing a NULL pointer dereference. To address this, the call for phantom streams should be skipped. This vulnerability affects Linux kernel-based systems utilizing the drm/amd/display component, potentially leading to [truncated]
A vulnerability in the Linux kernel has been addressed, preventing queuing new commands if the xhci is inaccessible. This change ensures that the HCD_FLAG_HW_ACCESSIBLE flag is respected, and a warning is printed if xhci is being suspended with pending commands. The fix prevents potential issues with xhci command queuing, ensuring system stability and security. Linux kernel administrators and developers s [truncated]
A use-after-free (UAF) race condition vulnerability was found in the Linux kernel's drm/amdkfd component. The vulnerability occurs in the destroy_queue_cpsch function, where the wait_on_destroy_queue function drops locks to wait for queue resume, allowing a concurrent destroy to free the queue. To fix this issue, a is_being_destroyed flag is used to serialize destruction.
The Linux kernel vulnerability CVE-2026-97428 has been resolved with a patch that hardens FRU PIA parsing with bounded helpers. This change replaces the open-coded TLV walk with fru_pia_advance() and fru_pia_copy_field() helpers that bound every read by the actual EEPROM data length, preventing out-of-bounds reads on truncated or malformed FRU data.
A heap overflow vulnerability was found in the Linux kernel's drm/amd/pm component. The pp_dpm_set_pp_table() function did not properly bound its memcpy operation, allowing for a potential heap overflow when writing data larger than soft_pp_table_size. This issue has been resolved. The vulnerability was caused by an unbounded memcpy operation in the pp_dpm_set_pp_table() function, which could lead to a he [truncated]
A vulnerability in the Linux kernel has been resolved, affecting the drm/amdgpu/pm component. The issue involves a SmartShift bias sysfs store PM refcount on parse error. The fix returns the parse error before acquiring PM access. This vulnerability requires verification of system exposure and assessment of potential impact on system stability and security. Linux kernel developers and maintainers should r [truncated]
A buffer overflow vulnerability in the Linux kernel's drm/amdgpu during vBIOS updates has been addressed. The issue was resolved by clamping the buffer position to write by setting the bin attribute to the maximum buffer size, preventing out-of-bounds access. This change ensures that the buffer position is validated before writing, thus preventing potential buffer overflows. Linux kernel developers and ad [truncated]
The Linux kernel vulnerability, CVE-2026-97424, involves a flaw in the drm/amdgpu/ras component. This vulnerability has been resolved through changes including the addition of a ras_suspend callback and its utilization for cp_ecc_error_irq. The issue pertains to improper handling of cp_ecc_error_irq in amdgpu_gfx_ras_late_init() and gfx_v9_0_hw_fini(). Linux kernel maintainers, administrators, and users o [truncated]
A vulnerability in the Linux kernel has been resolved, which could lead to an out-of-bounds array access if the partition index is not validated before use. The vulnerability was introduced in the cxl/region module, where the construct_region() function reads cxled->part and uses it to index cxlds->part[] without checking for a negative value. If the partition was never resolved, part remains at its initi [truncated]