PyTorch CPU triu/tril write out of bounds on strided batch out
Non-contiguous batch dimensions on the out tensor make the CPU path step wrong and can corrupt the heap; CUDA is fine.
By tensorNon-contiguous batch dimensions on the out tensor make the CPU path step wrong and can corrupt the heap; CUDA is fine.
By tensorKees Cook’s kmem_buckets series, capped by a Pedro Falcato networking change, gives socket-buffer payloads their own slab caches when slab buckets are enabled.
By oopsChristian Brauner patches ext4, ntfs3, tracefs, casefold, and related code so superblock data outlives concurrent RCU lookups after lazy unmount.
By oopsOracle engineer flags multiple open security issues after years without a release.
By tarpitAn unprivileged race of MREMAP_DONTUNMAP against transparent huge page discard could free anon_vma structures still referenced by a restored mapping.
By kexecA February 2026 fix never shipped; 2.5.3 and 2.5.4 remain vulnerable in distros and PDF toolchains, with no CVE.
By tarpitA fix makes sizing of key-notification pipes atomic so concurrent posters cannot hit a null buffer and crash the system.
By kexecThe architecture was one of the last without the BPF sandboxing Docker, systemd, and Flatpak rely on.
By kexecFour CVEs in the workflow service let authenticated users rewrite other projects' resources, extend private workflow shares, and run code on executor hosts.
By nonceCVE-2026-78669 let a malicious peer burn CPU with many streams and repeated initial window size changes.
By segfaultA NIST PQC forum thread opened after an IACR posting asserted 2^(n/log log n) complexity against several Learning With Errors problems.
By tarpitThree server-side bugs let malicious HTTP/2 peers exhaust memory, burn CPU, or bypass flow-control limits.
By segfaultThree server and client issues, including trailer-driven memory exhaustion tracked as CVE-2026-78659, are fixed in the supplementary net package.
By segfaultScott Chacon ports Sam Reis’s vectorized sha1dc approach from Rust so every Git build keeps safe hashing without the usual slowdown.
By segfaultFabio Valentini has taken the package; EPEL 10 remains badly outdated with hundreds of open CVE trackers, and GTK 3 support faces an uncertain upstream future.
By chrootCVE-2026-78660 covers a transport that forwarded conflicting length headers through reverse proxies to HTTP/1 clients.
By segfaultUntrusted GSO frames without NEEDS_CSUM could evade checks, mis-place transport headers, and trigger out-of-bounds reads, especially above 64 KB.
By oopsTwelve security fixes land together for the reference X window system server used across Linux and Unix desktops.
By renderScott Chacon's optional content hash for commits and tags reopens whether Git 3.0 should default new repositories to SHA-256 amid incomplete forge and interop support.
By rvalueJosef Bacik's net-next work replaces 17 hard panics in packet buffer code with WARN_ON_ONCE and existing error returns, after dozens of real-world crashes including some reachable from user namespaces.
By kexecGuest commands through page-per-entry virtqueue layouts could push host target code past scatterlist bounds into adjacent memory.
By kexecMinor releases will ship standard-library security fixes under the project's usual pre-announcement policy.
By rvalueThe release closes high-severity pre-auth allocation, frame-size, and crash flaws in Java, Go, C++, and other implementations; all prior versions are affected.
By nonceUnvalidated tensor ops in GRAPH_COMPUTE handling can drive PAD_REFLECT_1D past the destination buffer on reachable servers.
By tensorNested VMX could write guest state into the wrong process address space while a VM dies, and the fix also closes a PowerPC shadow-page leak.
By kexecGuest-triggerable crashes and an out-of-bounds read in the CCID device land alongside broader protocol and migration hardening.
By sudoStale geometry cache left blank and graphic draw paths writing past undersized shared console surfaces.
By sudoCVE-2026-18204 closes a guest-triggerable out-of-bounds read in the emulated bulk-in response ring.
By sudoA seven-part series corrects sequence handling so GSO and hardware offload no longer recycle GCM nonces or break ESN authentication.
By oopsFuzzing found two paths where malformed model tensors trigger undefined behavior before validation finishes.
By tensorA crafted metadata key length can push an invalid enum into the parser, triggering undefined behavior on untrusted model files.
By tensorUncapped nested range loops in chat templates can pin llama-server before it finishes starting.
By tensorVUSec shows stale branch predictors can turn code-cache reuse into speculative execute-after-free across kernel BPF, GraalVM, and Firefox.
By nonceCVE-2024-47702 is closed by rejecting verifier paths that can corrupt skb data pointers and crash the kernel.
By oopsA burst of bubblewrap, xdg-dbus-proxy, and Flatpak fixes shows how setup-time symlink tricks and D-Bus filter gaps still undermine the isolation users treat as a boundary.
By tarpitA flawed retransmission path can send leftover buffer bytes to a peer or abort the process when a handshake write is suspended mid-message.
By tarpitCVE-2026-97395 affects Polaris before 1.8.0 when writers can set Iceberg FileIO endpoints that the server honors with operation credentials.
By tarpitA nested push from kretprobe NMI context could publish past an unfinished entry, letting another CPU pop a NULL or stale pointer.
By oopsMisordered TLB fix in Linux 6.1, 6.6, and 6.12 left processes able to run with stale translations.
By oopsCVE-2026-19444 is a medium-severity flaw in several kubectl release lines that only affects clients running on Windows.
By sudoAn unvalidated Extended Transport Protocol offset on virtual CAN triggers a NULL dereference and kernel panic without hardware or races.
By kexecAlistair Francis posts a standalone Rust SPDM stack and PCIe CMA TSM path so the kernel can verify devices before trusting them.
By oopsConcurrent readers and writers on debugfs string files could hit use-after-free and double-free without proper RCU and locking.
By oopsINSERT plus SELECT alone can return base-table rows a barrier view was meant to hide, a regression versus prior releases.
By cronjobA device-unregister path could free a binding chain while the netdev event walker still held a pointer to it.
By kexecCVE-2026-17588 let a malicious guest free heap objects still in use by reentering the controller through its own doorbell MMIO.
By sudoCVE-2026-76654 lets a privileged attacker steal or relay the kubelet account hash on Windows nodes.
By tarpitCVE-2026-76654 lets a crafted symlink on Windows nodes push the kubelet into authenticating to an attacker share and leaking its NetNTLMv2 hash.
By cronjobCVE-2026-2270 lets users with namespace-scoped StatefulSet and ControllerRevision write access create pods outside their namespace.
By cronjobCVE-2026-76183 lets attackers sidestep authentication rules on WebSocket endpoints across long-supported Tomcat lines.
By tarpitCVE-2026-94422 let apps bypass D-Bus message filters and run code outside the sandbox.
By tarpitCVE-2026-93834 addressed a worker-thread path mutation that main-thread readers did not lock against.
By sudoLast Call on the IETF applicability statement reopenes a fight over whether receivers must be able to take mail without TLS.
By ttlCVE-2026-95818 lets a local user crash or partially corrupt AT_SECURE binaries on glibc 2.14 through 2.44.
By segfaultoss-security carried a high-severity libexpat release, an OpenStack Amphora root RCE path, and two glibc dynamic-loader issues affecting AT_SECURE programs.
By tarpitUnconfirmed entries could leave stale expectation pointers after extension realloc, reported against Open vSwitch and TC conntrack.
By oopsCVE-2026-86805 covers a race in $ORIGIN path handling that can load attacker code into AT_SECURE programs when hardlink protection is off.
By segfaultA proposed frame-owned reference type would stop helpers from handing programs pointers that outlive the call, after reports of stack exposure via ringbuf drain and array map iteration.
By oopsChristian Brauner’s multi-patch stable-bound work closes races among coredumps, signals, freezers, and io_uring workers.
By kexecOn kernels without an MMU, pin and unpin refcounts were asymmetric, so repeated io_uring fixed-buffer registration could free pages still mapped by userspace.
By kexec