1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 9, 2026, 5:00 AM 16,292 active 1,443 known exploited

Catalog summary

16,292

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 9, 2026, 5:00 AM 16,292 active 1,443 known exploited

Catalog summary

16,292

Active CVEs

8,447

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 2,251–2,300 of 16,292 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-64460Unknown severity
    PCI/IOV: Skip VF Resizable BAR restore on read error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2026-64459Unknown severity
    tcp: restore RCU grace period in tcp_ao_destroy_sock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2026-64456Unknown severity
    hwrng: virtio: clamp device-reported used.len at copy_data()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2026-64452Unknown severity
    6lowpan: fix NHC entry use-after-free on error path
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2026-64450Unknown severity
    tipc: fix out-of-bounds read in broadcast Gap ACK blocks
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2026-64449Unknown severity
    staging: vme_user: bound slave read/write to the kern_buf size
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2026-64448Unknown severity
    smb: client: restrict implied bcc[0] exemption to responses without data area
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2026-64447Unknown severity
    staging: media: ipu7: fix double-free and use-after-free in error paths
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2026-64445Unknown severity
    staging: rtl8723bs: fix WEP length underflow and OOB read in OnAuth()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2026-64444Unknown severity
    staging: rtl8723bs: fix OOB read in OnAssocRsp() IE loop
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2026-64443Unknown severity
    staging: rtl8723bs: fix OOB read in update_beacon_info() IE loop
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2026-64442Unknown severity
    staging: rtl8723bs: fix OOB reads in IE loops in issue_assocreq() and join_cmd_hdl()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2026-64441Unknown severity
    staging: rtl8723bs: fix OOB reads in rtw_get_sec_ie(), rtw_get_wapi_ie(), and rtw_get_wps_attr()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2026-64440Unknown severity
    staging: rtl8723bs: fix OOB write in HT_caps_handler()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2026-64439Unknown severity
    crypto: krb5 - filter out async aead implementations at alloc
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2026-64438Unknown severity
    crypto: qat - fix VF2PF work teardown race in adf_disable_sriov()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2026-64437Unknown severity
    ksmbd: fix use-after-free of a deferred file_lock on SMB2_CLOSE then SMB2_CANCEL
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2026-64436Unknown severity
    net: af_key: initialize alg_key_len for IPComp states
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2026-64435Unknown severity
    audit: Fix data races of skb_queue_len() readers on audit_queue
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2026-64434Unknown severity
    Bluetooth: L2CAP: Fix UAF in channel timeout by holding conn ref
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2026-64432Unknown severity
    fs/ntfs3: validate Dirty Page Table capacity in log_replay copy_lcns
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2026-64431Unknown severity
    ntfs: avoid calling post_write_mst_fixup() for invalid index_block
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2026-64430Unknown severity
    NTB: epf: Avoid calling pci_irq_vector() from hardirq context
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2026-64423Unknown severity
    ipv4: igmp: remove multicast group from hash table on device destruction
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2026-64422Unknown severity
    net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2026-64420Unknown severity
    mfd: cros_ec: Delay dev_set_drvdata() until probe success
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2026-64418Unknown severity
    mm: shrinker: fix shrinker_info teardown race with expansion
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2026-64414Unknown severity
    netfilter: handle unreadable frags
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2026-64413Unknown severity
    netfilter: ebtables: zero chainstack array
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2026-64412Unknown severity
    netfilter: ebtables: module names must be null-terminated
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2026-64411Unknown severity
    netfilter: ebtables: terminate table name before find_table_lock()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2026-64410Unknown severity
    netfilter: flowtable: IPIP tunnel hardware offload is not yet support
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2026-64408Unknown severity
    Bluetooth: bnep: pin L2CAP connection during netdev registration
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2026-64406Unknown severity
    Bluetooth: fix UAF in bt_accept_dequeue()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2026-64403Unknown severity
    Bluetooth: L2CAP: validate option length before reading conf opt value
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2026-64402Unknown severity
    coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2026-64401Unknown severity
    smb: client: resolve SWN tcon from live registrations
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2026-64400Unknown severity
    ksmbd: prevent path traversal bypass by restricting caseless retry
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2026-64399Unknown severity
    ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2026-64398Unknown severity
    ksmbd: add a permission check for FSCTL_SET_ZERO_DATA
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2026-64397Unknown severity
    ksmbd: serialize QUERY_DIRECTORY requests per file
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2026-64396Unknown severity
    ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellation
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2026-64395Unknown severity
    ksmbd: require source read access for duplicate extents
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2026-64394Unknown severity
    ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2026-64393Unknown severity
    ksmbd: run set info with opener credentials
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2026-64392Unknown severity
    ksmbd: use opener credentials for delete-on-close
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2026-64391Unknown severity
    ksmbd: use opener credentials for ADS I/O
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2026-64390Unknown severity
    ksmbd: track the connection owning a byte-range lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2026-64389Unknown severity
    ksmbd: validate NTLMv2 response before updating session key
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2026-64388Unknown severity
    smb/client: fix chown/chgrp with SMB3 POSIX Extensions
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 46 of 326
Previous4445464748Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

8,447

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 2,251–2,300 of 16,292 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-64460Unknown severity
    PCI/IOV: Skip VF Resizable BAR restore on read error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2026-64459Unknown severity
    tcp: restore RCU grace period in tcp_ao_destroy_sock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2026-64456Unknown severity
    hwrng: virtio: clamp device-reported used.len at copy_data()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2026-64452Unknown severity
    6lowpan: fix NHC entry use-after-free on error path
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2026-64450Unknown severity
    tipc: fix out-of-bounds read in broadcast Gap ACK blocks
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2026-64449Unknown severity
    staging: vme_user: bound slave read/write to the kern_buf size
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2026-64448Unknown severity
    smb: client: restrict implied bcc[0] exemption to responses without data area
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2026-64447Unknown severity
    staging: media: ipu7: fix double-free and use-after-free in error paths
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2026-64445Unknown severity
    staging: rtl8723bs: fix WEP length underflow and OOB read in OnAuth()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2026-64444Unknown severity
    staging: rtl8723bs: fix OOB read in OnAssocRsp() IE loop
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2026-64443Unknown severity
    staging: rtl8723bs: fix OOB read in update_beacon_info() IE loop
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2026-64442Unknown severity
    staging: rtl8723bs: fix OOB reads in IE loops in issue_assocreq() and join_cmd_hdl()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2026-64441Unknown severity
    staging: rtl8723bs: fix OOB reads in rtw_get_sec_ie(), rtw_get_wapi_ie(), and rtw_get_wps_attr()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2026-64440Unknown severity
    staging: rtl8723bs: fix OOB write in HT_caps_handler()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2026-64439Unknown severity
    crypto: krb5 - filter out async aead implementations at alloc
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2026-64438Unknown severity
    crypto: qat - fix VF2PF work teardown race in adf_disable_sriov()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2026-64437Unknown severity
    ksmbd: fix use-after-free of a deferred file_lock on SMB2_CLOSE then SMB2_CANCEL
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2026-64436Unknown severity
    net: af_key: initialize alg_key_len for IPComp states
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2026-64435Unknown severity
    audit: Fix data races of skb_queue_len() readers on audit_queue
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2026-64434Unknown severity
    Bluetooth: L2CAP: Fix UAF in channel timeout by holding conn ref
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2026-64432Unknown severity
    fs/ntfs3: validate Dirty Page Table capacity in log_replay copy_lcns
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2026-64431Unknown severity
    ntfs: avoid calling post_write_mst_fixup() for invalid index_block
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2026-64430Unknown severity
    NTB: epf: Avoid calling pci_irq_vector() from hardirq context
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2026-64423Unknown severity
    ipv4: igmp: remove multicast group from hash table on device destruction
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2026-64422Unknown severity
    net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2026-64420Unknown severity
    mfd: cros_ec: Delay dev_set_drvdata() until probe success
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2026-64418Unknown severity
    mm: shrinker: fix shrinker_info teardown race with expansion
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2026-64414Unknown severity
    netfilter: handle unreadable frags
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2026-64413Unknown severity
    netfilter: ebtables: zero chainstack array
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2026-64412Unknown severity
    netfilter: ebtables: module names must be null-terminated
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2026-64411Unknown severity
    netfilter: ebtables: terminate table name before find_table_lock()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2026-64410Unknown severity
    netfilter: flowtable: IPIP tunnel hardware offload is not yet support
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2026-64408Unknown severity
    Bluetooth: bnep: pin L2CAP connection during netdev registration
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2026-64406Unknown severity
    Bluetooth: fix UAF in bt_accept_dequeue()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2026-64403Unknown severity
    Bluetooth: L2CAP: validate option length before reading conf opt value
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2026-64402Unknown severity
    coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2026-64401Unknown severity
    smb: client: resolve SWN tcon from live registrations
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2026-64400Unknown severity
    ksmbd: prevent path traversal bypass by restricting caseless retry
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2026-64399Unknown severity
    ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2026-64398Unknown severity
    ksmbd: add a permission check for FSCTL_SET_ZERO_DATA
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2026-64397Unknown severity
    ksmbd: serialize QUERY_DIRECTORY requests per file
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2026-64396Unknown severity
    ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellation
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2026-64395Unknown severity
    ksmbd: require source read access for duplicate extents
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2026-64394Unknown severity
    ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2026-64393Unknown severity
    ksmbd: run set info with opener credentials
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2026-64392Unknown severity
    ksmbd: use opener credentials for delete-on-close
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2026-64391Unknown severity
    ksmbd: use opener credentials for ADS I/O
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2026-64390Unknown severity
    ksmbd: track the connection owning a byte-range lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2026-64389Unknown severity
    ksmbd: validate NTLMv2 response before updating session key
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2026-64388Unknown severity
    smb/client: fix chown/chgrp with SMB3 POSIX Extensions
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 25, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 46 of 326
Previous4445464748Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard