1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 9, 2026, 5:55 AM 16,296 active 1,443 known exploited

Catalog summary

16,296

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 9, 2026, 5:55 AM 16,296 active 1,443 known exploited

Catalog summary

16,296

Active CVEs

8,447

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 2,401–2,450 of 16,296 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-64153Unknown severity
    drm/msm: Fix iommu_map_sgtable() return value check and avoid WARN
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2026-64152Unknown severity
    iommu: Handle unmap error when iommu_debug is enabled
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2026-64151Unknown severity
    iommupt: Check for missing PAGE_SIZE in the pgsize_bitmap
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2026-64150Unknown severity
    netfilter: nft_inner: release local_lock before re-enabling softirqs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2026-64148Unknown severity
    pds_core: fix error handling in pdsc_devcmd_wait
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2026-64142Unknown severity
    ksmbd: close durable scavenger races against m_fp_list lookups
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2026-64141Unknown severity
    ksmbd: fix null pointer dereference in compare_guid_key()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2026-64140Unknown severity
    ksmbd: fix null pointer dereference in proc_show_files()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2026-64138Unknown severity
    ksmbd: validate SID in parent security descriptor during ACL inheritance
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2026-64137Unknown severity
    smb: client: require net admin for CIFS SWN netlink
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2026-64136Unknown severity
    smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2026-64134Unknown severity
    ALSA: pcm: Don't setup bogus iov_iter for silencing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2026-64133Unknown severity
    ALSA: asihpi: Fix potential OOB array access at reading cache
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2026-64132Unknown severity
    ipv6: ioam: refresh hdr pointer before ioam6_event()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2026-64126Unknown severity
    Bluetooth: MGMT: validate Add Extended Advertising Data length
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2026-64125Unknown severity
    net: bcmgenet: keep RBUF EEE/PM disabled
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2026-64124Unknown severity
    net: devmem: reject dma-buf bind with non-page-aligned size or SG length
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2026-64123Unknown severity
    net: hsr: defer node table free until after RCU readers
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2026-64122Unknown severity
    net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2026-64118Unknown severity
    qed: fix double free in qed_cxt_tables_alloc()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2026-64117Unknown severity
    wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2026-64116Unknown severity
    ipv6: ioam: add NULL check for idev in ipv6_hop_ioam()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2026-64115Unknown severity
    vsock/vmci: fix UAF when peer resets connection during handshake
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2026-64114Unknown severity
    ipv4: raw: reject IP_HDRINCL packets with ihl < 5
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2026-64113Unknown severity
    ixgbevf: fix use-after-free in VEPA multicast source pruning
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2026-64112Unknown severity
    rbd: eliminate a race in lock_dwork draining on unmap
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2026-64111Unknown severity
    lsm: hold cred_guard_mutex for lsm_set_self_attr()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2026-64109Unknown severity
    af_unix: Fix UAF read of tail->len in unix_stream_data_wait()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2026-64108Unknown severity
    cifs: Fix busy dentry used after unmounting
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2026-64106Unknown severity
    KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2026-64104Unknown severity
    virt: sev-guest: Explicitly leak pages in unknown state
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2026-64102Unknown severity
    RDMA/siw: Reject MPA FPDU length underflow before signed receive math
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2026-64099Unknown severity
    drm/v3d: Fix use-after-free of CPU job query arrays on error path
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2026-64098Unknown severity
    drm/virtio: use uninterruptible resv lock for plane updates
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2026-64097Unknown severity
    drm/amd/display: Validate GPIO pin LUT table size before iterating
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2026-64096Unknown severity
    batman-adv: mcast: fix use-after-free in orig_node RCU release
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2026-64095Unknown severity
    batman-adv: bla: avoid double decrement of bla.num_requests
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2026-64093Unknown severity
    batman-adv: tp_meter: directly shut down timer on cleanup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2026-64091Unknown severity
    batman-adv: tt: fix TOCTOU race for reported vlans
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2026-64089Unknown severity
    batman-adv: tt: fix negative last_changeset_len
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2026-64088Unknown severity
    batman-adv: tt: fix negative tt_buff_len
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2026-64086Unknown severity
    hwmon: (pmbus/adm1266) include PEC byte in pmbus_block_xfer read buffer
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2026-64084Unknown severity
    hwmon: (pmbus/adm1266) cap PDIO scan in get_multiple at ADM1266_PDIO_NR
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2026-64082Unknown severity
    riscv: Fix register corruption from uninitialized cregs on error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2026-64081Unknown severity
    firmware: arm_ffa: Validate framework notification message layout
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2026-64080Unknown severity
    firmware: arm_ffa: Snapshot notifier callbacks under lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2026-64078Unknown severity
    netfilter: x_tables: add and use xtables_unregister_table_exit
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2026-64077Unknown severity
    netfilter: ebtables: move to two-stage removal scheme
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2026-64076Unknown severity
    netfilter: bridge: eb_tables: close module init race
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2026-64074Unknown severity
    fs/statmount: fix slab out-of-bounds write in statmount_mnt_idmap
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 49 of 326
Previous4748495051Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

8,447

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 2,401–2,450 of 16,296 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-64153Unknown severity
    drm/msm: Fix iommu_map_sgtable() return value check and avoid WARN
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  2. CVE-2026-64152Unknown severity
    iommu: Handle unmap error when iommu_debug is enabled
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  3. CVE-2026-64151Unknown severity
    iommupt: Check for missing PAGE_SIZE in the pgsize_bitmap
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  4. CVE-2026-64150Unknown severity
    netfilter: nft_inner: release local_lock before re-enabling softirqs
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  5. CVE-2026-64148Unknown severity
    pds_core: fix error handling in pdsc_devcmd_wait
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  6. CVE-2026-64142Unknown severity
    ksmbd: close durable scavenger races against m_fp_list lookups
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  7. CVE-2026-64141Unknown severity
    ksmbd: fix null pointer dereference in compare_guid_key()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  8. CVE-2026-64140Unknown severity
    ksmbd: fix null pointer dereference in proc_show_files()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  9. CVE-2026-64138Unknown severity
    ksmbd: validate SID in parent security descriptor during ACL inheritance
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  10. CVE-2026-64137Unknown severity
    smb: client: require net admin for CIFS SWN netlink
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  11. CVE-2026-64136Unknown severity
    smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  12. CVE-2026-64134Unknown severity
    ALSA: pcm: Don't setup bogus iov_iter for silencing
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  13. CVE-2026-64133Unknown severity
    ALSA: asihpi: Fix potential OOB array access at reading cache
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  14. CVE-2026-64132Unknown severity
    ipv6: ioam: refresh hdr pointer before ioam6_event()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  15. CVE-2026-64126Unknown severity
    Bluetooth: MGMT: validate Add Extended Advertising Data length
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  16. CVE-2026-64125Unknown severity
    net: bcmgenet: keep RBUF EEE/PM disabled
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  17. CVE-2026-64124Unknown severity
    net: devmem: reject dma-buf bind with non-page-aligned size or SG length
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  18. CVE-2026-64123Unknown severity
    net: hsr: defer node table free until after RCU readers
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  19. CVE-2026-64122Unknown severity
    net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  20. CVE-2026-64118Unknown severity
    qed: fix double free in qed_cxt_tables_alloc()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  21. CVE-2026-64117Unknown severity
    wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  22. CVE-2026-64116Unknown severity
    ipv6: ioam: add NULL check for idev in ipv6_hop_ioam()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  23. CVE-2026-64115Unknown severity
    vsock/vmci: fix UAF when peer resets connection during handshake
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  24. CVE-2026-64114Unknown severity
    ipv4: raw: reject IP_HDRINCL packets with ihl < 5
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  25. CVE-2026-64113Unknown severity
    ixgbevf: fix use-after-free in VEPA multicast source pruning
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  26. CVE-2026-64112Unknown severity
    rbd: eliminate a race in lock_dwork draining on unmap
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  27. CVE-2026-64111Unknown severity
    lsm: hold cred_guard_mutex for lsm_set_self_attr()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  28. CVE-2026-64109Unknown severity
    af_unix: Fix UAF read of tail->len in unix_stream_data_wait()
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  29. CVE-2026-64108Unknown severity
    cifs: Fix busy dentry used after unmounting
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  30. CVE-2026-64106Unknown severity
    KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  31. CVE-2026-64104Unknown severity
    virt: sev-guest: Explicitly leak pages in unknown state
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  32. CVE-2026-64102Unknown severity
    RDMA/siw: Reject MPA FPDU length underflow before signed receive math
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  33. CVE-2026-64099Unknown severity
    drm/v3d: Fix use-after-free of CPU job query arrays on error path
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  34. CVE-2026-64098Unknown severity
    drm/virtio: use uninterruptible resv lock for plane updates
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  35. CVE-2026-64097Unknown severity
    drm/amd/display: Validate GPIO pin LUT table size before iterating
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  36. CVE-2026-64096Unknown severity
    batman-adv: mcast: fix use-after-free in orig_node RCU release
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  37. CVE-2026-64095Unknown severity
    batman-adv: bla: avoid double decrement of bla.num_requests
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  38. CVE-2026-64093Unknown severity
    batman-adv: tp_meter: directly shut down timer on cleanup
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  39. CVE-2026-64091Unknown severity
    batman-adv: tt: fix TOCTOU race for reported vlans
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  40. CVE-2026-64089Unknown severity
    batman-adv: tt: fix negative last_changeset_len
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  41. CVE-2026-64088Unknown severity
    batman-adv: tt: fix negative tt_buff_len
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  42. CVE-2026-64086Unknown severity
    hwmon: (pmbus/adm1266) include PEC byte in pmbus_block_xfer read buffer
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  43. CVE-2026-64084Unknown severity
    hwmon: (pmbus/adm1266) cap PDIO scan in get_multiple at ADM1266_PDIO_NR
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  44. CVE-2026-64082Unknown severity
    riscv: Fix register corruption from uninitialized cregs on error
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  45. CVE-2026-64081Unknown severity
    firmware: arm_ffa: Validate framework notification message layout
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  46. CVE-2026-64080Unknown severity
    firmware: arm_ffa: Snapshot notifier callbacks under lock
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  47. CVE-2026-64078Unknown severity
    netfilter: x_tables: add and use xtables_unregister_table_exit
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  48. CVE-2026-64077Unknown severity
    netfilter: ebtables: move to two-stage removal scheme
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  49. CVE-2026-64076Unknown severity
    netfilter: bridge: eb_tables: close module init race
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
  50. CVE-2026-64074Unknown severity
    fs/statmount: fix slab out-of-bounds write in statmount_mnt_idmap
    Not scoredSource severity not reported
    Linux/Linuxgeneric
    PublishedJul 19, 2026First seen at HOL Aug 5, 2026Updated Aug 5, 2026 Fix availableView HOL analysis
Page 49 of 326
Previous4748495051Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard