Linux Kernel contains a race condition vulnerability which allows concurrent writes to the same AF_ALG socket causing data to be unpredictably interleaved and creating inconsistencies in the socket's internal state. This is a critical threat mapped to CVE-2025-39964; security leaders should validate exposure, priori...
Linux Kernel contains an out-of-bounds write vulnerability in the ebtables SNAT target which allows an ARP sender hardware address rewrite to write directly into a nonlinear socket-buffer fragment backed by a splice-imported file page. This is a critical threat mapped to CVE-2026-53266; security leaders should valid...
Linux Kernel contains an improper check for unusual or exceptional conditions vulnerability in the TLS receive path which allows a zero-length record retrieved from the rx_list to bypass the intended recvmsg() record-type handling, potentially causing subsequent TLS records to be processed using incorrect zero-copy...
In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to corrupt kernel pool memory, result... This is a low threat mapped to CVE-2026-15419; security leaders should validate exposure, prioritize patching, and verify compensatin...
In the silabser.sys Windows 8 driver for CP210x devices, a local unprivileged user can use incorrect driver settings to cause a kernel crash. This is a low threat mapped to CVE-2026-15417; security leaders should validate exposure, prioritize patching, and verify compensating controls.
MikroTik RouterOS contains a missing authenticaion for critical function vulnerability which allows kernel memory disclosure and denial of service in the btest service. This is a critical threat mapped to CVE-2026-67277; security leaders should validate exposure, prioritize patching, and verify compensating controls.
Linux Kernel contains an unspecified vulnerability that can allow for privilege escalation via IPv6 networking subsystem. This is a critical threat mapped to CVE-2026-53362; security leaders should validate exposure, prioritize patching, and verify compensating controls.
Linux Kernel contains an out-of-bounds memory write vulnerability which could allow a local user to gain privileged access or cause a denial of service on the system. This is a critical threat mapped to CVE-2022-0995; security leaders should validate exposure, prioritize patching, and verify compensating controls.
LiteSpeed cPanel plugin contains a UNIX symbolic link (Symlink) following vulnerability that could allow a user with FTP or web shell access on a shared hosting server running CloudLinux/CageFS. This is a critical threat mapped to CVE-2026-54420; security leaders should validate exposure, prioritize patching, and ve...
Linux Kernel contains an improper authentication vulnerability which could allow for privilege escalation via the cgroups v1 release_agent feature. This is a critical threat mapped to CVE-2022-0492; security leaders should validate exposure, prioritize patching, and verify compensating controls.
Linux Kernel contains an incorrect resource transfer between spheres vulnerability that could allow for privilege escalation. This is a critical threat mapped to CVE-2026-31431; security leaders should validate exposure, prioritize patching, and verify compensating controls.
Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory. This is a critical threat mapped to CVE-2025-43520; security leaders should validate exposure, prioritize patc...
Linux Kernel contains an integer overflow vulnerability in the create_elf_tables() function which could allow an unprivileged local user with access to SUID (or otherwise privileged) binary to escalate their privileges on the system. This is a critical threat mapped to CVE-2018-14634; security leaders should validat...
Microsoft Windows Kernel contains a race condition vulnerability that allows a local attacker with low-level privileges to escalate privileges. This is a critical threat mapped to CVE-2025-62215; security leaders should validate exposure, prioritize patching, and verify compensating controls.
Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space. This is a critical threat mapped to CVE-2021-22555; security leaders should validate exposure, prioritize patching, and verify compensati...
Microsoft Windows Kernel contains an unspecified vulnerability in the TrueType font parsing engine in win32k.sys in the kernel-mode drivers that allows remote attackers to execute... This is a critical threat mapped to CVE-2011-3402; security leaders should validate exposure, prioritize patching, and verify compensa...