Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-31607 | 9.8 CRITICAL | usbip: validate number_of_packets in usbip_pack_ret_submit() |
| CVE-2026-31633 | 9.8 CRITICAL | rxrpc: Fix integer overflow in rxgk_verify_response() |
| CVE-2026-31608 | 9.8 CRITICAL | smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list |
| CVE-2026-31637 | 9.8 CRITICAL | rxrpc: reject undecryptable rxkad response tickets |
| CVE-2026-31669 | 9.8 CRITICAL | mptcp: fix slab-use-after-free in __inet_lookup_established |
| CVE-2026-31668 | 9.8 CRITICAL | seg6: separate dst_cache for input and output paths in seg6 lwtunnel |
| CVE-2026-31589 | 9.8 CRITICAL | mm: call ->free_folio() directly in folio_unmap_invalidate() |
| CVE-2026-31649 | 9.8 CRITICAL | net: stmmac: fix integer underflow in chain mode |
| CVE-2026-31609 | 9.8 CRITICAL | smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush() |
| CVE-2026-31657 | 9.8 CRITICAL | batman-adv: hold claim backbone gateways by reference |
| CVE-2026-31659 | 9.8 CRITICAL | batman-adv: reject oversized global TT response buffers |
| CVE-2026-31636 | 9.1 CRITICAL | rxrpc: fix RESPONSE authenticator parser OOB read |
| CVE-2026-31629 | 8.8 HIGH | nfc: llcp: add missing return after LLCP_CLOSED checks |
| CVE-2026-31570 | 8.8 HIGH | can: gw: fix OOB heap access in cgw_csum_crc8_rel() |
| CVE-2026-31558 | 8.8 HIGH | LoongArch: KVM: Make kvm_get_vcpu_by_cpuid() more robust |
| CVE-2026-31553 | 8.8 HIGH | KVM: arm64: Fix the descriptor address in __kvm_at_swap_desc() |
| CVE-2026-31622 | 8.8 HIGH | NFC: digital: Bounds check NFC-A cascade depth in SDD response handler |
| CVE-2026-31588 | 8.8 HIGH | KVM: x86: Use scratch field in MMIO fragment to hold small write values |
| CVE-2026-31611 | 8.6 HIGH | ksmbd: require 3 sub-authorities before reading sub_auth[2] |
| CVE-2026-31631 | 8.2 HIGH | rxrpc: Fix buffer overread in rxgk_do_verify_authenticator() |
Showing top 20 of 138 CVEs. View all on vendor page → →
No comments yet