← All tracked CVEs
Updated 10:00
last 30 days
933 fixed within SLA
| CVE | Status | Severity | Summary | Release | Clock started | Deadline | Fixed | Time to fix |
|---|---|---|---|---|---|---|---|---|
| Fixed within SLA | High | qdisc_pkt_len_segs_init fails to pull GSO headers, risking memcpy issues in TSO drivers | secure-packages-rolling | Jul 27, 2026 | Aug 11, 2026 | Aug 7, 2026 | 11 days | |
| Fixed within SLA | High | BPF verifier misses ld_{abs,ind} failure path analysis in subprograms, mishandling abnormal exits | secure-packages-rolling | Jul 27, 2026 | Aug 11, 2026 | Aug 7, 2026 | 11 days | |
| Fixed within SLA | High | Same-register dst/src in BPF sock_ops leaves dst unzeroed, causing OOB read and leak | secure-packages-rolling | Jul 23, 2026 | Aug 7, 2026 | Aug 7, 2026 | 15 days | |
| Fixed within SLA | Medium | Missing run load for vcn0 across segments in ntfs3 attr_data_get_block_locked causes SPARSE_LCN WARN_ON | secure-packages-rolling | Jul 20, 2026 | Sep 3, 2026 | Aug 7, 2026 | 18 days | |
| Fixed within SLA | Medium | DRM/TTM ttm_bo_shrink() infinite LRU walk on backup failure | secure-packages-rolling | Jul 16, 2026 | Aug 30, 2026 | Aug 7, 2026 | 22 days | |
| Fixed within SLA | Medium | rtw88 8821CE probe crash when pci_upstream_bridge() returns NULL on root bus | secure-packages-rolling | Jun 27, 2026 | Aug 11, 2026 | Aug 7, 2026 | 41 days | |
| Fixed within SLA | Medium | nf_tables reset commit_mutex causes circular lock with ipset list and iptables-nft '-m set' | secure-packages-rolling | Jun 26, 2026 | Aug 10, 2026 | Aug 7, 2026 | 43 days | |
| Fixed within SLA | High | GSO headers not pulled in qdisc_pkt_len_segs_init risk TSO memcpy crash, security issue | secure-packages-26.05 | Jul 27, 2026 | Aug 11, 2026 | Aug 7, 2026 | 11 days | |
| Fixed within SLA | High | BPF verifier omits ld_{abs,ind} failure path analysis in BTF subprograms | secure-packages-26.05 | Jul 27, 2026 | Aug 11, 2026 | Aug 7, 2026 | 11 days | |
| Fixed within SLA | High | BPF sock_ops GET_SK/GET_FIELD miss zeroing when dst==src, causing OOB read and leak | secure-packages-26.05 | Jul 23, 2026 | Aug 7, 2026 | Aug 7, 2026 | 15 days | |
| Fixed within SLA | Medium | ntfs3 attr_data_get_block_locked() misses vcn0 run load across segments, triggers WARN_ON | secure-packages-26.05 | Jul 20, 2026 | Sep 3, 2026 | Aug 7, 2026 | 18 days | |
| Fixed within SLA | High | SOCKMAP hides inflight fds from AF_UNIX GC causing leaks, UAF, and incorrect SCM counts | secure-packages-26.05 | Aug 4, 2026 | Aug 19, 2026 | Aug 7, 2026 | 3 days | |
| Fixed within SLA | Medium | Linux kernel drm/ttm ttm_bo_shrink() infinite LRU walk on backup failure | secure-packages-26.05 | Jul 16, 2026 | Aug 30, 2026 | Aug 7, 2026 | 22 days | |
| Fixed within SLA | Medium | rtw88 8821CE probe crash due to NULL pci_upstream_bridge on root bus | secure-packages-26.05 | Jun 28, 2026 | Aug 12, 2026 | Aug 7, 2026 | 40 days | |
| Fixed within SLA | Medium | nf_tables reset commit_mutex causes circular lock dependency with nft reset, ipset list, iptables-nft -m set | secure-packages-26.05 | Jun 28, 2026 | Aug 12, 2026 | Aug 7, 2026 | 40 days | |
| Fixed within SLA | Medium | Concurrent nft_counter dump-and-reset race can double-subtract, underrunning netfilter counter totals | secure-packages-26.05 | Aug 7, 2026 | Sep 21, 2026 | Aug 7, 2026 | same day | |
| Fixed within SLA | Medium | Chrome DevTools untrusted input allows remote bypass of navigation restrictions via crafted HTML | secure-packages-rolling | Aug 4, 2026 | Sep 18, 2026 | Aug 5, 2026 | 1 day | |
| Fixed within SLA | High | Chrome Chromoting on Linux <151.0.7922.72 allows OS-level privilege escalation via network traffic | secure-packages-rolling | Aug 4, 2026 | Aug 19, 2026 | Aug 5, 2026 | 1 day | |
| Fixed within SLA | High | Chromoting on Linux before 151.0.7922.72 enables OS-level privilege escalation via malicious network traffic | secure-packages-26.05 | Aug 4, 2026 | Aug 19, 2026 | Aug 5, 2026 | 1 day | |
| Fixed within SLA | Medium | Windows Chrome Updater allows local UI spoofing via malicious file before 151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Critical | Tint implementation flaw in Google Chrome on Mac <151.0.7922.72 enabling sandbox escape via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Aug 12, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome DevTools insufficient input validation lets remote attackers bypass navigation restrictions via crafted HTML pre-151.0.7922.72 | secure-packages-25.11 | Aug 4, 2026 | Sep 18, 2026 | Aug 5, 2026 | 1 day | |
| Fixed within SLA | High | Use-after-free in Views on Linux Chrome <151.0.7922.72 allows remote heap corruption via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Aug 20, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | High | Linux Chrome Chromoting pre-151.0.7922.72 allows local privilege escalation via network traffic | secure-packages-25.11 | Aug 4, 2026 | Aug 19, 2026 | Aug 5, 2026 | 1 day | |
| Fixed within SLA | Medium | Chrome Android GPU side-channel lets remote attackers leak cross-origin data before 151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Google Chrome Cast pre-151.0.7922.72 remote cross-origin data leak via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Google Chrome CSS bug enabled remote script/HTML injection (UXSS) before 151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | GetUserMedia allows cross-origin data leak in Chrome prior to 151.0.7922.72 via compromised renderer | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome Credential Management UI spoofing via crafted HTML by remote attacker pre-151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome Payments input validation bug enables UI spoofing by compromised renderer pre-151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome iOS <151.0.7922.72 insufficient input validation enables remote navigation restriction bypass | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Blink cross-origin data leak via crafted HTML in Chrome before 151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome DevTools same-origin policy bypass via crafted HTML before 151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | High | Insufficient validation in Chrome DevTools allows extension-based privilege escalation pre-151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Aug 20, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | ANGLE uninitialized use in Chrome <151.0.7922.72 leaks cross-origin data via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | High | Chrome Mac Audio use-after-free enables sandbox escape after renderer compromise via crafted HTML (pre-151.0.7922.72) | secure-packages-25.11 | Aug 5, 2026 | Aug 20, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Google Chrome Loader before 151.0.7922.72 leaks cross-origin data via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Incorrect security UI allows Omnibox spoofing via crafted HTML on Chrome iOS <151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Isolated Web Apps in Chrome <151.0.7922.72 allow remote bypass of navigation restrictions via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Remote Site Isolation bypass in Google Chrome <151.0.7922.72 via crafted HTML page | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Google Chrome Autofill cross-origin data leak via crafted HTML page pre-151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Policy bypass in Chrome Receiver enables sandbox escape via crafted HTML (pre-151.0.7922.72) | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Inappropriate PresentationAPI implementation leaks cross-origin data in Chrome before 151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | High | Insufficient input validation in Chrome Variations enables heap corruption by privileged network attacker | secure-packages-25.11 | Aug 5, 2026 | Aug 20, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome Cast insufficient input validation (<151.0.7922.72) leaks cross-origin data via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome <151.0.7922.72 WebGL out-of-bounds read allows remote memory disclosure via crafted HTML | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Skia uninitialized use enables cross-origin data leak via crafted HTML in Chrome <151.0.7922.72 | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome Mac pre-151.0.7922.72 Media OOB read enables sandbox escape after renderer compromise | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Medium | Chrome Cast input validation flaw leaks cross-origin data via crafted HTML (pre-151.0.7922.72) (Medium severity) | secure-packages-25.11 | Aug 5, 2026 | Sep 19, 2026 | Aug 5, 2026 | same day | |
| Fixed within SLA | Critical | Chrome WebSockets input validation flaw enables sandbox escape from compromised renderer via crafted HTML (pre-151.0.7922.72) | secure-packages-25.11 | Aug 5, 2026 | Aug 12, 2026 | Aug 5, 2026 | same day |