Month: February 2026
CVE-2022-27664 In net/http in Go before 1.18.6 and 1.19.x before 1.19.1 attackers can cause a denial of service because an HTTP/2 connection can hang during closing if shutdown were preempted by a fatal error.
CVE-2024-35848 eeprom: at24: fix memory corruption race condition
Information published. Continue reading CVE-2024-35848 eeprom: at24: fix memory corruption race condition
CVE-2024-6610 Form validation popups could capture escape key presses. Therefore, spamming form validation messages could be used to prevent users from exiting full-screen mode. This vulnerability affects Firefox < 128 and Thunderbird < 128.
CVE-2025-6069 HTMLParser quadratic complexity when processing malformed inputs
CVE-2016-8681 The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
CVE-2025-22057 net: decrease cached dst counters in dst_release
Information published. Continue reading CVE-2025-22057 net: decrease cached dst counters in dst_release
CVE-2025-21917 usb: renesas_usbhs: Flush the notify_hotplug_work
Information published. Continue reading CVE-2025-21917 usb: renesas_usbhs: Flush the notify_hotplug_work
