Amazon Linux 2 (EOS) Security Advisory: ALAS2KERNEL-5.10-2026-130
Advisory Released Date: 2026-08-31
Advisory Updated Date: 2026-09-09
FAQs regarding Amazon Linux ALAS/CVE Severity
In the Linux kernel, the following vulnerability has been resolved:
tls: separate no-async decryption request handling from async (CVE-2024-58240)
In the Linux kernel, the following vulnerability has been resolved:
xsk: Fix race condition in AF_XDP generic RX path (CVE-2025-37920)
In the Linux kernel, the following vulnerability has been resolved:
libceph: Fix slab-out-of-bounds access in auth message processing (CVE-2026-46119)
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix ld_{abs,ind} failure path analysis in subprogs (CVE-2026-53090)
In the Linux kernel, the following vulnerability has been resolved:
nvmet: fix pre-auth out-of-bounds heap read in Discovery Get Log Page (CVE-2026-64320)
In the Linux kernel, the following vulnerability has been resolved:
tipc: fix use-after-free of the discoverer in tipc_disc_rcv() (CVE-2026-64543)
In the Linux kernel, the following vulnerability has been resolved:
KVM: nVMX: Hide shadow VMCS right after VMCLEAR (CVE-2026-64562)
In the Linux kernel, the following vulnerability has been resolved:
rhashtable: clear stale iter->p on table restart (CVE-2026-64563)
In the Linux kernel, the following vulnerability has been resolved:
sctp: don't free the ASCONF's own transport in DEL-IP processing (CVE-2026-64564)
In the Linux kernel, the following vulnerability has been resolved:
btrfs: reject free space cache with more entries than pages (CVE-2026-64567)
In the Linux kernel, the following vulnerability has been resolved:
ipv4: fib: free fib_alias with kfree_rcu() on insert error path (CVE-2026-64572)
In the Linux kernel, the following vulnerability has been resolved:
xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert (CVE-2026-64579)
In the Linux kernel, the following vulnerability has been resolved:
xfrm: fix sk_dst_cache double-free in xfrm_user_policy() (CVE-2026-64581)
In the Linux kernel, the following vulnerability has been resolved:
RDMA/rxe: Fix a use-after-free problem in rxe_mmap (CVE-2026-64582)
In the Linux kernel, the following vulnerability has been resolved:
tipc: clear sock->sk on the failed-insert path in tipc_sk_create() (CVE-2026-68117)
In the Linux kernel, the following vulnerability has been resolved:
pppoe: reload header pointer after dev_hard_header() (CVE-2026-68121)
In the Linux kernel, the following vulnerability has been resolved:
openvswitch: fix GSO userspace truncation underflow (CVE-2026-68123)
In the Linux kernel, the following vulnerability has been resolved:
ila: reload IPv6 header after pskb_may_pull in checksum adjust (CVE-2026-68127)
In the Linux kernel, the following vulnerability has been resolved:
rbd: Reset positive result codes to zero in object map update path (CVE-2026-68131)
In the Linux kernel, the following vulnerability has been resolved:
net/sched: serialize qdisc_rtab_list against concurrent get/put (CVE-2026-68138)
In the Linux kernel, the following vulnerability has been resolved:
geneve: require CAP_NET_ADMIN in the device netns for changelink (CVE-2026-68142)
In the Linux kernel, the following vulnerability has been resolved:
net: slip: serialize receive against buffer reallocation (CVE-2026-68143)
In the Linux kernel, the following vulnerability has been resolved:
libceph: remove debugfs files before client teardown (CVE-2026-68153)
In the Linux kernel, the following vulnerability has been resolved:
libceph: reject zero bucket types in crush_decode (CVE-2026-68154)
In the Linux kernel, the following vulnerability has been resolved:
libceph: Reject monmaps advertising zero monitors (CVE-2026-68155)
In the Linux kernel, the following vulnerability has been resolved:
libceph: refresh auth->authorizer_buf{,_len} after authorizer update (CVE-2026-68156)
In the Linux kernel, the following vulnerability has been resolved:
libceph: guard missing CRUSH type name lookup (CVE-2026-68157)
In the Linux kernel, the following vulnerability has been resolved:
libceph: Fix multiplication overflow in decode_new_up_state_weight() (CVE-2026-68158)
In the Linux kernel, the following vulnerability has been resolved:
ceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps() (CVE-2026-68160)
In the Linux kernel, the following vulnerability has been resolved:
cdrom: fix stack out-of-bounds read in CDROMVOLCTRL (CVE-2026-68184)
In the Linux kernel, the following vulnerability has been resolved:
binfmt_misc: set have_execfd only once the interpreter is opened (CVE-2026-68186)
In the Linux kernel, the following vulnerability has been resolved:
bpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg() (CVE-2026-68284)
In the Linux kernel, the following vulnerability has been resolved:
tipc: fix u16 MTU truncation in media and bearer MTU validation (CVE-2026-68297)
In the Linux kernel, the following vulnerability has been resolved:
vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets (CVE-2026-68299)
In the Linux kernel, the following vulnerability has been resolved:
sctp: auth: verify auth requirement when auth_chunk is NULL (CVE-2026-68300)
In the Linux kernel, the following vulnerability has been resolved:
tipc: fix infinite loop in __tipc_nl_compat_dumpit (CVE-2026-68313)
In the Linux kernel, the following vulnerability has been resolved:
sctp: validate stream count in sctp_process_strreset_inreq() (CVE-2026-68315)
In the Linux kernel, the following vulnerability has been resolved:
sctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid (CVE-2026-68320)
In the Linux kernel, the following vulnerability has been resolved:
rds: Fix inet6_addr_lst NULL dereference when IPv6 is disabled (CVE-2026-68322)
In the Linux kernel, the following vulnerability has been resolved:
iommu/amd: Bound the early ACPI HID map (CVE-2026-68325)
In the Linux kernel, the following vulnerability has been resolved:
rds: drop incoming messages that cross network namespace boundaries (CVE-2026-68335)
In the Linux kernel, the following vulnerability has been resolved:
net/packet: avoid fanout hook re-registration after unregister (CVE-2026-68338)
In the Linux kernel, the following vulnerability has been resolved:
USB: serial: io_edgeport: cap received transmit credits (CVE-2026-68365)
In the Linux kernel, the following vulnerability has been resolved:
sctp: fix auth_hmacs array size in struct sctp_cookie (CVE-2026-68376)
In the Linux kernel, the following vulnerability has been resolved:
net/sched: act_tunnel_key: Defer dst_release to RCU callback (CVE-2026-68377)
In the Linux kernel, the following vulnerability has been resolved:
smb/client: handle overlapping allocated ranges in fallocate (CVE-2026-68388)
In the Linux kernel, the following vulnerability has been resolved:
ppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF (CVE-2026-68398)
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix UAF in sock clone early bailouts (CVE-2026-68399)
In the Linux kernel, the following vulnerability has been resolved:
IB/mad: Drop unmatched RMPP responses before reassembly (CVE-2026-68425)
In the Linux kernel, the following vulnerability has been resolved:
KVM: x86/mmu: Fix use-after-free on vendor module reload (CVE-2026-68428)
In the Linux kernel, the following vulnerability has been resolved:
vxlan: require CAP_NET_ADMIN in the device netns for changelink (CVE-2026-68432)
In the Linux kernel, the following vulnerability has been resolved:
libceph: bound get_version reply decode to front len (CVE-2026-68433)
In the Linux kernel, the following vulnerability has been resolved:
x86/bugs: Make Safe-RET robust against interrupt injection (CVE-2026-68480)
In the Linux kernel, the following vulnerability has been resolved:
macsec: don't read an unset MAC header in macsec_encrypt() (CVE-2026-72019)
In the Linux kernel, the following vulnerability has been resolved:
net: ip6_tunnel: require CAP_NET_ADMIN in the device netns for changelink (CVE-2026-72051)
In the Linux kernel, the following vulnerability has been resolved:
net: ipip: require CAP_NET_ADMIN in the device netns for changelink (CVE-2026-72053)
In the Linux kernel, the following vulnerability has been resolved:
cpu: hotplug: Bound hotplug states sysfs output (CVE-2026-72066)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: add missing device refcount for CAN filter removal (CVE-2026-72113)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: validate frame length in bcm_rx_setup() for RTR replies (CVE-2026-72114)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: track a single source interface for ANYDEV timeout/throttle ops (CVE-2026-72115)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: fix stale rx/tx ops after device removal (CVE-2026-72116)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: fix data race on rx_stamp/rx_ifindex in bcm_rx_handler() (CVE-2026-72117)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: fix CAN frame rx/tx statistics (CVE-2026-72118)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: extend bcm_tx_lock usage for data and timer updates (CVE-2026-72119)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: add locking when updating filter and timer values (CVE-2026-72121)
In the Linux kernel, the following vulnerability has been resolved:
can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF (CVE-2026-72123)
In the Linux kernel, the following vulnerability has been resolved:
ipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump (CVE-2026-72392)
In the Linux kernel, the following vulnerability has been resolved:
tipc: reject inverted service ranges from peer bindings (CVE-2026-74281)
In the Linux kernel, the following vulnerability has been resolved:
net: openvswitch: fix skb leak on flow key update failure during ct (CVE-2026-74464)
In the Linux kernel, the following vulnerability has been resolved:
net: openvswitch: fix potential UAF on meter attach failure (CVE-2026-74465)
In the Linux kernel, the following vulnerability has been resolved:
sctp: prevent peer transport count overflow (CVE-2026-74469)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Check return value of __register_event() in trace_module_add_events() (CVE-2026-74471)
In the Linux kernel, the following vulnerability has been resolved:
vxlan: use pskb_network_may_pull() in route_shortcircuit() (CVE-2026-74473)
In the Linux kernel, the following vulnerability has been resolved:
vxlan: use neigh_ha_snapshot() in route_shortcircuit() (CVE-2026-74475)
In the Linux kernel, the following vulnerability has been resolved:
net: bridge: stop fast-leave after deleting a port group (CVE-2026-74480)
In the Linux kernel, the following vulnerability has been resolved:
mm/page_reporting: use system_freezable_wq to fix UAF during suspend (CVE-2026-74481)
In the Linux kernel, the following vulnerability has been resolved:
mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios (CVE-2026-74482)
In the Linux kernel, the following vulnerability has been resolved:
binfmt_misc: reject a flag character as the field delimiter (CVE-2026-74485)
In the Linux kernel, the following vulnerability has been resolved:
tipc: avoid use-after-free in poll trace queue dumps (CVE-2026-74490)
In the Linux kernel, the following vulnerability has been resolved:
netfilter: ipset: do not update comments from kernel-side hash adds (CVE-2026-74492)
In the Linux kernel, the following vulnerability has been resolved:
igbvf: Fix leak in TX DMA error cleanup (CVE-2026-74495)
In the Linux kernel, the following vulnerability has been resolved:
audit: fix potential use-after-free in audit_del_rule() (CVE-2026-74512)
In the Linux kernel, the following vulnerability has been resolved:
mm/hugetlb: fix list corruption in allocate_file_region_entries() (CVE-2026-74518)
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: devicetree: don't free uninitialized dev_name on error path (CVE-2026-74519)
In the Linux kernel, the following vulnerability has been resolved:
qede: sync udp_tunnel ports outside qede_lock in the recovery path (CVE-2026-74523)
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (adt7470) Fix busy-loop and I2C flooding in update thread (CVE-2026-74547)
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775-core) Prevent access to unsupported weight registers (CVE-2026-74549)
In the Linux kernel, the following vulnerability has been resolved:
scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer (CVE-2026-74556)
In the Linux kernel, the following vulnerability has been resolved:
scsi: libiscsi: Fix stale-data leak into the SCSI sense buffer (CVE-2026-74557)
In the Linux kernel, the following vulnerability has been resolved:
rds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check() (CVE-2026-74563)
In the Linux kernel, the following vulnerability has been resolved:
netfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH (CVE-2026-74564)
In the Linux kernel, the following vulnerability has been resolved:
keys: make keyring key-chunk byte order agree with keyring_diff_objects() (CVE-2026-74566)
In the Linux kernel, the following vulnerability has been resolved:
keys: fix out-of-bounds read in keyring_get_key_chunk() (CVE-2026-74567)
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() (CVE-2026-74569)
In the Linux kernel, the following vulnerability has been resolved:
net: mpls: initialize rtm_tos in mpls_getroute() (CVE-2026-74577)
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_payload: fix mask build for partial field offload (CVE-2026-74579)
In the Linux kernel, the following vulnerability has been resolved:
vhost: reset the vring metadata cache on vring reconfiguration (CVE-2026-74580)
In the Linux kernel, the following vulnerability has been resolved:
net: ipv6: clear suppressed fib6 rule result (CVE-2026-74581)
In the Linux kernel, the following vulnerability has been resolved:
net/sched: cls_route: fix fastmap use-after-free on filter (CVE-2026-74583)
In the Linux kernel, the following vulnerability has been resolved:
sctp: clear new_transport when removing a peer (CVE-2026-74586)
In the Linux kernel, the following vulnerability has been resolved:
sctp: fix use-after-free of cached ASCONF chunk (CVE-2026-74587)
In the Linux kernel, the following vulnerability has been resolved:
sctp: keep chunk->transport in step with the list it is queued on (CVE-2026-74588)
In the Linux kernel, the following vulnerability has been resolved:
bpf, sockmap: Fix sk_redir use-after-free in send verdict (CVE-2026-74589)
In the Linux kernel, the following vulnerability has been resolved:
ip6_tunnel: clear skb2->cb[] in ip6ip6_err() (CVE-2026-74597)
In the Linux kernel, the following vulnerability has been resolved:
ipv6: fix Route Information option length validation (CVE-2026-74598)
In the Linux kernel, the following vulnerability has been resolved:
tipc: read le->link under the node lock in tipc_node_link_down() (CVE-2026-74609)
In the Linux kernel, the following vulnerability has been resolved:
vsock/virtio: avoid refilling the RX queue after teardown (CVE-2026-74613)
In the Linux kernel, the following vulnerability has been resolved:
vxlan: do not arm the ageing timer on a device that is down (CVE-2026-74615)
In the Linux kernel, the following vulnerability has been resolved:
netfilter: bridge: release template ct on non-IP path (CVE-2026-74625)
In the Linux kernel, the following vulnerability has been resolved:
ipv6: prevent in6_dev_get() from resurrecting inet6_dev (CVE-2026-74630)
In the Linux kernel, the following vulnerability has been resolved:
fbdev: bitblit: bound-check glyph index in bit_cursor() (CVE-2026-74635)
In the Linux kernel, the following vulnerability has been resolved:
serial: 8250_dma: Clear stale RX state on shutdown (CVE-2026-74654)
In the Linux kernel, the following vulnerability has been resolved:
ipv4: fix use-after-free in fib_nhc_update_mtu() (CVE-2026-74656)
In the Linux kernel, the following vulnerability has been resolved:
futex: Prevent robust futex exit race some more (CVE-2026-74658)
In the Linux kernel, the following vulnerability has been resolved:
netfilter: ebt_nflog: pin the NFLOG backend (CVE-2026-74660)
In the Linux kernel, the following vulnerability has been resolved:
net: openvswitch: reallocate update replies for mismatched IDs (CVE-2026-74664)
In the Linux kernel, the following vulnerability has been resolved:
net/packet: reset the MAC header on the packet-socket transmit path (CVE-2026-74667)
In the Linux kernel, the following vulnerability has been resolved:
ipvs: clear IPv4 options after rebasing tunnel ICMP errors (CVE-2026-74669)
In the Linux kernel, the following vulnerability has been resolved:
ima: fix out-of-bounds read in xattr_verify() (CVE-2026-74671)
In the Linux kernel, the following vulnerability has been resolved:
Input: evdev - fix information leak in evdev_pass_values() (CVE-2026-74673)
In the Linux kernel, the following vulnerability has been resolved:
vt: stabilize tty reference in kbd_keycode with tty_port_tty_get (CVE-2026-74675)
In the Linux kernel, the following vulnerability has been resolved:
vt: add permission check for KDSKBMETA ioctl (CVE-2026-74676)
In the Linux kernel, the following vulnerability has been resolved:
Input: evdev - sanitize event type index when fetching event masks (CVE-2026-74683)
In the Linux kernel, the following vulnerability has been resolved:
sctp: clear control chunk transport if it is being removed (CVE-2026-74688)
In the Linux kernel, the following vulnerability has been resolved:
bnxt_en: Disable EOP for TPA on all chips to prevent data corruption (CVE-2026-74697)
In the Linux kernel, the following vulnerability has been resolved:
net/openvswitch: check Ethernet header length in key_extract() (CVE-2026-74701)
In the Linux kernel, the following vulnerability has been resolved:
net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter (CVE-2026-74704)
In the Linux kernel, the following vulnerability has been resolved:
udp: fix potential use-after-free in tunnel segmentation (CVE-2026-74705)
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: fw_tracer, return NULL on create error (CVE-2026-74717)
In the Linux kernel, the following vulnerability has been resolved:
bpf: Preserve pointer state for commuted arithmetic (CVE-2026-74720)
In the Linux kernel, the following vulnerability has been resolved:
bonding: alb: re-check primary_is_promisc under RTNL in bond_alb_monitor (CVE-2026-74726)
In the Linux kernel, the following vulnerability has been resolved:
NFS: Pin the 'struct nfs_server' during a FREE_STATEID call (CVE-2026-74730)
In the Linux kernel, the following vulnerability has been resolved:
vxlan: re-fetch eth header after route_shortcircuit() (CVE-2026-80681)
In the Linux kernel, the following vulnerability has been resolved:
can: j1939: transport: j1939_session_fresh_new(): initialize receive buffer (CVE-2026-80707)
In the Linux kernel, the following vulnerability has been resolved:
ipvs: do not propagate one-packet flag to synced conns (CVE-2026-80714)
In the Linux kernel, the following vulnerability has been resolved:
ALSA: pcm: wake linked drain waiters on unlink (CVE-2026-80716)
In the Linux kernel, the following vulnerability has been resolved:
sctp: validate Adaptation Indication parameter length (CVE-2026-80717)
In the Linux kernel, the following vulnerability has been resolved:
net: remove CAP_SYS_RAWIO zero-padding in dev_validate_header (CVE-2026-80731)
In the Linux kernel, the following vulnerability has been resolved:
ata: pata_sl82c105: fix bridge revision use-after-free (CVE-2026-80732)
In the Linux kernel, the following vulnerability has been resolved:
net: remove WARN_ON_ONCE() from sk_mc_loop() (CVE-2026-80733)
In the Linux kernel, the following vulnerability has been resolved:
sctp: reject stale cookies with mismatched verification tags (CVE-2026-80890)
Affected Packages:
kernel
Note:
This advisory is applicable to Amazon Linux 2 - Kernel-5.10 Extra. Visit this page to learn more about Amazon Linux 2 (AL2) Extras and this FAQ section for the difference between AL2 Core and AL2 Extras advisories.
Issue Correction:
Run yum update kernel or yum update --advisory ALAS2KERNEL-5.10-2026-130 to update your system.
System reboot is required in order to complete this update.
aarch64:
kernel-5.10.265-265.1078.amzn2.aarch64
kernel-headers-5.10.265-265.1078.amzn2.aarch64
kernel-debuginfo-common-aarch64-5.10.265-265.1078.amzn2.aarch64
perf-5.10.265-265.1078.amzn2.aarch64
perf-debuginfo-5.10.265-265.1078.amzn2.aarch64
python-perf-5.10.265-265.1078.amzn2.aarch64
python-perf-debuginfo-5.10.265-265.1078.amzn2.aarch64
kernel-tools-5.10.265-265.1078.amzn2.aarch64
kernel-tools-devel-5.10.265-265.1078.amzn2.aarch64
kernel-tools-debuginfo-5.10.265-265.1078.amzn2.aarch64
bpftool-5.10.265-265.1078.amzn2.aarch64
bpftool-debuginfo-5.10.265-265.1078.amzn2.aarch64
kernel-devel-5.10.265-265.1078.amzn2.aarch64
kernel-debuginfo-5.10.265-265.1078.amzn2.aarch64
kernel-livepatch-5.10.265-265.1078-1.0-0.amzn2.aarch64
i686:
kernel-headers-5.10.265-265.1078.amzn2.i686
src:
kernel-5.10.265-265.1078.amzn2.src
x86_64:
kernel-5.10.265-265.1078.amzn2.x86_64
kernel-headers-5.10.265-265.1078.amzn2.x86_64
kernel-debuginfo-common-x86_64-5.10.265-265.1078.amzn2.x86_64
perf-5.10.265-265.1078.amzn2.x86_64
perf-debuginfo-5.10.265-265.1078.amzn2.x86_64
python-perf-5.10.265-265.1078.amzn2.x86_64
python-perf-debuginfo-5.10.265-265.1078.amzn2.x86_64
kernel-tools-5.10.265-265.1078.amzn2.x86_64
kernel-tools-devel-5.10.265-265.1078.amzn2.x86_64
kernel-tools-debuginfo-5.10.265-265.1078.amzn2.x86_64
bpftool-5.10.265-265.1078.amzn2.x86_64
bpftool-debuginfo-5.10.265-265.1078.amzn2.x86_64
kernel-devel-5.10.265-265.1078.amzn2.x86_64
kernel-debuginfo-5.10.265-265.1078.amzn2.x86_64
kernel-livepatch-5.10.265-265.1078-1.0-0.amzn2.x86_64
2026-09-09: CVE-2026-68325 was added to this advisory.
2026-09-09: CVE-2026-74566 was added to this advisory.
2026-09-09: CVE-2026-68154 was added to this advisory.
2026-09-09: CVE-2026-68284 was added to this advisory.
2026-09-09: CVE-2026-74579 was added to this advisory.
2026-09-09: CVE-2026-80733 was added to this advisory.
2026-09-09: CVE-2026-74654 was added to this advisory.
2026-09-09: CVE-2026-74704 was added to this advisory.
2026-09-09: CVE-2026-80716 was added to this advisory.
2026-09-09: CVE-2026-64562 was added to this advisory.
2026-09-09: CVE-2026-68123 was added to this advisory.
2026-09-09: CVE-2026-74490 was added to this advisory.
2026-09-09: CVE-2024-58240 was added to this advisory.
2026-09-09: CVE-2026-68315 was added to this advisory.
2026-09-09: CVE-2026-74598 was added to this advisory.
2026-09-09: CVE-2026-74676 was added to this advisory.
2026-09-09: CVE-2026-74720 was added to this advisory.
2026-09-09: CVE-2026-80681 was added to this advisory.
2026-09-09: CVE-2026-68433 was added to this advisory.
2026-09-09: CVE-2026-68376 was added to this advisory.
2026-09-09: CVE-2026-74669 was added to this advisory.
2026-09-09: CVE-2026-68297 was added to this advisory.
2026-09-09: CVE-2026-72118 was added to this advisory.
2026-09-09: CVE-2026-74471 was added to this advisory.
2026-09-09: CVE-2026-72119 was added to this advisory.
2026-09-09: CVE-2026-68428 was added to this advisory.
2026-09-09: CVE-2026-74658 was added to this advisory.
2026-09-09: CVE-2026-74518 was added to this advisory.
2026-09-09: CVE-2026-74569 was added to this advisory.
2026-09-09: CVE-2026-68320 was added to this advisory.
2026-09-09: CVE-2026-74469 was added to this advisory.
2026-09-09: CVE-2026-74615 was added to this advisory.
2026-09-09: CVE-2026-68157 was added to this advisory.
2026-09-09: CVE-2026-64567 was added to this advisory.
2026-09-09: CVE-2026-74549 was added to this advisory.
2026-09-09: CVE-2026-74485 was added to this advisory.
2026-09-09: CVE-2026-64582 was added to this advisory.
2026-09-09: CVE-2026-74717 was added to this advisory.
2026-09-09: CVE-2026-74557 was added to this advisory.
2026-09-09: CVE-2026-68143 was added to this advisory.
2026-09-09: CVE-2026-68432 was added to this advisory.
2026-09-09: CVE-2026-80731 was added to this advisory.
2026-09-09: CVE-2026-74481 was added to this advisory.
2026-09-09: CVE-2026-74660 was added to this advisory.
2026-09-09: CVE-2026-68142 was added to this advisory.
2026-09-09: CVE-2026-74588 was added to this advisory.
2026-09-09: CVE-2026-68480 was added to this advisory.
2026-09-09: CVE-2026-68156 was added to this advisory.
2026-09-09: CVE-2026-74635 was added to this advisory.
2026-09-09: CVE-2026-72116 was added to this advisory.
2026-09-09: CVE-2026-72123 was added to this advisory.
2026-09-09: CVE-2026-74589 was added to this advisory.
2026-09-09: CVE-2026-68425 was added to this advisory.
2026-09-09: CVE-2026-74464 was added to this advisory.
2026-09-09: CVE-2026-72117 was added to this advisory.
2026-09-09: CVE-2026-80732 was added to this advisory.
2026-09-09: CVE-2026-74726 was added to this advisory.
2026-09-09: CVE-2026-68300 was added to this advisory.
2026-09-09: CVE-2026-68313 was added to this advisory.
2026-09-09: CVE-2026-74563 was added to this advisory.
2026-09-09: CVE-2026-74567 was added to this advisory.
2026-09-09: CVE-2026-68117 was added to this advisory.
2026-09-09: CVE-2026-80714 was added to this advisory.
2026-09-09: CVE-2026-68158 was added to this advisory.
2026-09-09: CVE-2026-74523 was added to this advisory.
2026-09-09: CVE-2026-74609 was added to this advisory.
2026-09-09: CVE-2026-74473 was added to this advisory.
2026-09-09: CVE-2026-74675 was added to this advisory.
2026-09-09: CVE-2026-72115 was added to this advisory.
2026-09-09: CVE-2026-74586 was added to this advisory.
2026-09-09: CVE-2026-74613 was added to this advisory.
2026-09-09: CVE-2026-74625 was added to this advisory.
2026-09-09: CVE-2026-74564 was added to this advisory.
2026-09-09: CVE-2026-68322 was added to this advisory.
2026-09-09: CVE-2026-74581 was added to this advisory.
2026-09-09: CVE-2026-74701 was added to this advisory.
2026-09-09: CVE-2026-68377 was added to this advisory.
2026-09-09: CVE-2026-74492 was added to this advisory.
2026-09-09: CVE-2026-74656 was added to this advisory.
2026-09-09: CVE-2026-53090 was added to this advisory.
2026-09-09: CVE-2026-68121 was added to this advisory.
2026-09-09: CVE-2026-68127 was added to this advisory.
2026-09-09: CVE-2026-72114 was added to this advisory.
2026-09-09: CVE-2026-74705 was added to this advisory.
2026-09-09: CVE-2026-72392 was added to this advisory.
2026-09-09: CVE-2026-64579 was added to this advisory.
2026-09-09: CVE-2026-68388 was added to this advisory.
2026-09-09: CVE-2026-80707 was added to this advisory.
2026-09-09: CVE-2026-64543 was added to this advisory.
2026-09-09: CVE-2026-74671 was added to this advisory.
2026-09-09: CVE-2026-74556 was added to this advisory.
2026-09-09: CVE-2026-74465 was added to this advisory.
2026-09-09: CVE-2026-74667 was added to this advisory.
2026-09-09: CVE-2026-74664 was added to this advisory.
2026-09-09: CVE-2026-74577 was added to this advisory.
2026-09-09: CVE-2026-72113 was added to this advisory.
2026-09-09: CVE-2026-74583 was added to this advisory.
2026-09-09: CVE-2026-74495 was added to this advisory.
2026-09-09: CVE-2026-72066 was added to this advisory.
2026-09-09: CVE-2026-80890 was added to this advisory.
2026-09-09: CVE-2026-74673 was added to this advisory.
2026-09-09: CVE-2026-64563 was added to this advisory.
2026-09-09: CVE-2026-68365 was added to this advisory.
2026-09-09: CVE-2026-74475 was added to this advisory.
2026-09-09: CVE-2026-80717 was added to this advisory.
2026-09-09: CVE-2026-74519 was added to this advisory.
2026-09-09: CVE-2026-74630 was added to this advisory.
2026-09-09: CVE-2026-68153 was added to this advisory.
2026-09-09: CVE-2026-72019 was added to this advisory.
2026-09-09: CVE-2026-74587 was added to this advisory.
2026-09-09: CVE-2026-74512 was added to this advisory.
2026-09-09: CVE-2026-68184 was added to this advisory.
2026-09-09: CVE-2026-74480 was added to this advisory.
2026-09-09: CVE-2026-74482 was added to this advisory.
2026-09-09: CVE-2026-64572 was added to this advisory.
2026-09-09: CVE-2026-74683 was added to this advisory.
2026-09-09: CVE-2026-74688 was added to this advisory.
2026-09-09: CVE-2026-74697 was added to this advisory.
2026-09-09: CVE-2026-74580 was added to this advisory.
2026-09-09: CVE-2026-74547 was added to this advisory.
2026-09-09: CVE-2026-72121 was added to this advisory.
2026-09-09: CVE-2026-74597 was added to this advisory.
2026-09-09: CVE-2026-74730 was added to this advisory.
2026-09-09: CVE-2026-68186 was added to this advisory.