CVE-2021-47620
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: refactor malicious adv data check Check for out-of-bound re
CVSS
8.1
High
EPSS
0.3%
p25
KEV
—
Exploit Today
8
0-100
Published: Jun 20, 2024 · Last modified: Aug 4, 2026 · CWE-125
0.3%EPSS · 30 days0.3%
2026-08-172026-09-14
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: refactor malicious adv data check Check for out-of-bound read was being performed at the end of while num_reports loop, and would fill journal with false positives. Added check to beginning of loop processing so that it doesn't get checked after ptr has been advanced.
- git.kernel.orghttps://git.kernel.org/stable/c/305e92f525450f3e1b5f5c9dc7eadb152d66a082
- git.kernel.orghttps://git.kernel.org/stable/c/5a539c08d743d9910631448da78af5e961664c0e
- git.kernel.orghttps://git.kernel.org/stable/c/5c968affa804ba98c3c603f37ffea6fba618025e
- git.kernel.orghttps://git.kernel.org/stable/c/7889b38a7f21ed19314f83194622b195d328465c
- git.kernel.orghttps://git.kernel.org/stable/c/835d3706852537bf92eb23eb8635b8dee0c0aa67
- git.kernel.orghttps://git.kernel.org/stable/c/83d5196b65d1b29e27d7dd16a3b9b439fb1d2dba
- git.kernel.orghttps://git.kernel.org/stable/c/8819f93cd4a443dfe547aa622b21f723757df3fb
- git.kernel.orghttps://git.kernel.org/stable/c/899663be5e75dc0174dc8bda0b5e6826edf0b29a
- git.kernel.orghttps://git.kernel.org/stable/c/bcea886771c3f22a590c8c8b9139a107bd7f1e1c
- git.kernel.orghttps://git.kernel.org/stable/c/305e92f525450f3e1b5f5c9dc7eadb152d66a082
- git.kernel.orghttps://git.kernel.org/stable/c/5a539c08d743d9910631448da78af5e961664c0e
- git.kernel.orghttps://git.kernel.org/stable/c/5c968affa804ba98c3c603f37ffea6fba618025e
- git.kernel.orghttps://git.kernel.org/stable/c/7889b38a7f21ed19314f83194622b195d328465c
- git.kernel.orghttps://git.kernel.org/stable/c/835d3706852537bf92eb23eb8635b8dee0c0aa67
- git.kernel.orghttps://git.kernel.org/stable/c/83d5196b65d1b29e27d7dd16a3b9b439fb1d2dba
- git.kernel.orghttps://git.kernel.org/stable/c/8819f93cd4a443dfe547aa622b21f723757df3fb
- git.kernel.orghttps://git.kernel.org/stable/c/899663be5e75dc0174dc8bda0b5e6826edf0b29a
- git.kernel.orghttps://git.kernel.org/stable/c/bcea886771c3f22a590c8c8b9139a107bd7f1e1c
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-917866.1 MED—
——0A flaw was found in GNOME Shell. When processing icons from a remote search provider via D-Bus, the system fails to validate the icon's declared dimensions against the actual data buffer size. A malicious or compromised remote search provider could exploit this by providing oversized icon dimensions, leading to an out-of-bounds read. This can cause the GNOME Shell process to crash, disrupting the user's session, and potentially disclose sensitive information from adjacent memory.2hCVE-2026-908262.8 LOW—
——0A vulnerability was determined in GPAC 26.07.0. Affected by this issue is the function gf_node_del of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation causes out-of-bounds read. The attack is restricted to local execution. The exploit has been publicly disclosed and may be utilized. Upgrading to version abi-16.23 can resolve this issue. Patch name: afca1f1181668d85941d51ed1adf647807d5d975. It is advisable to upgrade the affected component.15hCVE-2026-653647.5 HIG—
——0An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A remote attacker may be able to cause unexpected system termination.14hCVE-2026-190863.3 LOW—
——0IBM i 7.6, 7.5, 7.4, and 7.3 could allow a denial of service as a result of a buffer overflow in a PASE process. An authenticated attacker could leverage this to terminate their own process.16hCVE-2026-908156.3 MED—
——0A vulnerability has been found in FFmpeg up to 4.4.6/5.1.8/6.1.4/7.1.3/8.0.1. Affected by this issue is the function setup_3x3 of the file libavfilter/vf_convolution.c of the component Convolution Filter. Such manipulation leads to out-of-bounds read. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 4.4.7, 5.1.9, 6.1.5, 7.1.4, 8.0.2, 8.1.1 and 9.0 can resolve this issue. The name of the patch is 8970658472/e24b9820b4. It is suggested to upgrade the affected component.17hCVE-2026-552099.8 CRI—
——0resdata is software for reading and writing result files from the Eclipse reservoir simulator. Prior to 6.2.9, resdata insufficiently validates numeric fields, grid dimensions, keyword sizes, and array indexes while parsing untrusted GRDECL files in lib/resdata/rd_kw_grdecl.cpp and lib/resdata/rd_grid.cpp. Malformed COORD, ZCORN, CORSNUM, ACTNUM, or MAPAXES data can reach rd_grid_alloc_GRDECL_kw__ with inconsistent lengths, while unbounded floating-point conversion can exceed the intended parser buffer. In a network service that accepts untrusted GRDECL files, these conditions can cause a classic buffer overflow, out-of-bounds reads, invalid array access, NULL pointer dereference, memory corruption, or service termination. This issue is fixed in version 6.2.9.16h