CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Redhat Smuellerdd4Enterprise Linux Hardened ImagesLibkcapi+1 moreSep 1, 2026 Aug 5, 2026 N/A· v4 5.1 MEDIUM· v3 N/A· v2 A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_al...Show more |
2Redhat Smuellerdd4Enterprise Linux Hardened ImagesLibkcapi+1 moreSep 1, 2026 Aug 5, 2026 N/A· v4 7.3 HIGH· v3 N/A· v2 Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers. |
2Redhat Smuellerdd4Enterprise Linux Hardened ImagesLibkcapi+1 moreSep 1, 2026 Aug 5, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or Cipher Block Chaining (CBC), the library improperly reuses the I...Show more |