A vulnerability was found in Linux Kernel up to 6.19-rc4. It has been classified as critical. This issue affects the function osdmap_apply_incremental of the component libceph. The manipulation leads to reachable assertion.
This vulnerability is traded as CVE-2026-22990. Access to the local network is required for this attack to succeed. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.12.65/6.18.5/6.19-rc4. Affected by this issue is the function nfsd4_revoke_states of the component nfsd. Such manipulation leads to state issue.
This vulnerability is documented as CVE-2026-22989. The attack requires being on the local network. There is not any exploit available.
You should upgrade the affected component.
A vulnerability described as problematic has been identified in libarchive. Affected by this issue is the function archive_read_data of the component RAR5 Decompression Handler. Such manipulation leads to infinite loop.
This vulnerability is listed as CVE-2026-4111. The attack may be performed from remote. There is no available exploit.
A vulnerability categorized as critical has been discovered in openCryptoki 2.3.2 on Linux/AIX. Affected by this issue is some unknown functionality. Such manipulation leads to link following.
This vulnerability is documented as CVE-2026-23893. The attack needs to be performed locally. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability classified as critical has been found in Vim up to 9.1.2131. This affects the function get_tagfname of the file src/tag.c. The manipulation of the argument helpfile leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2026-25749. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.