NVD disclosure day

Published threat advisories for July 19, 2026

CVE advisoryCRITICAL

CVE-2026-64162

Linux Kernel idpf PTP Spinlock Initialization Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A Linux kernel vulnerability allows a timing function to access an uninitialized lock, potentially causing system instability. This impacts Linux systems using the idpf driver for clock synchronization. Confirm relevance within your infrastructure.

CVE advisoryCRITICAL

CVE-2026-64160

Linux Kernel Netfs Tearing Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability has been identified in the Linux kernel's network filesystem library, related to how file size information is updated. This could lead to data corruption or system instability if specific, synchronized operations are not properly handled. While critical, the direct exposure of this low-level component t

CVE advisoryCRITICAL

CVE-2026-64150

Linux Kernel Netfilter Local Lock Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability exists in the Linux kernel's netfilter subsystem concerning internal lock management during error paths. This issue could potentially impact system stability and data integrity if triggered by specific error conditions related to the nft_inner component, although its reachability is considered unlikely

CVE advisoryCRITICAL

CVE-2026-64142

Linux Kernel ksmbd Race Condition Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A vulnerability in the Linux kernel's SMB server component could allow an attacker to corrupt data or gain unauthorized access through race conditions in file handle management. This issue may affect systems using the SMB server for file sharing, potentially impacting data integrity and availability if the server is ac

CVE advisoryCRITICAL

CVE-2026-64136

Linux Kernel SMB Client Race Condition in Session Tracking

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's SMB client may allow for incorrect tracking of network sessions. If reachable, this could potentially lead to system instability or denial-of-service. The relevance to our environment depends on the usage of the SMB client.

CVE advisoryCRITICAL

CVE-2026-64132

Linux Kernel IPv6 IOAM Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's IPv6 IOAM implementation could allow an attacker to cause memory corruption or system instability by sending specially crafted network packets. This issue arises from an unrefreshed pointer after a buffer reallocation during packet processing. While the vulnerability is in deep inf

CVE advisoryCRITICAL

CVE-2026-64122

Linux Kernel mlx5e Use-After-Free in Reporter Timeout Recovery.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A use-after-free vulnerability exists in the Linux kernel's mlx5e driver during network transmission error recovery. This could lead to system instability or unexpected behavior if reachable. Confirmation of the driver's use in your environment is needed to assess relevance.

CVE advisoryCRITICAL

CVE-2026-64113

Linux Kernel ixgbevf Use-After-Free in Multicast Pruning

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability exists in a Linux kernel network driver that could allow an attacker to reuse freed memory, potentially leading to system instability or code execution. This memory management error occurs during packet processing and could impact network operations. Determining if this driver is used and exposed is ess

CVE advisoryCRITICAL

CVE-2026-64102

Linux Kernel RDMA siw FPDU Length Underflow Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability exists in the Linux kernel's RDMA implementation where a malicious peer could send crafted packets to exploit a data handling flaw. This could lead to an uncontrolled read of kernel memory, potentially impacting system stability and exposing sensitive information.

CVE advisoryCRITICAL

CVE-2026-64091

Linux Kernel batman-adv TOCTOU Race Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's batman-adv module could allow for data corruption or system instability due to a race condition in handling VLAN information. This issue might be triggered by crafted network traffic, potentially impacting network routing integrity within mesh networks. Uncertainty exists regarding

CVE advisoryCRITICAL

CVE-2026-64089

Linux Kernel batman-adv Type Confusion Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A type confusion vulnerability in the Linux kernel's batman-adv module could allow an attacker to manipulate network data, potentially leading to uninitialized memory being exposed. This could impact the integrity of network communications within mesh networks. The relevance and exposure within specific environments ne

CVE advisoryCRITICAL

CVE-2026-64069

Linux Kernel Netfs Read Subrequest Cancellation Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's network filesystem could allow for the improper handling of read subrequests, potentially impacting system integrity. This issue arises when read subrequest preparation fails, leading to a situation where the subrequest cannot be correctly canceled or managed. While the exact impac

CVE advisoryCRITICAL

CVE-2026-64068

Linux Kernel Netfs Locking Vulnerability in Request Handling.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's network filesystem component could allow for unauthorized access to sensitive information or disruption of system operations if specific file operations are retried. This critical flaw, related to missing locks during retry operations, could impact system stability and data integri

CVE advisoryCRITICAL

CVE-2026-64066

Linux Kernel netfs Subrequest Failure Handling Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's network filesystem could allow for critical impact if exploited. The issue stems from how the system handles subrequest failures during data reads, potentially leading to resource exhaustion. While the vulnerability has been addressed, its relevance to specific environments needs t

CVE advisoryCRITICAL

CVE-2026-64061

Linux Kernel netfs Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A use-after-free vulnerability in the Linux kernel's netfs component, related to memory management during data reception, has been resolved. If reachable, this issue could potentially impact system memory integrity. The relevance and exposure of affected systems should be confirmed.

CVE advisoryCRITICAL

CVE-2026-64055

Linux Kernel Cortina Ethernet Driver Packet Reassembly Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's Ethernet driver could allow for manipulation of packet fragments due to an incorrect counter reset. This issue has been resolved. Confirmation of affected systems and specific exposure within your environment is needed.

CVE advisoryCRITICAL

CVE-2026-64047

Linux Kernel TLS Offload Off-by-One Error

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in the Linux kernel's network TLS offload feature could allow an attacker to cause memory corruption by sending specially crafted network traffic, affecting data integrity and availability. Its exploitability depends on specific internal kernel configurations and is considered unlikely to be reachable i

CVE advisoryCRITICAL

CVE-2026-64046

Linux Kernel TLS Chain-After-Chain Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's network TLS component may allow specially crafted input to trigger an illegal condition for cryptographic operations. This could lead to unauthorized data access, modification, or denial of service. Understanding and addressing this kernel-level issue is important for maintaining s

CVE advisoryCRITICAL

CVE-2026-64037

Linux Kernel iwlwifi MLD TSO Segmentation Exploit

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A flaw in the Linux kernel's wireless driver can lead to excessive data segmentation, potentially causing memory corruption and network transmission issues. This vulnerability requires specific conditions related to Wi-Fi frame processing and is unlikely to have a direct business impact. Confirming its relevance within

CVE advisoryCRITICAL

CVE-2026-64035

Linux Kernel IGC Driver Buffer Type Handling Flaw

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's igc network driver could allow crafted network traffic to cause incorrect handling of transmission buffer types. This might lead to the system using an improper cleanup path for network frame completions, potentially disrupting operations.

CVE advisoryCRITICAL

CVE-2026-64033

Linux Kernel RDMA Use-After-Free in Path File Creation Cleanup

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A use-after-free vulnerability exists in the Linux kernel's RDMA subsystem related to path file creation cleanup. If an error occurs during this process, it could allow for a use-after-free, potentially impacting system stability and security. The relevance depends on the specific configuration and use of RDMA within y

CVE advisoryCRITICAL

CVE-2026-64025

Linux Kernel bpf skmsg Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A use-after-free vulnerability exists in the Linux kernel due to a race condition between BPF sockmaps and TLS RX processing. This could allow an attacker to trigger memory corruption when network data arrives under specific configurations, potentially leading to system instability or crashes.

CVE advisoryCRITICAL

CVE-2026-64016

Linux Kernel ksmbd File Lifetime Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A vulnerability in the Linux kernel's SMB server could allow an attacker to affect file integrity and availability during specific error conditions after a successful durable reconnect. This issue impacts how file objects are managed, potentially leading to unintended consequences for data if the relevant error path is

CVE advisoryCRITICAL

CVE-2026-64007

Linux Kernel Netfilter Synproxy Checksum Corruption Vulnerability.

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A vulnerability in the Linux kernel's netfilter synproxy could allow an attacker to send crafted packets, causing incorrect TCP checksum calculations and potential packet corruption or memory corruption. This issue requires the synproxy feature to be explicitly enabled and exposed to network traffic for exploitation.

CVE advisoryCRITICAL

CVE-2026-64000

Linux Kernel HSR Out-of-Bounds Access Vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability exists in the Linux kernel's HSR protocol that could lead to an out-of-bounds memory access when handling malformed network frames. If the affected protocol is used and reachable, this could potentially impact system stability. The specific impact is uncertain without knowing the extent of HSR protocol

CVE advisoryCRITICAL

CVE-2026-63993

Linux Kernel VXLAN Use-After-Free Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A use-after-free vulnerability exists in the Linux kernel's VXLAN networking component. If reachable, an attacker could exploit this to gain unauthorized access, manipulate data, or cause system instability. Its relevance depends on whether VXLAN is actively used and exposed in your environment.

CVE advisoryCRITICAL

CVE-2026-63992

Linux Kernel Out-of-Bounds Access in ICMP Tunneling Logic

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel could permit out-of-bounds memory access if network packet headers are not correctly handled during ICMP processing in tunnels, potentially leading to unauthorized data disclosure or system compromise. This issue has been resolved in the kernel, but confirmation of relevance and expo

CVE advisoryCRITICAL

CVE-2026-63984

Linux Kernel IPv6 RPL Header Overflow Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in the Linux kernel's IPv6 RPL implementation allows an attacker to corrupt routing header data by triggering an integer overflow during header decompression. This could affect network traffic integrity, but is unlikely to be exposed to the public internet due to the protocol's specialized use.

CVE advisoryCRITICAL

CVE-2026-63979

Linux Kernel Handshake File Reference Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability exists in the Linux kernel's network handshake processing, where a race condition can occur when a handshake is canceled during the accept process. If exploited, this could lead to the system attempting to access freed memory or a NULL pointer, potentially impacting service availability.

CVE advisoryCRITICAL

CVE-2026-63978

Linux Kernel Network Handshake Request Drain Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A Linux kernel vulnerability exists in network handshake request handling during network namespace exit. If reachable, this could lead to pending requests not being properly cleared, potentially causing resource leaks or instability. It is uncertain if this directly impacts your environment.

CVE advisoryCRITICAL

CVE-2026-63922

Linux Kernel IPv6 Extension Header Parsing Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A Linux kernel vulnerability allows attackers to manipulate network packet processing by exploiting how IPv6 extension headers are handled. This could lead to parsing errors or unexpected behavior when processing IPv6 traffic, potentially causing disruption. Action is needed to identify and remediate affected systems.

CVE advisoryCRITICAL

CVE-2026-63888

Linux Kernel iSCSI CRC Overread and Double-Free Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A critical vulnerability in the Linux kernel's iSCSI target could allow an attacker to read or write data beyond buffer limits and potentially cause denial of service. This issue impacts systems using the iSCSI target technology, affecting storage data integrity and availability.

CVE advisoryCRITICAL

CVE-2026-63887

Linux Kernel iSCSI Target Buffer Overrun Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in the Linux kernel's iSCSI target could allow a network-reachable attacker to cause a heap buffer overflow by sending crafted login requests. This overflow may lead to memory corruption or potential system compromise. Confirming the use and exposure of this iSCSI technology is important.

CVE advisoryCRITICAL

CVE-2026-63886

Linux Kernel iSCSI CHAP Buffer Overflow Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in the Linux kernel's iSCSI target subsystem allows for memory overwrites when processing certain authentication data. This could lead to data corruption or denial of service for services using this authentication mechanism. The issue has been resolved by adding proper length validation for encoded inpu

CVE advisoryCRITICAL

CVE-2026-63857

Linux Kernel airoha driver uninitialized read vulnerability.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in a Linux kernel network driver could allow for an unsafe read of uninitialized memory during packet transmission, potentially causing a page fault. This issue has been resolved with a correction to the driver's transmit function. The primary concern is to determine if this specific driver is active wi

CVE advisoryCRITICAL

CVE-2026-63830

Linux Kernel skmsg Scatterlist Corruption Vulnerability.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A Linux kernel vulnerability allows unauthorized modification of sensitive network data by bypassing internal protections. If reachable, an attacker could expose and alter kernel memory. Confirm relevance and potential exposure within your environment to address system memory integrity risks.

CVE advisoryCRITICAL

CVE-2026-63825

Linux Kernel GCOV Concurrent Access Crash in IPComp Processing

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's GCOV instrumentation could cause crashes during concurrent IPComp processing. The issue stems from race conditions with GCOV's global counters leading to out-of-bounds memory writes. It is considered unlikely to affect production environments as GCOV is typically a developer-focuse

CVE advisoryCRITICAL

CVE-2026-63808

Linux Kernel exFAT Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A use-after-free vulnerability exists in the Linux kernel's exFAT filesystem driver. If an attacker can present a specially crafted exFAT filesystem image, a flaw in processing directory entries could lead to memory corruption, potentially causing system instability or data loss. This issue requires a malicious filesys

CVE advisoryCRITICAL

CVE-2026-63800

Linux Kernel pNFS Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A use-after-free vulnerability exists in the Linux kernel's pNFS component, potentially allowing attackers to gain unauthorized control or execute malicious code if reachable. This issue affects memory management during specific layout operations within the kernel. The exact impact on your environment is uncertain and

CVE advisoryCRITICAL

CVE-2026-63795

Linux Kernel 9p Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's 9p filesystem could lead to instability if specific file operations fail. This could cause a use-after-free error, potentially resulting in system crashes. The issue is within a local filesystem protocol, so direct external exploitation is unlikely.

CVE advisoryCRITICAL

CVE-2026-53398

Linux Kernel NFSD SECINFO_NO_NAME Decode Error

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A vulnerability in the Linux kernel's NFS server (NFSD) could allow an unauthenticated attacker to cause a denial of service by sending specially crafted network requests. This occurs due to an error in decoding security information when data is truncated, potentially leading to the use of uninitialized data and impact

CVE advisoryCRITICAL

CVE-2026-53384

Linux Kernel 8250_dw Use-After-Free Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Linux kernel's serial port driver could leave a port registered after an initialization error, creating a use-after-free hazard. If reachable, this could impact system stability or lead to code execution. Uncertainty exists regarding specific exploitation scenarios and affected systems.