EulerOS 2.0 SP15 : kernel (EulerOS-SA-2026-3916)

high Nessus Plugin ID 364092

Synopsis

The remote EulerOS host is missing multiple security updates.

Description

According to the versions of the kernel packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :

netdevsim: zero initialize struct iphdr in dummy sk_buff(CVE-2026-52985)

drm/amd/display: Wrap DCN32 phantom-plane allocation in DC_RUN_WITH_PREEMPTION_ENABLED(CVE-2026-53285)

ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options(CVE-2026-53249)

RDMA: During rereg_mr ensure that REREG_ACCESS is compatible(CVE-2026-52908)

sctp: disable BH before calling udp_tunnel_xmit_skb()(CVE-2026-53070)

thermal: core: Fix thermal zone device registration error path(CVE-2026-43332)

vrf: Fix a potential NPD when removing a port from a VRF(CVE-2026-52925)

netfilter: nfnetlink_osf: fix out-of-bounds read on option matching(CVE-2026-52999)

USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr()(CVE-2026-53195)

netfilter: nft_fib: fix stale stack leak via the OIFNAME register(CVE-2026-53134)

crypto: ccp - copy IV using skcipher ivsize(CVE-2026-53016)

KVM: x86: Fix shadow paging use-after-free due to unexpected GFN(CVE-2026-46113)

signal: clear JOBCTL_PENDING_MASK for caller in zap_other_threads()(CVE-2026-53352)

netfilter: nf_conntrack_sip: don't use simple_strtoul(CVE-2026-52986)

inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush(CVE-2026-53175)

ipc/shm: serialize orphan cleanup with shm_nattch updates(CVE-2026-52930)

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege level, potentially resulting in privilege escalation.(CVE-2025-54518)

netfilter: x_tables: avoid leaking percpu counter pointers(CVE-2026-53219)

fs/fcntl: fix SOFTIRQ-unsafe lock order in fasync signaling(CVE-2026-52946)

net/sched: act_api: use RCU with deferred freeing for action lifecycle(CVE-2026-53264)

udp: clear skb-dev before running a sockmap verdict(CVE-2026-53184)

block: add pgmap check to biovec_phys_mergeable(CVE-2026-46115)

bpf, sockmap: Fix af_unix null-ptr-deref in proto update(CVE-2026-53034)

nfs: return EISDIR on nfs3_proc_create if d_alias is a dir(CVE-2026-43470)

netfilter: nf_tables: use list_del_rcu for netlink hooks(CVE-2026-46324)

mm/huge_memory: update file PMD counter before folio_put()(CVE-2026-53189)

bpf, arm64: Fix off-by-one in check_imm signed range check(CVE-2026-53036)

fsnotify: fix inode reference leak in fsnotify_recalc_mask()(CVE-2026-52990)

drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths(CVE-2026-53313)

macvlan: fix macvlan_get_size() not reserving space for IFLA_MACVLAN_BC_CUTOFF(CVE-2026-53013)

mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison(CVE-2026-53207)

i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl(CVE-2026-52948)

USB: serial: omninet: fix memory corruption with small endpoint(CVE-2026-63928)

netfilter: ip6t_hbh: reject oversized option lists(CVE-2026-52915)

ice: fix NULL pointer dereference in ice_reset_all_vfs()(CVE-2026-53289)

sctp: purge outqueue on stale COOKIE-ECHO handling(CVE-2026-52924)

dm cache: fix dirty mapping checking in passthrough mode switching(CVE-2026-53061)

md: wake raid456 reshape waiters before suspend(CVE-2026-53123)

apparmor: fix rlimit for posix cpu timers(CVE-2026-46328)

KVM: x86: check for nEPT/nNPT in slow flush hypercalls(CVE-2026-46131)

dm cache policy smq: check allocation under invalidate lock(CVE-2026-53265)

crypto: af_alg - Cap AEAD AD length to 0x80000000(CVE-2026-52972)

thunderbolt: Bound root directory content to block size(CVE-2026-53149)

dm cache: fix null-deref with concurrent writes in passthrough mode(CVE-2026-53064)

sctp: validate embedded INIT chunk and address list lengths in cookie(CVE-2026-53224)

mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock(CVE-2026-46121)

smb/client: fix possible infinite loop and oob read in symlink_data()(CVE-2026-52967)

ALSA: hda/conexant: Fix missing error check for jack detection(CVE-2026-53291)

nexthop: fix IPv6 route referencing IPv4 nexthop(CVE-2026-53012)

mailbox: add sanity check for channel array(CVE-2026-53295)

USB: serial: cypress_m8: fix memory corruption with small endpoint(CVE-2026-63956)

bpf: Free reuseport cBPF prog after RCU grace period.(CVE-2026-52910)

ipv6: sit: reload inner IPv6 header after GSO offloads(CVE-2026-53228)

crypto: hisilicon/sec2 - prevent req used-after-free for sec(CVE-2026-53055)

drm/virtio: fix dma_fence refcount leak on error in virtio_gpu_dma_fence_wait()(CVE-2026-53190)

iommu/vt-d: Fix oops due to out of scope access(CVE-2026-52953)

netfilter: bridge: make ebt_snat ARP rewrite writable(CVE-2026-53266)

bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops(CVE-2026-53078)

thunderbolt: Validate XDomain request packet size before type cast(CVE-2026-53147)

sched/psi: fix race between file release and pressure write(CVE-2026-52991)

fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios(CVE-2026-53167)

hv_netvsc: use kmap_local_page in netvsc_copy_to_send_buf(CVE-2026-53199)

drm/amd/display: Fix out-of-bounds read in dp_get_eq_aux_rd_interval()(CVE-2026-53330)

ipc: limit next_id allocation to the valid ID range(CVE-2026-52923)

dm cache: fix write hang in passthrough mode(CVE-2026-53063)

sctp: diag: reject stale associations in dump_one path(CVE-2026-52917)

bpf: Fix OOB in pcpu_init_value(CVE-2026-53076)

net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr(CVE-2026-53245)

sctp: stream: fully roll back denied add-stream state(CVE-2026-52929)

selinux: allow multiple opens of /sys/fs/selinux/policy(CVE-2026-46302)

vsock/virtio: fix potential unbounded skb queue(CVE-2026-53132)

scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf(CVE-2026-63887)

ipv6: fix possible UAF in icmpv6_rcv()(CVE-2026-53006)

bpf: Fix NULL deref in map_kptr_match_type for scalar regs(CVE-2026-53032)

apparmor: Fix Optimize table creation from possibly unaligned memory(CVE-2026-45893)

l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl()(CVE-2026-53262)

mm/hugetlb: restore reservation on error in hugetlb folio copy paths(CVE-2026-53154)

thunderbolt: Reject zero-length property entries in validator(CVE-2026-53150)

crypto: caam - guard HMAC key hex dumps in hash_digest_key(CVE-2026-46291)

netfilter: revalidate bridge ports(CVE-2026-53220)

padata: Put CPU offline callback in ONLINE section to allow failure(CVE-2026-53314)

USB: serial: keyspan: fix missing indat transfer sanity check(CVE-2026-63900)

bpf, sockmap: Fix af_unix iter deadlock(CVE-2026-53035)

drm/amd/display: Clamp VBIOS HDMI retimer register count to array size(CVE-2026-53136)

scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd()(CVE-2026-63888)

bpf, sockmap: Take state lock for af_unix iter(CVE-2026-53033)

bpf: Use RCU-safe iteration in dev_map_redirect_multi() SKB path(CVE-2026-53096)

bonding: fix type confusion in bond_setup_by_slave()(CVE-2026-43456)

USB: serial: belkin_sa: validate interrupt status length(CVE-2026-63903)

netfilter: nfnetlink_osf: fix potential NULL dereference in ttl check(CVE-2026-52998)

scsi: target: iscsi: Validate CHAP_R length before base64 decode(CVE-2026-63886)

net: phy: clean the sfp upstream if phy probing fails(CVE-2026-53232)

netfilter: nf_queue: hold bridge skb-dev while queued(CVE-2026-52912)

netfilter: nf_conntrack: destroy stale expectfn expectations on unregister(CVE-2026-53349)

netfilter: nft_exthdr: fix register tracking for F_PRESENT flag(CVE-2026-53218)

selinux: fix overlayfs mmap() and mprotect() access checks(CVE-2026-46054)

futex: Prevent lockup in requeue-PI during signal/ timeout wakeup(CVE-2026-52977)

Arm C1-Ultra, C1-Premium, Neoverse V3 V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 X1C, Cortex-A710, Cortex-A78, A78AE A78C, Cortex-A77, Cortex-A76 A76A may allow writes to resources owned by a higher exception level.(CVE-2025-10263)

netfilter: nft_tunnel: fix use-after-free on object destroy(CVE-2026-53212)

io-wq: check that the predecessor is hashed in io_wq_remove_pending()(CVE-2026-46274)

thunderbolt: Limit XDomain response copy to actual frame size(CVE-2026-53146)

ipv6: Fix out-of-bound access in fib6_add_rt2node().(CVE-2026-46260)

sctp: fix uninit-value in __sctp_rcv_asconf_lookup()(CVE-2026-53225)

fuse: reject fuse_notify() pagecache ops on directories(CVE-2026-53168)

USB: serial: cypress_m8: validate interrupt packet headers(CVE-2026-63902)

ACPI: processor: Fix previous acpi_processor_errata_piix4() fix(CVE-2026-23443)

netfilter: nft_inner: Fix IPv6 inner_thoff desync(CVE-2026-46244)

af_unix: Drop all SCM attributes for SOCKMAP.(CVE-2026-53005)

tun: free page on build_skb failure in tun_xdp_one()(CVE-2026-46322)

netfilter: synproxy: add mutex to guard hook reference counting(CVE-2026-53269)

udf: reject descriptors with oversized CRC length(CVE-2026-53369)

ext4: fix bounds check in check_xattrs() to prevent out-of-bounds access(CVE-2026-46094)

crypto: jitterentropy - replace long-held spinlock with mutex(CVE-2026-52936)

ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup()(CVE-2026-53221)

zram: fix use-after-free in zram_bvec_write_partial()(CVE-2026-53185)

af_unix: Reject SIOCATMARK on non-stream sockets(CVE-2026-52928)

efi: Fix reservation of unaccepted memory table(CVE-2026-45851)

netfilter: nft_ct: fix missing expect put in obj eval(CVE-2026-52970)

net/sched: netem: fix queue limit check to include reordered packets(CVE-2026-52984)

ACPICA: Fix NULL pointer dereference in acpi_ev_address_space_dispatch()(CVE-2026-45982)

qed: fix double free in qed_cxt_tables_alloc()(CVE-2026-64118)

regulator: core: fix locking in regulator_resolve_supply() error path(CVE-2026-46252)

mm/vmalloc: take vmap_purge_lock in shrinker(CVE-2026-46093)

netfilter: require Ethernet MAC header before using eth_hdr()(CVE-2026-53131)

sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing(CVE-2026-53246)

net: guard timestamp cmsgs to real error queue skbs(CVE-2026-53223)

quota: Fix race of dquot_scan_active() with quota deactivation(CVE-2026-53050)

RDMA/umem: Fix truncation for block sizes = 4G(CVE-2026-53133)

vdpa: use generic driver_override infrastructure(CVE-2026-53118)

drm/amd/display: Use krealloc_array() in dal_vector_reserve()(CVE-2026-53329)

io_uring/poll: fix signed comparison in io_poll_get_ownership()(CVE-2026-52933)

net: gro: don't merge zcopy skbs(CVE-2026-46323)

netfilter: ebtables: fix OOB read in compat_mtw_from_user(CVE-2026-52927)

netfilter: conntrack: remove sprintf usage(CVE-2026-53002)

tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR(CVE-2026-52937)

dm log: fix out-of-bounds write due to region_count overflow(CVE-2026-53059)

inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP(CVE-2026-46266)

netfilter: xt_policy: fix strict mode inbound policy matching(CVE-2026-52920)

iommu/amd: Fix clone_alias() to use the original device's devid(CVE-2026-53053)

bpf: Fix stale offload-prog pointer after constant blinding(CVE-2026-53094)

netlabel: validate unlabeled address and mask attribute lengths(CVE-2026-53238)

media: videobuf2: Set vma_flags in vb2_dma_sg_mmap(CVE-2026-46312)

pmdomain: core: Fix detach procedure for virtual devices in genpd(CVE-2026-46292)

erofs: fix use-after-free on sbi-sync_decompress(CVE-2026-53272)

audit: fix incorrect inheritable capability in CAPSET records(CVE-2026-53287)

nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers(CVE-2026-52989)

ipvs: clear the svc scheduler ptr early on edit(CVE-2026-53270)

net: pull headers in qdisc_pkt_len_segs_init()(CVE-2026-53091)

sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks(CVE-2026-53004)

bpf: test_run: Fix the null pointer dereference issue in bpf_lwt_xmit_push_encap(CVE-2026-53111)

ixgbevf: fix use-after-free in VEPA multicast source pruning(CVE-2026-64113)

netfilter: xtables: restrict several matches to inet family(CVE-2026-53001)

usb: typec: altmodes/displayport: validate count before reading Status Update VDO(CVE-2026-63961)

ppp: require CAP_NET_ADMIN in target netns for unattached ioctls(CVE-2026-53075)

net: tls: fix strparser anchor skb leak on offload RX setup failure(CVE-2026-52974)

thunderbolt: Clamp XDomain response data copy to allocation size(CVE-2026-53148)

locking/rtmutex: Skip remove_waiter() when waiter is not enqueued(CVE-2026-53163)

bpf: Fix ld_{abs,ind} failure path analysis in subprogs(CVE-2026-53090)

ice: fix double-free of tx_buf skb(CVE-2026-53009)

net: openvswitch: fix possible kfree_skb of ERR_PTR(CVE-2026-53227)

xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx()(CVE-2026-53239)

USB: serial: mct_u232: fix missing interrupt-in transfer sanity check(CVE-2026-63897)

ip6_vti: set netns_immutable on the fallback device.(CVE-2026-52909)

HID: usbhid: fix deadlock in hid_post_reset()(CVE-2026-53037)

smb: client: fix potential UAF and double free in smb2_open_file()(CVE-2026-45972)

bnxt_en: Fix NULL pointer dereference(CVE-2026-53177)

netfilter: nf_log: validate MAC header was set before dumping it(CVE-2026-52942)

dm cache policy smq: fix missing locks in invalidating cache blocks(CVE-2026-53062)

USB: serial: io_ti: fix heap overflow in get_manuf_info()(CVE-2026-53196)

netfilter: ipset: stop hash:* range iteration at end(CVE-2026-52921)

bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb(CVE-2026-53074)

netfilter: conntrack_irc: fix possible out-of-bounds read(CVE-2026-53268)

drm/amd/display: Bound VBIOS record-chain walk loops(CVE-2026-53138)

scsi: target: core: Fix integer overflow in UNMAP bounds check(CVE-2026-53021)

erofs: unify lcn as u64 for 32-bit platforms(CVE-2026-53015)

dm cache metadata: fix memory leak on metadata abort retry(CVE-2026-53060)

nfsd: fix posix_acl leak on SETACL decode failure(CVE-2026-53397)

USB: serial: kl5kusb105: fix bulk-out buffer overflow(CVE-2026-53194)

net, bpf: fix null-ptr-deref in xdp_master_redirect() for down master(CVE-2026-53069)

bonding: 3ad: implement proper RCU rules for port-aggregator(CVE-2026-52975)

scsi: sg: Resolve soft lockup issue when opening /dev/sgX(CVE-2026-53304)

fs/mbcache: cancel shrink work before destroying the cache(CVE-2026-53129)

lib/scatterlist: fix length calculations in extract_kvec_to_sg(CVE-2026-46289)

fuse: re-lock request before replacing page cache folio(CVE-2026-53388)

neigh: let neigh_xmit take skb ownership(CVE-2026-52981)

netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase(CVE-2026-52988)

tcp: restrict SO_ATTACH_FILTER to priv users(CVE-2026-53236)

netfilter: nft_ct: bail out on template ct in get eval(CVE-2026-53267)

ipv6: mcast: Fix use-after-free when processing MLD queries(CVE-2026-53275)

net: skbuff: fix missing zerocopy reference in pskb_carve helpers(CVE-2026-52943)

net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list(CVE-2026-53230)

net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure(CVE-2026-53229)

netfilter: nat: use kfree_rcu to release ops(CVE-2026-53000)

tcp: secure_seq: add back ports to TS offset(CVE-2026-23247)

Tenable has extracted the preceding description block directly from the EulerOS kernel security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected kernel packages.

See Also

http://www.nessus.org/u?99aefddd

Plugin Details

Severity: High

ID: 364092

File Name: EulerOS_SA-2026-3916.nasl

Version: 1.1

Type: Local

Published: 10/8/2026

Updated: 10/8/2026

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.3

Percentile: 99.82

CVSS v2

Risk Factor: High

Base Score: 7.2

Temporal Score: 6

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-53196

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 7.2

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C

CVSS Score Source: CVE-2026-53272

CVSS v4

Risk Factor: High

Base Score: 7.3

Threat Score: 7.3

Threat Vector: CVSS:4.0/E:A

Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CVSS Score Source: CVE-2025-54518

Vulnerability Information

CPE: cpe:/o:huawei:euleros:2.0, p-cpe:/a:huawei:euleros:bpftool, p-cpe:/a:huawei:euleros:kernel-abi-stablelists, p-cpe:/a:huawei:euleros:kernel-tools-libs-devel, p-cpe:/a:huawei:euleros:kernel-tools-libs, p-cpe:/a:huawei:euleros:kernel-tools, p-cpe:/a:huawei:euleros:kernel, p-cpe:/a:huawei:euleros:perf, p-cpe:/a:huawei:euleros:python3-perf

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/EulerOS/release, Host/EulerOS/rpm-list, Host/EulerOS/sp

Excluded KB Items: Host/EulerOS/uvp_version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 10/8/2026

Vulnerability Publication Date: 3/18/2026

CISA Known Exploited Vulnerability Due Dates: 9/21/2026

Reference Information

CVE: CVE-2025-10263, CVE-2025-54518, CVE-2026-23247, CVE-2026-23443, CVE-2026-43332, CVE-2026-43456, CVE-2026-43470, CVE-2026-45851, CVE-2026-45893, CVE-2026-45972, CVE-2026-45982, CVE-2026-46054, CVE-2026-46093, CVE-2026-46094, CVE-2026-46113, CVE-2026-46115, CVE-2026-46121, CVE-2026-46131, CVE-2026-46244, CVE-2026-46252, CVE-2026-46260, CVE-2026-46266, CVE-2026-46274, CVE-2026-46289, CVE-2026-46291, CVE-2026-46292, CVE-2026-46302, CVE-2026-46312, CVE-2026-46322, CVE-2026-46323, CVE-2026-46324, CVE-2026-46328, CVE-2026-52908, CVE-2026-52909, CVE-2026-52910, CVE-2026-52912, CVE-2026-52915, CVE-2026-52917, CVE-2026-52920, CVE-2026-52921, CVE-2026-52923, CVE-2026-52924, CVE-2026-52925, CVE-2026-52927, CVE-2026-52928, CVE-2026-52929, CVE-2026-52930, CVE-2026-52933, CVE-2026-52936, CVE-2026-52937, CVE-2026-52942, CVE-2026-52943, CVE-2026-52946, CVE-2026-52948, CVE-2026-52953, CVE-2026-52967, CVE-2026-52970, CVE-2026-52972, CVE-2026-52974, CVE-2026-52975, CVE-2026-52977, CVE-2026-52981, CVE-2026-52984, CVE-2026-52985, CVE-2026-52986, CVE-2026-52988, CVE-2026-52989, CVE-2026-52990, CVE-2026-52991, CVE-2026-52998, CVE-2026-52999, CVE-2026-53000, CVE-2026-53001, CVE-2026-53002, CVE-2026-53004, CVE-2026-53005, CVE-2026-53006, CVE-2026-53009, CVE-2026-53012, CVE-2026-53013, CVE-2026-53015, CVE-2026-53016, CVE-2026-53021, CVE-2026-53032, CVE-2026-53033, CVE-2026-53034, CVE-2026-53035, CVE-2026-53036, CVE-2026-53037, CVE-2026-53050, CVE-2026-53053, CVE-2026-53055, CVE-2026-53059, CVE-2026-53060, CVE-2026-53061, CVE-2026-53062, CVE-2026-53063, CVE-2026-53064, CVE-2026-53069, CVE-2026-53070, CVE-2026-53074, CVE-2026-53075, CVE-2026-53076, CVE-2026-53078, CVE-2026-53090, CVE-2026-53091, CVE-2026-53094, CVE-2026-53096, CVE-2026-53111, CVE-2026-53118, CVE-2026-53123, CVE-2026-53129, CVE-2026-53131, CVE-2026-53132, CVE-2026-53133, CVE-2026-53134, CVE-2026-53136, CVE-2026-53138, CVE-2026-53146, CVE-2026-53147, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53154, CVE-2026-53163, CVE-2026-53167, CVE-2026-53168, CVE-2026-53175, CVE-2026-53177, CVE-2026-53184, CVE-2026-53185, CVE-2026-53189, CVE-2026-53190, CVE-2026-53194, CVE-2026-53195, CVE-2026-53196, CVE-2026-53199, CVE-2026-53207, CVE-2026-53212, CVE-2026-53218, CVE-2026-53219, CVE-2026-53220, CVE-2026-53221, CVE-2026-53223, CVE-2026-53224, CVE-2026-53225, CVE-2026-53227, CVE-2026-53228, CVE-2026-53229, CVE-2026-53230, CVE-2026-53232, CVE-2026-53236, CVE-2026-53238, CVE-2026-53239, CVE-2026-53245, CVE-2026-53246, CVE-2026-53249, CVE-2026-53262, CVE-2026-53264, CVE-2026-53265, CVE-2026-53266, CVE-2026-53267, CVE-2026-53268, CVE-2026-53269, CVE-2026-53270, CVE-2026-53272, CVE-2026-53275, CVE-2026-53285, CVE-2026-53287, CVE-2026-53289, CVE-2026-53291, CVE-2026-53295, CVE-2026-53304, CVE-2026-53313, CVE-2026-53314, CVE-2026-53329, CVE-2026-53330, CVE-2026-53349, CVE-2026-53352, CVE-2026-53369, CVE-2026-53388, CVE-2026-53397, CVE-2026-63886, CVE-2026-63887, CVE-2026-63888, CVE-2026-63897, CVE-2026-63900, CVE-2026-63902, CVE-2026-63903, CVE-2026-63928, CVE-2026-63956, CVE-2026-63961, CVE-2026-64113, CVE-2026-64118