Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13402

All 13402 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2022-4994 KVM: x86: wean fast IN from emulator_pio_in --2026-07-30
CVE-2026-64560 posix-cpu-timers: Prevent UAF caused by non-leader exec() race 7.8 High2026-07-29
CVE-2026-64559 s390/pkey: Check length in PKEY_VERIFYPROTK ioctl 7.8 High2026-07-29
CVE-2026-64558 s390/pkey: Check length in pkey_pckmo handler implementation 7.8 High2026-07-29
CVE-2026-64556 perf/core: Detach event groups during remove_on_exec 7.8 High2026-07-29
CVE-2026-64557 Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_new_connection_cb() 8.8 High2026-07-29
CVE-2026-64554 netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment() 8.8 High2026-07-27
CVE-2026-64555 KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops() 8.8 High2026-07-27
CVE-2026-64552 virtio-net: fix len check in receive_big() 8.4 High2026-07-27
CVE-2026-64553 net: psample: fix info leak in PSAMPLE_ATTR_DATA --2026-07-27
CVE-2026-64551 sctp: validate STALE_COOKIE cause length before reading staleness 9.1 Critical2026-07-27
CVE-2026-64549 Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup() --2026-07-27
CVE-2026-64550 net: qualcomm: rmnet: validate MAP frame length before ingress parsing 7.3 High2026-07-27
CVE-2026-64548 bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data() 8.4 High2026-07-27
CVE-2026-64547 net: usb: net1080: validate packet_len before pad-byte access in rx_fixup 8.1 High2026-07-27
CVE-2026-64545 net, bpf: check master for NULL in xdp_master_redirect() 7.5 High2026-07-27
CVE-2026-64546 drm/edid: fix OOB read in drm_parse_tiled_block() 7.1 High2026-07-27
CVE-2026-64544 crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents --2026-07-27
CVE-2026-64543 tipc: fix use-after-free of the discoverer in tipc_disc_rcv() 7.8 High2026-07-27
CVE-2026-64542 ipv6: ndisc: fix NULL deref in accept_untracked_na() --2026-07-27
CVE-2026-64541 net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket 9.8 Critical2026-07-27
CVE-2026-64540 usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup() 8.1 High2026-07-27
CVE-2026-64539 Bluetooth: eir: Fix stack OOB write when prepending the Flags AD 7.8 High2026-07-27
CVE-2026-64538 ipv6: Fix null-ptr-deref in fib6_nh_mtu_change(). --2026-07-27
CVE-2026-64537 bridge: cfm: reject invalid CCM interval at configuration time --2026-07-27
CVE-2026-64536 staging: rtl8723bs: fix OOB reads in is_ap_in_tkip() IE loop 8.1 High2026-07-27
CVE-2026-64535 nvmet-tcp: Fix potential UAF when ddgst mismatch 9.8 Critical2026-07-27
CVE-2026-64534 nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path 9.8 Critical2026-07-27
CVE-2026-64533 fs/ntfs3: validate lcns_follow in log_replay conversion 7.8 High2026-07-27
CVE-2026-64531 net: openvswitch: reject oversized nested action attrs 7.8 High2026-07-27

All 13402 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.