Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Linux — Vulnerabilities & Security Advisories 12150

All 12150 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page serves as the vulnerability aggregation resource for the Linux operating system, focusing on common weakness types and associated security tags. It collects a comprehensive catalog of security vulnerabilities affecting Linux distributions, kernel versions, and major open-source components bundled within the Linux ecosystem. The data spans from early historical reports in the mid-1990s to the present day, ensuring a longitudinal view of the threat landscape. Visitors can utilize this resource to track vendor-specific advisories from major Linux maintainers such as Red Hat, Debian, Ubuntu, and SUSE. Users can also deepen their understanding of specific weakness classes, such as buffer overflows, race conditions, and privilege escalation vectors, by observing how they manifest across different kernel releases and subsystems. Furthermore, the platform allows users to look up a specific product’s vulnerability history, providing context on the remediation speed and frequency of updates for various Linux-based tools and services. This structured approach aids security professionals in assessing risk exposure, patching priorities, and long-term stability trends within the Linux environment without relying on fragmented or outdated information sources.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2026-45837 bpf: Fix use-after-free in arena_vm_close on fork --2026-05-27
CVE-2026-45836 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() --2026-05-26
CVE-2026-45835 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb() --2026-05-26
CVE-2026-45834 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() --2026-05-26
CVE-2026-46300 net: skbuff: preserve shared-frag marker during coalescing 7.8 High2026-05-23
CVE-2026-43503 net: skbuff: propagate shared-frag marker through frag-transfer helpers 8.8 High2026-05-23
CVE-2026-43502 net/rds: handle zerocopy send cleanup before the message is queued 7.8 High2026-05-21
CVE-2026-43501 ipv6: rpl: reserve mac_len headroom when recompressed SRH grows 9.8 Critical2026-05-21
CVE-2026-43498 accel/ivpu: Disallow re-exporting imported GEM objects 7.8 High2026-05-21
CVE-2026-43499 rtmutex: Use waiter::task instead of current in remove_waiter() 7.8 High2026-05-21
CVE-2026-43497 fbdev: udlfb: add vm_ops to dlfb_ops_mmap to prevent use-after-free 7.3 High2026-05-21
CVE-2026-43496 net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peeked --2026-05-21
CVE-2026-43495 net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_msg_handler 8.8 High2026-05-21
CVE-2026-43494 net/rds: reset op_nents when zerocopy page pin fails 7.8 High2026-05-21
CVE-2026-43492 lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() --2026-05-19
CVE-2026-43493 crypto: pcrypt - Fix handling of MAY_BACKLOG requests 9.8 Critical2026-05-19
CVE-2026-43491 net: qrtr: ns: Limit the maximum server registration per node --2026-05-19
CVE-2026-46333 ptrace: slightly saner 'get_dumpable()' logic 7.1 High2026-05-15
CVE-2026-43490 ksmbd: validate inherited ACE SID length 8.8 High2026-05-15
CVE-2026-43489 liveupdate: luo_file: remember retrieve() status --2026-05-13
CVE-2026-43487 ata: libata-core: Disable LPM on ST1000DM010-2EP102 --2026-05-13
CVE-2026-43488 usb: xhci: Prevent interrupt storm on host controller error (HCE) --2026-05-13
CVE-2026-43485 nouveau/gsp: drop WARN_ON in ACPI probes --2026-05-13
CVE-2026-43486 arm64: contpte: fix set_access_flags() no-op check for SMMU/ATS faults --2026-05-13
CVE-2026-43484 mmc: core: Avoid bitfield RMW for claim/retune flags --2026-05-13
CVE-2026-43482 sched_ext: Disable preemption between scx_claim_exit() and kicking helper work --2026-05-13
CVE-2026-43483 KVM: SVM: Set/clear CR8 write interception when AVIC is (de)activated --2026-05-13
CVE-2026-43480 ASoC: amd: acp3x-rt5682-max9836: Add missing error check for clock acquisition --2026-05-13
CVE-2026-43481 net-shapers: don't free reply skb after genlmsg_reply() 7.8 High2026-05-13
CVE-2026-43479 net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect --2026-05-13

All 12150 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.