Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13446

All 13446 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2026-64246 power: reset: linkstation-poweroff: fix use-after-free in the linkstation_poweroff_init() --2026-07-24
CVE-2026-64245 fbdev: modedb: fix a possible UAF in fb_find_mode() --2026-07-24
CVE-2026-64244 drivers/base/memory: set mem->altmap after successful device registration --2026-07-24
CVE-2026-64242 usb: gadget: net2280: Fix double free in probe error path --2026-07-24
CVE-2026-64243 ASoC: codecs: simple-mux: Fix enum control bounds check 7.1 High2026-07-24
CVE-2026-64241 gpio: rockchip: teardown bugs and resource leaks --2026-07-24
CVE-2026-64240 media: rc: igorplugusb: fix control request setup packet --2026-07-24
CVE-2026-64239 mm/damon/sysfs-schemes: delete tried region in regions_rmdirs() --2026-07-24
CVE-2026-64237 Input: elan_i2c - validate firmware size before use --2026-07-24
CVE-2026-64238 gpio: shared: fix deadlock on shared proxy's parent removal --2026-07-24
CVE-2026-64235 x86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines 8.1 High2026-07-24
CVE-2026-64236 i2c: davinci: fix division by zero on missing clock-frequency --2026-07-24
CVE-2026-64234 tty: serial: pch_uart: add check for dma_alloc_coherent() --2026-07-24
CVE-2026-64233 usb: gadget: uvc: hold opts->lock across XU walks in uvc_function_bind --2026-07-24
CVE-2026-64232 block: recompute nr_integrity_segments in blk_insert_cloned_request 9.8 Critical2026-07-24
CVE-2026-64231 drm/msm/dsi: don't dump registers past the mapped region --2026-07-24
CVE-2026-64230 regulator: tps65219: fix irq_data.rdev not being assigned --2026-07-24
CVE-2026-64228 net: ethtool: phy: avoid NULL deref when PHY driver is unbound --2026-07-24
CVE-2026-64229 x86/mm: Disable broadcast TLB flush when PCID is disabled --2026-07-24
CVE-2026-64227 ACPI: driver: Check ACPI_COMPANION() against NULL during probe --2026-07-24
CVE-2026-64226 sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path 7.8 High2026-07-24
CVE-2026-64225 octeontx2-af: CGX: add bounds check to cgx_speed_mbps index --2026-07-24
CVE-2026-64224 octeontx2-pf: fix double free in rvu_rep_rsrc_init() --2026-07-24
CVE-2026-64223 wifi: mac80211: consume only present negotiated TTLM maps 8.1 High2026-07-24
CVE-2026-64222 octeontx2-pf: avoid double free of pool->stack on AQ init failure 7.0 High2026-07-24
CVE-2026-64221 spi: ti-qspi: fix use-after-free after DMA setup failure 7.8 High2026-07-24
CVE-2026-64220 device property: set fwnode->secondary to NULL in fwnode_init() --2026-07-24
CVE-2026-64218 batman-adv: bla: fix report_work leak on backbone_gw purge 7.8 High2026-07-24
CVE-2026-64219 drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async 7.0 High2026-07-24
CVE-2026-64216 netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages() 9.8 Critical2026-07-24

All 13446 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.