Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13794

All 13794 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2026-64413 netfilter: ebtables: zero chainstack array 7.0 High2026-07-25
CVE-2026-64414 netfilter: handle unreadable frags 7.5 High2026-07-25
CVE-2026-64412 netfilter: ebtables: module names must be null-terminated 7.1 High2026-07-25
CVE-2026-64411 netfilter: ebtables: terminate table name before find_table_lock() 7.1 High2026-07-25
CVE-2026-64410 netfilter: flowtable: IPIP tunnel hardware offload is not yet support 9.8 Critical2026-07-25
CVE-2026-64409 Bluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work() --2026-07-25
CVE-2026-64408 Bluetooth: bnep: pin L2CAP connection during netdev registration 8.8 High2026-07-25
CVE-2026-64407 Bluetooth: btnxpuart: Fix out-of-bounds firmware read in nxp_recv_fw_req_v3() --2026-07-25
CVE-2026-64406 Bluetooth: fix UAF in bt_accept_dequeue() 8.0 High2026-07-25
CVE-2026-64405 Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() --2026-07-25
CVE-2026-64404 Bluetooth: ISO: avoid NULL deref of conn in iso_conn_big_sync() --2026-07-25
CVE-2026-64403 Bluetooth: L2CAP: validate option length before reading conf opt value 7.1 High2026-07-25
CVE-2026-64402 coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer() 7.8 High2026-07-25
CVE-2026-64401 smb: client: resolve SWN tcon from live registrations 7.8 High2026-07-25
CVE-2026-64400 ksmbd: prevent path traversal bypass by restricting caseless retry 8.6 High2026-07-25
CVE-2026-64399 ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE 9.8 Critical2026-07-25
CVE-2026-64397 ksmbd: serialize QUERY_DIRECTORY requests per file 9.8 Critical2026-07-25
CVE-2026-64398 ksmbd: add a permission check for FSCTL_SET_ZERO_DATA 8.1 High2026-07-25
CVE-2026-64396 ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellation 8.8 High2026-07-25
CVE-2026-64395 ksmbd: require source read access for duplicate extents 7.5 High2026-07-25
CVE-2026-64394 ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY 8.8 High2026-07-25
CVE-2026-64392 ksmbd: use opener credentials for delete-on-close 9.1 Critical2026-07-25
CVE-2026-64393 ksmbd: run set info with opener credentials 9.1 Critical2026-07-25
CVE-2026-64391 ksmbd: use opener credentials for ADS I/O 9.8 Critical2026-07-25
CVE-2026-64389 ksmbd: validate NTLMv2 response before updating session key 8.2 High2026-07-25
CVE-2026-64390 ksmbd: track the connection owning a byte-range lock 8.8 High2026-07-25
CVE-2026-64388 smb/client: fix chown/chgrp with SMB3 POSIX Extensions 7.8 High2026-07-25
CVE-2026-64387 smb: client: fix query directory replay double-free 9.8 Critical2026-07-25
CVE-2026-64386 smb: client: fix query_info() replay double-free 9.8 Critical2026-07-25
CVE-2026-64385 smb: client: fix double-free in SMB2_ioctl() replay 9.8 Critical2026-07-25

All 13794 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.