Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13371

All 13371 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2026-64501 iio: adc: ad_sigma_delta: fix CS held asserted and state leaks --2026-07-25
CVE-2026-64500 iio: adc: lpc32xx: Initialize completion before requesting IRQ --2026-07-25
CVE-2026-64498 iio: buffer: hw-consumer: free scan_mask on buffer release --2026-07-25
CVE-2026-64499 iio: adc: ti-ads1119: fix PM reference leak in buffer preenable --2026-07-25
CVE-2026-64497 iio: chemical: scd30: Cleanup initializations and fix sign-extension bug --2026-07-25
CVE-2026-64496 iio: event: Fix event FIFO reset race --2026-07-25
CVE-2026-64495 iio: gyro: bmg160: bail out when bandwidth/filter is not in table --2026-07-25
CVE-2026-64494 iio: light: gp2ap002: fix runtime PM leak on read error --2026-07-25
CVE-2026-64493 iio: pressure: mpl115: fix runtime PM leak on read error --2026-07-25
CVE-2026-64491 ALSA: usx2y: us144mkii: fix work UAF on disconnect --2026-07-25
CVE-2026-64492 iio: temperature: tmp006: use devm_iio_trigger_register --2026-07-25
CVE-2026-64490 ALSA: virtio: Validate control metadata from the device --2026-07-25
CVE-2026-64489 ALSA: ymfpci: check snd_ctl_new1() return value --2026-07-25
CVE-2026-64487 ALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parser --2026-07-25
CVE-2026-64488 ALSA: aoa: check snd_ctl_new1() return value --2026-07-25
CVE-2026-64486 ALSA: cmipci: check snd_ctl_new1() return value --2026-07-25
CVE-2026-64484 ALSA: es1938: check snd_ctl_new1() return value --2026-07-25
CVE-2026-64485 ALSA: compress: Fix task creation error unwind --2026-07-25
CVE-2026-64483 ALSA: firewire: isight: bound the sample count to the packet payload --2026-07-25
CVE-2026-64482 ALSA: gus: check snd_ctl_new1() return value --2026-07-25
CVE-2026-64480 ALSA: ice1712: check snd_ctl_new1() return value --2026-07-25
CVE-2026-64481 ALSA: hda/cs35l41: Fix firmware load work teardown --2026-07-25
CVE-2026-64479 ALSA: seq: Fix uninitialised heap leak in snd_seq_event_dup() --2026-07-25
CVE-2026-64477 x86,fs/resctrl: Prevent out-of-bounds access while offlining CPU when SNC enabled --2026-07-25
CVE-2026-64478 ALSA: usb-audio: avoid kobject path lookup in DualSense match --2026-07-25
CVE-2026-64476 vfio/pci: Latch disable_idle_d3 per device --2026-07-25
CVE-2026-64475 vfio/pci: Release the VGA arbiter client on register_device() failure --2026-07-25
CVE-2026-64474 vfio: prevent infinite loop in vfio_mig_get_next_state() on blocked arc --2026-07-25
CVE-2026-64473 vfio: Remove device debugfs before releasing devres --2026-07-25
CVE-2026-64472 vfio/mlx5: Fix racy bitfields and tighten struct layout --2026-07-25

All 13371 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.