Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-98093 ASoC: fsl_micfil: balance mclk enable/disable — Linux - - 2026-09-25
CVE-2026-98092 ASoC: amd: yc: fix memory leak in acp6x_pdm_dma_close() — Linux - - 2026-09-25
CVE-2026-98091 btrfs: detach failed sprout device from transaction update list — Linux - - 2026-09-25
CVE-2026-98090 btrfs: restore active device pointers after failed sprout — Linux - - 2026-09-25
CVE-2026-98089 bonding: alb: fix uninitialized transport header access in alb_determine_nd() — Linux - - 2026-09-25
CVE-2026-98088 scsi: mpt3sas: Avoid out-of-bounds cpumask_of_node() call in _base_assign_reply_queues() — Linux - - 2026-09-25
CVE-2026-98087 sched/rt,dl: Skip migrate-disabled tasks when picking a push candidate — Linux - - 2026-09-25
CVE-2026-98086 ALSA: ump: do not touch legacy_rmidi before it exists — Linux - - 2026-09-25
CVE-2026-98085 bpf: backtrack_insn(): Handle ld_{abs,ind} subprog exit edge — Linux - - 2026-09-25
CVE-2026-98084 bpf: backtracking shouldn't clear outer frame R1-R5 for callbacks — Linux - - 2026-09-25
CVE-2026-98082 btrfs: fix the possible bioc_list memory leak during error — Linux - - 2026-09-25
CVE-2026-98083 btrfs: fix transaction use-after-free in raid stripe insertion — Linux 7.0 High 2026-09-25
CVE-2026-98081 btrfs: zoned: finish active block group cleanup if call_zone_finish() fails — Linux - - 2026-09-25
CVE-2026-98080 btrfs: do not force reloc root creation during qgroup_account_snapshot() — Linux - - 2026-09-25
CVE-2026-98079 btrfs: zstd: fix lost wakeup when waiting for a workspace — Linux - - 2026-09-25
CVE-2026-98078 ipvs: fix reversed sequence option serialization — Linux - - 2026-09-25
CVE-2026-98077 netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace() — Linux - - 2026-09-25
CVE-2026-98076 tracing/probes: Fix use-after-free on field name/type of events with multiple probes — Linux - - 2026-09-25
CVE-2026-98075 bpf: reject BPF_PSEUDO_FUNC reference to the main program — Linux - - 2026-09-25
CVE-2026-98074 bonding: do not clear curr_active_slave prematurely when releasing all slaves — Linux - - 2026-09-25
CVE-2026-98072 net/rds: use wq_has_sleeper() in release_in_xmit() — Linux - - 2026-09-25
CVE-2026-98073 net: Remove conflicting altnames for dying netns in __dev_change_net_namespace(). — Linux 7.8 High 2026-09-25
CVE-2026-98071 net/rds: clear cp_flags bits individually in rds_conn_path_reset() — Linux - - 2026-09-25
CVE-2026-98069 net/rds: acquire the fastpath locks in rds_conn_shutdown() — Linux 8.1 High 2026-09-25
CVE-2026-98070 net/rds: acquire RDS_IN_XMIT in rds_tcp_reset_callbacks() — Linux 8.1 High 2026-09-25
CVE-2026-98068 net/rds: don't let rds_conn_shutdown() consume a concurrent drop — Linux - - 2026-09-25
CVE-2026-98067 erofs: disable LZ4 rolling decompression for now — Linux - - 2026-09-25
CVE-2026-98066 ALSA: caiaq: Fix potential double-free at error path — Linux - - 2026-09-25
CVE-2026-98065 bpf: Reject key-less BTF for hash maps — Linux - - 2026-09-25
CVE-2026-98064 bpf: Fix NULL-ptr-deref when showing a void BTF type — Linux - - 2026-09-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.