Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-43463 rxrpc, afs: Fix missing error pointer check after rxrpc_kernel_lookup_peer() — Linux 5.5AI Medium AI 2026-05-08
CVE-2026-43461 spi: amlogic: spifc-a4: Fix DMA mapping error handling — Linux 7.8 High 2026-05-08
CVE-2026-43460 spi: rockchip-sfc: Fix double-free in remove() callback — Linux 7.8AI High AI 2026-05-08
CVE-2026-43459 ASoC: soc-core: flush delayed work before removing DAIs and widgets — Linux 7.3 High 2026-05-08
CVE-2026-43458 serial: caif: hold tty->link reference in ldisc_open and ser_release — Linux 7.1AI High AI 2026-05-08
CVE-2026-43457 mctp: i2c: fix skb memory leak in receive path — Linux 4.7AI Medium AI 2026-05-08
CVE-2026-43456 bonding: fix type confusion in bond_setup_by_slave() — Linux 7.8 High 2026-05-08
CVE-2026-43454 netfilter: nf_tables: Fix for duplicate device in netdev hooks — Linux 7.8 High 2026-05-08
CVE-2026-43455 mctp: route: hold key->lock in mctp_flow_prepare_output() — Linux 7.8AI High AI 2026-05-08
CVE-2026-43453 netfilter: nft_set_pipapo: fix stack out-of-bounds read in pipapo_drop() — Linux 7.1AI High AI 2026-05-08
CVE-2026-43452 netfilter: x_tables: guard option walkers against 1-byte tail reads — Linux 8.2 High 2026-05-08
CVE-2026-43451 netfilter: nfnetlink_queue: fix entry leak in bridge verdict error path — Linux 7.1 - 2026-05-08
CVE-2026-43450 netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() — Linux 5.5 - 2026-05-08
CVE-2026-43448 nvme-pci: Fix race bug in nvme_poll_irqdisable() — Linux 6.3AI Medium AI 2026-05-08
CVE-2026-43449 nvme-pci: Fix slab-out-of-bounds in nvme_dbbuf_set — Linux 5.5AI Medium AI 2026-05-08
CVE-2026-43447 iavf: fix PTP use-after-free during reset — Linux 7.8 High 2026-05-08
CVE-2026-43445 e1000/e1000e: Fix leak in DMA error cleanup — Linux 7.1AI High AI 2026-05-08
CVE-2026-43446 accel/amdxdna: Fix runtime suspend deadlock when there is pending job — Linux 5.5AI Medium AI 2026-05-08
CVE-2026-43444 drm/amdkfd: Unreserve bo if queue update failed — Linux 7.8AI High AI 2026-05-08
CVE-2026-43443 ASoC: amd: acp-mach-common: Add missing error check for clock acquisition — Linux 5.5 - 2026-05-08
CVE-2026-43442 io_uring: fix physical SQE bounds check for SQE_MIXED 128-byte ops — Linux 7.1 High 2026-05-08
CVE-2026-43441 net: bonding: Fix nd_tbl NULL dereference when IPv6 is disabled — Linux 7.5 High 2026-05-08
CVE-2026-43439 cgroup: fix race between task migration and iteration — Linux 6.5 - 2026-05-08
CVE-2026-43440 net/mana: Null service_wq on setup error to prevent double destroy — Linux 7.1 - 2026-05-08
CVE-2026-43438 sched_ext: Remove redundant css_put() in scx_cgroup_init() — Linux 7.8 High 2026-05-08
CVE-2026-43436 ALSA: usb-audio: Check endpoint numbers at parsing Scarlett2 mixer interfaces — Linux 6.2AI Medium AI 2026-05-08
CVE-2026-43437 ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() — Linux 7.8 High 2026-05-08
CVE-2026-43435 rust_binder: fix oneway spam detection — Linux - - AI 2026-05-08
CVE-2026-43434 rust_binder: check ownership before using vma — Linux 7.8 High 2026-05-08
CVE-2026-43433 rust_binder: avoid reading the written value in offsets array — Linux 7.8 High 2026-05-08

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.