Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-98063 bpf: Fix NULL-ptr-deref in btf_var_show() — Linux - - 2026-09-25
CVE-2026-98062 bpf: Mark signal tracepoint siginfo arguments as scalar — Linux - - 2026-09-25
CVE-2026-98061 bpf: Reject tail calls directly from callback frames — Linux - - 2026-09-25
CVE-2026-98060 bpf: Reject resilient lock operations in rbtree callbacks — Linux - - 2026-09-25
CVE-2026-98059 bpf: Mark sched_process_wait argument as nullable — Linux - - 2026-09-25
CVE-2026-98057 ring-buffer: Add checking nr_subbufs to persistent ring buffer validation — Linux - - 2026-09-25
CVE-2026-98058 bpf: Mark syscall helpers as sleepable — Linux - - 2026-09-25
CVE-2026-98056 nvme: remove stale namespaces by NSID range during scan — Linux 7.5 High 2026-09-25
CVE-2026-98055 ASoC: Intel: avs: Clean up the bus when fetching ML caps fails — Linux - - 2026-09-25
CVE-2026-98054 ASoC: Intel: avs: Fix unbalanced module reference count — Linux - - 2026-09-25
CVE-2026-98053 ASoC: Intel: avs: Refactor and fix init_config access — Linux - - 2026-09-25
CVE-2026-98051 net: bcmasp: fix tx_spb_ring_full() checking same slot cnt times — Linux - - 2026-09-25
CVE-2026-98052 net: bcmasp: clear txcb->last before writing each descriptor — Linux 7.8 High 2026-09-25
CVE-2026-98049 bpf: zero extend the result of an arena 32-bit cmpxchg — Linux - - 2026-09-25
CVE-2026-98050 mlxsw: spectrum_ptp: Fix napi_gro_receive() call from GC workqueue context — Linux 7.5 High 2026-09-25
CVE-2026-98048 bpf: don't rewrite bpf_fastcall patterns entered by a jump — Linux - - 2026-09-25
CVE-2026-98047 bpf: Check ancestor frames for rbtree callbacks — Linux - - 2026-09-25
CVE-2026-98046 bpf: Mark bpf_btf_find_by_name_kind() as sleepable — Linux - - 2026-09-25
CVE-2026-98045 bpf: Mark faultable stack helpers as sleepable — Linux - - 2026-09-25
CVE-2026-98044 bpf: Reject legacy packet loads from callbacks — Linux - - 2026-09-25
CVE-2026-98043 bpf: Don't infer non-NULL from a pointer with an unbounded offset — Linux - - 2026-09-25
CVE-2026-98041 bpf: Don't predict JMP32 pointer vs zero comparisons — Linux 7.0 High 2026-09-25
CVE-2026-98042 bpf: Don't resurrect a scalar id dropped by collect_linked_regs() — Linux - - 2026-09-25
CVE-2026-98040 bpf: Mark the zero register precise for a register-form NULL check — Linux - - 2026-09-25
CVE-2026-98038 bpf: Keep refcount_acquire nullable for borrowed RCU kptrs — Linux - - 2026-09-25
CVE-2026-98039 bpf: Require MEM_PERCPU for percpu kptr stores — Linux - - 2026-09-25
CVE-2026-98036 bpf: Preserve special fields in recycled rhtab elements — Linux - - 2026-09-25
CVE-2026-98037 bpf: Reject untrusted allocated-object pointers — Linux - - 2026-09-25
CVE-2026-98035 bpf: Cancel special fields when recycling rhtab elements — Linux - - 2026-09-25
CVE-2026-98034 bpf: Mark NULL kptr stores precise — Linux - - 2026-09-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.