Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-98033 bpf: Preserve inner map identity in callback frames — Linux - - 2026-09-25
CVE-2026-98031 nexthop: Initialize extack in remove_nh_grp_entry() — Linux - - 2026-09-25
CVE-2026-98032 tracing: Fix subbuf resize races with trace_pipe_raw readers — Linux - - 2026-09-25
CVE-2026-98030 net: dsa: bcm_sf2: bound the CFP rule dump by the caller's buffer size — Linux 7.0 High 2026-09-25
CVE-2026-98029 eth: nfp: bound the ntuple rule dump by the caller's buffer size — Linux 7.0 High 2026-09-25
CVE-2026-98028 eth: nfp: drop the replaced rule from the list when reprogramming fails — Linux - - 2026-09-25
CVE-2026-98026 net: bridge: mcast: properly convert mglist to rcu — Linux - - 2026-09-25
CVE-2026-98027 net: dsa: mv88e6xxx: bound the policy rule dump by the caller's buffer size — Linux 7.0 High 2026-09-25
CVE-2026-98025 net: usb: cx82310_eth: drop URB after 0xffff reboot sentinel to prevent partial_data heap overflow — Linux - - 2026-09-25
CVE-2026-98023 vxlan: reject dynamic fdb entries that reference a nexthop id — Linux 7.8 High 2026-09-25
CVE-2026-98024 s390/ism: folio_put() after error — Linux - - 2026-09-25
CVE-2026-98021 net: reject oversized tx_queue_len at netlink parse time — Linux - - 2026-09-25
CVE-2026-98022 net: cap tx_queue_len at S16_MAX to prevent oversized ring allocations — Linux - - 2026-09-25
CVE-2026-98020 pds_core: fix cmd_regs access racing BAR unmap on reset — Linux - - 2026-09-25
CVE-2026-98018 net: mctp: i3c: serialize probe with bus removal — Linux - - 2026-09-25
CVE-2026-98019 bpf: mark a NULL call argument precise — Linux - - 2026-09-25
CVE-2026-98017 net/sched: defer qdisc freeing after failed creation — Linux 7.8 High 2026-09-25
CVE-2026-98016 net/mlx5e: Fix use-after-free race in sample_restore_put() — Linux - - 2026-09-25
CVE-2026-98015 net/mlx5: E-Switch: fix use-after-free in mlx5_eswitch_termtbl_put — Linux - - 2026-09-25
CVE-2026-98013 net/sched: fq_pie: clamp quantum in change path — Linux - - 2026-09-25
CVE-2026-98014 net/mlx5: E-Switch, prevent mc_list repopulation during vport disable — Linux - - 2026-09-25
CVE-2026-98012 net/sched: sfq: clamp quantum in change path — Linux - - 2026-09-25
CVE-2026-98010 net/sched: drr: clamp quantum in change class — Linux - - 2026-09-25
CVE-2026-98011 net/sched: hhf: clamp quantum in change and init paths — Linux - - 2026-09-25
CVE-2026-98008 net: macb: fix NULL pointer dereference on unbind with fixed-link — Linux - - 2026-09-25
CVE-2026-98009 net/sched: ets: clamp quantum in parse and fallback paths — Linux - - 2026-09-25
CVE-2026-98007 bpf: Reject non-scalar bpf_loop iteration counts — Linux - - 2026-09-25
CVE-2026-98006 ALSA: caiaq: Decoupling ep1_in_urb in caiaq dev — Linux - - 2026-09-25
CVE-2026-98005 erofs: delimit inode_share cache key components — Linux - - 2026-09-25
CVE-2026-98004 iommu/riscv: Serialize command queue publishing — Linux - - 2026-09-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.