Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-31633 rxrpc: Fix integer overflow in rxgk_verify_response() — Linux 9.8 Critical 2026-04-24
CVE-2026-31634 rxrpc: fix reference count leak in rxrpc_server_keyring() — Linux 7.1AI High AI 2026-04-24
CVE-2026-31632 rxrpc: Fix leak of rxgk context in rxgk_verify_response() — Linux 3.3 - 2026-04-24
CVE-2026-31630 rxrpc: proc: size address buffers for %pISpc output — Linux 7.8 High 2026-04-24
CVE-2026-31631 rxrpc: Fix buffer overread in rxgk_do_verify_authenticator() — Linux 8.2 High 2026-04-24
CVE-2026-31629 nfc: llcp: add missing return after LLCP_CLOSED checks — Linux 8.8 High 2026-04-24
CVE-2026-31628 x86/CPU: Fix FPDSS on Zen1 — Linux 5.5 - 2026-04-24
CVE-2026-31627 i2c: s3c24xx: check the size of the SMBUS message before using it — Linux 7.8 High 2026-04-24
CVE-2026-31626 staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_verify() — Linux 7.1 High 2026-04-24
CVE-2026-31624 HID: core: clamp report_size in s32ton() to avoid undefined shift — Linux 7.7 - 2026-04-24
CVE-2026-31625 HID: alps: fix NULL pointer dereference in alps_raw_event() — Linux 5.5AI Medium AI 2026-04-24
CVE-2026-31623 net: usb: cdc-phonet: fix skb frags[] overflow in rx_complete() — Linux 6.8AI Medium AI 2026-04-24
CVE-2026-31622 NFC: digital: Bounds check NFC-A cascade depth in SDD response handler — Linux 8.8 High 2026-04-24
CVE-2026-31621 bnge: return after auxiliary_device_uninit() in error path — Linux 5.5AI Medium AI 2026-04-24
CVE-2026-31620 ALSA: usx2y: us144mkii: fix NULL deref on missing interface 0 — Linux 4.6AI Medium AI 2026-04-24
CVE-2026-31619 ALSA: fireworks: bound device-supplied status before string array lookup — Linux 7.5 - 2026-04-24
CVE-2026-31618 fbdev: tdfxfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO — Linux 5.5AI Medium AI 2026-04-24
CVE-2026-31617 usb: gadget: f_ncm: validate minimum block_len in ncm_unwrap_ntb() — Linux 7.3 - 2026-04-24
CVE-2026-31615 usb: gadget: renesas_usb3: validate endpoint index in standard request handlers — Linux 7.1AI High AI 2026-04-24
CVE-2026-31616 usb: gadget: f_phonet: fix skb frags[] overflow in pn_rx_complete() — Linux 6.1AI Medium AI 2026-04-24
CVE-2026-31614 smb: client: fix off-by-8 bounds check in check_wsl_eas() — Linux 7.1AI High AI 2026-04-24
CVE-2026-31612 ksmbd: validate EaNameLength in smb2_get_ea() — Linux 7.5 High 2026-04-24
CVE-2026-31613 smb: client: fix OOB reads parsing symlink error response — Linux 8.1 High 2026-04-24
CVE-2026-31611 ksmbd: require 3 sub-authorities before reading sub_auth[2] — Linux 8.6 High 2026-04-24
CVE-2026-31610 ksmbd: fix mechToken leak when SPNEGO decode fails after token alloc — Linux 3.3AI Low AI 2026-04-24
CVE-2026-31609 smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush() — Linux 9.8 Critical 2026-04-24
CVE-2026-31608 smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() — Linux 9.8 Critical 2026-04-24
CVE-2026-31606 usb: gadget: f_hid: don't call cdev_init while cdev in use — Linux 7.8AI High AI 2026-04-24
CVE-2026-31607 usbip: validate number_of_packets in usbip_pack_ret_submit() — Linux 9.8 Critical 2026-04-24
CVE-2026-31605 fbdev: udlfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO — Linux 5.5AI Medium AI 2026-04-24

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.