Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-31513 Bluetooth: L2CAP: Fix stack-out-of-bounds read in l2cap_ecred_conn_req — Linux 8.1 High 2026-04-22
CVE-2026-31512 Bluetooth: L2CAP: Validate PDU length before reading SDU length in l2cap_ecred_data_rcv() — Linux 4.3AI Medium AI 2026-04-22
CVE-2026-31511 Bluetooth: MGMT: Fix dangling pointer on mgmt_add_adv_patterns_monitor_complete — Linux 7.8 High 2026-04-22
CVE-2026-31510 Bluetooth: L2CAP: Fix null-ptr-deref on l2cap_sock_ready_cb — Linux 6.5AI Medium AI 2026-04-22
CVE-2026-31509 nfc: nci: fix circular locking dependency in nci_close_device — Linux 5.5AI Medium AI 2026-04-22
CVE-2026-31508 net: openvswitch: Avoid releasing netdev before teardown completes — Linux 7.8 High 2026-04-22
CVE-2026-31507 net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer — Linux 7.8 High 2026-04-22
CVE-2026-31506 net: bcmasp: fix double free of WoL irq — Linux 8.8AI High AI 2026-04-22
CVE-2026-31505 iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() — Linux 7.8 High 2026-04-22
CVE-2026-31504 net: fix fanout UAF in packet_release() via NETDEV_UP race — Linux 7.8 High 2026-04-22
CVE-2026-31503 udp: Fix wildcard bind conflict check when using hash2 — Linux 9.1AI Critical AI 2026-04-22
CVE-2026-31502 team: fix header_ops type confusion with non-Ethernet ports — Linux 7.8 High 2026-04-22
CVE-2026-31501 net: ti: icssg-prueth: fix use-after-free of CPPI descriptor in RX path — Linux 9.8 Critical 2026-04-22
CVE-2026-31500 Bluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock — Linux 6.8AI Medium AI 2026-04-22
CVE-2026-31498 Bluetooth: L2CAP: Fix ERTM re-init and zero pdu_len infinite loop — Linux 6.5AI Medium AI 2026-04-22
CVE-2026-31499 Bluetooth: L2CAP: Fix deadlock in l2cap_conn_del() — Linux 6.5AI Medium AI 2026-04-22
CVE-2026-31497 Bluetooth: btusb: clamp SCO altsetting table indices — Linux 6.5AI Medium AI 2026-04-22
CVE-2026-31495 netfilter: ctnetlink: use netlink policy range checks — Linux 7.7 - 2026-04-22
CVE-2026-31496 netfilter: nf_conntrack_expect: skip expectations in other netns via proc — Linux 6.1AI Medium AI 2026-04-22
CVE-2026-31494 net: macb: use the current queue number for stats — Linux 7.8 High 2026-04-22
CVE-2026-31493 RDMA/efa: Fix use of completion ctx after free — Linux 7.1 - 2026-04-22
CVE-2026-31492 RDMA/irdma: Initialize free_qp completion before using it — Linux 5.5AI Medium AI 2026-04-22
CVE-2026-31491 RDMA/irdma: Harden depth calculation functions — Linux 7.8AI High AI 2026-04-22
CVE-2026-31489 spi: meson-spicc: Fix double-put in remove path — Linux 7.1AI High AI 2026-04-22
CVE-2026-31490 drm/xe/pf: Fix use-after-free in migration restore — Linux 7.8 High 2026-04-22
CVE-2026-31488 drm/amd/display: Do not skip unrelated mode changes in DSC validation — Linux 7.8 High 2026-04-22
CVE-2026-31487 spi: use generic driver_override infrastructure — Linux 7.1AI High AI 2026-04-22
CVE-2026-31486 hwmon: (pmbus/core) Protect regulator operations with mutex — Linux 7.1 High 2026-04-22
CVE-2026-31485 spi: spi-fsl-lpspi: fix teardown order issue (UAF) — Linux 5.5 - 2026-04-22
CVE-2026-31483 s390/syscalls: Add spectre boundary for syscall dispatch table — Linux 7.8 - 2026-04-22

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.