Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-23417 bpf: Fix constant blinding for PROBE_MEM32 stores — Linux 7.8AI High AI 2026-04-02
CVE-2026-23416 mm/mseal: update VMA end correctly on merge — Linux 5.5AI Medium AI 2026-04-02
CVE-2026-23414 tls: Purge async_hold in tls_decrypt_async_wait() — Linux 7.5 High 2026-04-02
CVE-2026-23415 futex: Fix UaF between futex_key_to_node_opt() and vma_replace_policy() — Linux 7.8 High 2026-04-02
CVE-2026-23413 clsact: Fix use-after-free in init/destroy rollback asymmetry — Linux 7.8 High 2026-04-02
CVE-2026-23412 netfilter: bpf: defer hook memory release until rcu readers are done — Linux 7.8 High 2026-04-02
CVE-2026-23411 apparmor: fix race between freeing data and fs accessing it — Linux 7.8 High 2026-04-01
CVE-2026-23410 apparmor: fix race on rawdata dereference — Linux 7.8 High 2026-04-01
CVE-2026-23409 apparmor: fix differential encoding verification — Linux 7.1AI High AI 2026-04-01
CVE-2026-23408 apparmor: Fix double free of ns_name in aa_replace_profiles() — Linux 7.8 High 2026-04-01
CVE-2026-23407 apparmor: fix missing bounds check on DEFAULT table in verify_dfa() — Linux 7.8 High 2026-04-01
CVE-2026-23405 apparmor: fix: limit the number of levels of policy namespaces — Linux 5.5AI Medium AI 2026-04-01
CVE-2026-23406 apparmor: fix side-effect bug in match_char() macro usage — Linux 7.8 High 2026-04-01
CVE-2026-23404 apparmor: replace recursive profile removal with iterative approach — Linux 5.5AI Medium AI 2026-04-01
CVE-2026-23403 apparmor: fix memory leak in verify_header — Linux 6.1AI Medium AI 2026-04-01
CVE-2026-23402 KVM: x86/mmu: Only WARN in direct MMUs when overwriting shadow-present SPTE — Linux 4.7AI Medium AI 2026-04-01
CVE-2026-23401 KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE — Linux 8.8AI High AI 2026-04-01
CVE-2026-23400 rust_binder: call set_notification_done() without proc lock — Linux 7.1 - 2026-03-29
CVE-2026-23399 nf_tables: nft_dynset: fix possible stateful expression memleak in error path — Linux 5.5 - 2026-03-28
CVE-2026-23398 icmp: fix NULL pointer dereference in icmp_tag_validation() — Linux 6.5 - 2026-03-26
CVE-2026-23397 nfnetlink_osf: validate individual option lengths in fingerprints — Linux 7.5 - 2026-03-26
CVE-2026-23396 wifi: mac80211: fix NULL deref in mesh_matches_local() — Linux 6.5 - 2026-03-26
CVE-2026-23395 Bluetooth: L2CAP: Fix accepting multiple L2CAP_ECRED_CONN_REQ — Linux 8.8 High 2026-03-25
CVE-2026-23394 af_unix: Give up GC if MSG_PEEK intervened. — Linux 6.3 - 2026-03-25
CVE-2026-23392 netfilter: nf_tables: release flowtable after rcu grace period on error — Linux 7.8 High 2026-03-25
CVE-2026-23393 bridge: cfm: Fix race condition in peer_mep deletion — Linux 7.8 High 2026-03-25
CVE-2026-23391 netfilter: xt_CT: drop pending enqueued packets on template removal — Linux 7.8 High 2026-03-25
CVE-2026-23390 tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow — Linux 7.7 - 2026-03-25
CVE-2026-23389 ice: Fix memory leak in ice_set_ringparam() — Linux 7.1 - 2026-03-25
CVE-2026-23388 Squashfs: check metadata block offset is within range — Linux 7.1 - 2026-03-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.