Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-22988 arp: do not assume dev_hard_header() does not change skb->head — Linux 7.8 High 2026-01-23
CVE-2026-22987 net/sched: act_api: avoid dereferencing ERR_PTR in tcf_idrinfo_destroy — Linux 6.5 - 2026-01-23
CVE-2026-22986 gpiolib: fix race condition for gdev->srcu — Linux 6.3 - 2026-01-23
CVE-2026-22985 idpf: Fix RSS LUT NULL pointer crash on early ethtool operations — Linux 5.5 - 2026-01-23
CVE-2026-22984 libceph: prevent potential out-of-bounds reads in handle_auth_done() — Linux 9.8 Critical 2026-01-23
CVE-2026-22982 net: mscc: ocelot: Fix crash when adding interface under a lag — Linux 5.5 - 2026-01-23
CVE-2026-22983 net: do not write to msg_get_inq in callee — Linux 7.8 - 2026-01-23
CVE-2026-22981 idpf: detach and close netdevs while handling a reset — Linux 7.1 - 2026-01-23
CVE-2026-22980 nfsd: provide locking for v4_end_grace — Linux 7.8 High 2026-01-23
CVE-2026-22979 net: fix memory leak in skb_segment_list for GRO packets — Linux 6.2 - 2026-01-23
CVE-2026-22978 wifi: avoid kernel-infoleak from struct iw_point — Linux 5.7 - 2026-01-23
CVE-2025-71160 netfilter: nf_tables: avoid chain re-validation if possible — Linux 5.5 - 2026-01-23
CVE-2025-71161 dm-verity: disable recursive forward error correction — Linux 7.5 High 2026-01-23
CVE-2025-71159 btrfs: fix use-after-free warning in btrfs_get_or_create_delayed_node() — Linux 9.8 Critical 2026-01-23
CVE-2025-71158 gpio: mpsse: ensure worker is torn down — Linux 7.8 High 2026-01-23
CVE-2025-71157 RDMA/core: always drop device refcount in ib_del_sub_device_and_put() — Linux 7.1 - 2026-01-23
CVE-2025-71155 KVM: s390: Fix gmap_helper_zap_one_page() again — Linux 7.8 High 2026-01-23
CVE-2025-71156 gve: defer interrupt enabling until NAPI registration — Linux 6.5 - 2026-01-23
CVE-2025-71154 net: usb: rtl8150: fix memory leak on usb_submit_urb() failure — Linux 3.3 - 2026-01-23
CVE-2025-71153 ksmbd: Fix memory leak in get_file_all_info() — Linux - - 2026-01-23
CVE-2025-71152 net: dsa: properly keep track of conduit reference — Linux 7.1 - 2026-01-23
CVE-2025-71151 cifs: Fix memory and information leak in smb3_reconfigure() — Linux 7.1 - 2026-01-23
CVE-2025-71150 ksmbd: Fix refcount leak when invalid session is found on session lookup — Linux 7.5 High 2026-01-23
CVE-2025-71148 net/handshake: restore destructor on submit failure — Linux 6.5 - 2026-01-23
CVE-2025-71147 KEYS: trusted: Fix a memory leak in tpm2_load_cmd — Linux 5.5 - 2026-01-23
CVE-2025-71146 netfilter: nf_conncount: fix leaked ct in error paths — Linux 7.5 High 2026-01-23
CVE-2025-71145 usb: phy: isp1301: fix non-OF device reference imbalance — Linux 7.8 High 2026-01-23
CVE-2026-22977 net: sock: fix hardened usercopy panic in sock_recv_errqueue — Linux 5.5AI Medium AI 2026-01-21
CVE-2026-22976 net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset — Linux 5.5AI Medium AI 2026-01-21
CVE-2025-71144 mptcp: ensure context reset on disconnect() — Linux 7.5AI High AI 2026-01-14

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.