Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-97911 accel: ethosu: Ensure SRAM region size matches job — Linux 7.8 High 2026-09-25
CVE-2026-97912 accel: ethosu: Ensure SRAM size is 0 on mapping failure — Linux - - 2026-09-25
CVE-2026-97910 ASoC: sprd: validate compress buffer sizes against fixed allocations — Linux 7.8 High 2026-09-25
CVE-2026-97909 ASoC: sti: initialize IRQ lock before requesting IRQ — Linux - - 2026-09-25
CVE-2026-97908 Bluetooth: btqcomsmd: destroy RPMsg endpoints before freeing hci_dev — Linux - - 2026-09-25
CVE-2026-97906 bootconfig: Fix integer overflow in initrd size check — Linux - - 2026-09-25
CVE-2026-97907 Bluetooth: btrtl: Don't leak return code when parsing firmware format v2 — Linux - - 2026-09-25
CVE-2026-97905 cpufreq: zero-initialize policy cpumask before sysfs publication — Linux - - 2026-09-25
CVE-2026-97903 exit: hold a reference to thread_pid across proc_flush_pid — Linux 7.8 High 2026-09-25
CVE-2026-97904 cpufreq: initialize policy rwsem before sysfs publication — Linux - - 2026-09-25
CVE-2026-97901 genetlink: pin family module during policy dump — Linux - - 2026-09-25
CVE-2026-97902 fs: don't return -EINVAL for successful nested thaw — Linux - - 2026-09-25
CVE-2026-97900 drm/drm_exec: fix up contended obj when num_objects is 0 — Linux - - 2026-09-25
CVE-2026-97899 drm/i915: Fix memory leak in query_perf_config_list() — Linux - - 2026-09-25
CVE-2026-97621 drm/rockchip: analogix_dp: fix unchecked bound endpoint name length — Linux - - 2026-09-25
CVE-2026-97620 drm/xe: Flush LSC untyped L1 dataport cache after rcs/ccs batches — Linux - - 2026-09-25
CVE-2026-97619 io_uring/rw: end write accounting from ->ki_complete — Linux - - 2026-09-25
CVE-2026-97618 io_uring/net: don't overconsume buffers when using MSG_TRUNC — Linux - - 2026-09-25
CVE-2026-97616 net/sched: act_api: release all action references on NEWACTION failure — Linux - - 2026-09-25
CVE-2026-97617 ring-buffer: Check resize_disabled before publishing the new subbuf order — Linux - - 2026-09-25
CVE-2026-97615 net: bridge: use option bits for CFM/MRP frame handlers — Linux - - 2026-09-25
CVE-2026-97614 net: dsa: tag_brcm: legacy FCS: request needed tailroom — Linux - - 2026-09-25
CVE-2026-97613 net: mana: Reserve extra CQ slot for the fence completion CQE — Linux - - 2026-09-25
CVE-2026-97611 net: openvswitch: fix use-after-free of the flow table mask array — Linux 7.8 High 2026-09-25
CVE-2026-97612 net: mpls: clear inner_protocol when the last label is popped — Linux 7.8 High 2026-09-25
CVE-2026-97609 netfilter: cttimeout: prevent UAF during module unload — Linux 7.0 High 2026-09-25
CVE-2026-97610 netfs: Fix uninitialized return value in netfs_unbuffered_write() — Linux - - 2026-09-25
CVE-2026-97608 netfilter: nf_log: unregister loggers before per-net teardown — Linux 7.0 High 2026-09-25
CVE-2026-97607 vdpa: ifcvf: Put device on unsupported feature error — Linux - - 2026-09-25
CVE-2026-97606 fs: autofs: fix memory leak in autofs_fill_super() — Linux - - 2026-09-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.