Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-97605 erofs: preserve LZMA decoders on resize failure — Linux - - 2026-09-25
CVE-2026-97604 fbdev: vfb: defer cleanup until the last reference — Linux - - 2026-09-25
CVE-2026-97603 idpf: disable DIM work before freeing q_vectors — Linux - - 2026-09-25
CVE-2026-97602 inet: frags: invalidate queues before flushing them — Linux 7.8 High 2026-09-25
CVE-2026-97601 ieee802154: 6lowpan: fix NULL dereference in lowpan_newlink — Linux - - 2026-09-25
CVE-2026-97600 ieee802154: cc2520: fix FIFOP work use-after-free — Linux - - 2026-09-25
CVE-2026-97599 ieee802154: hwsim: serialize pib updates to fix double-free — Linux - - 2026-09-25
CVE-2026-97598 ipv4: fib: bound automatic table ID allocation — Linux - - 2026-09-25
CVE-2026-97596 ipvs: reject invalid states in connection template sync records — Linux - - 2026-09-25
CVE-2026-97597 ipv6: flowlabel: cap duplicate leases per socket — Linux - - 2026-09-25
CVE-2026-97594 landlock: Fix use-after-free of the source's parent directory — Linux 7.8 High 2026-09-25
CVE-2026-97595 mac802154: fix use-after-free of sdata via queued RX frames — Linux 7.5 High 2026-09-25
CVE-2026-97593 iommu/s390: Fix NULL dereference in iova_to_phys() with ZPCI_TABLE_TYPE_RFX — Linux - - 2026-09-25
CVE-2026-97592 s390/crypto: Fix missing scrub of temp buffers with AES ctr and gcm algorithm — Linux - - 2026-09-25
CVE-2026-97591 s390/crypto: Fix handling of EBUSY in PHMAC when req is pushed to crypto engine — Linux - - 2026-09-25
CVE-2026-97590 s390/crypto: Fix missing scrub of temp buffers with PAES algorithm — Linux - - 2026-09-25
CVE-2026-97588 s390/crypto: Map EBUSY to EIO when key conversion fails repeatedly — Linux - - 2026-09-25
CVE-2026-97589 s390/crypto: Fix wrong return code to engine in asynch callbacks — Linux 7.0 High 2026-09-25
CVE-2026-97587 perf: RISC-V: store available counter mask as bitmap — Linux - - 2026-09-25
CVE-2026-97586 afs: Fix missing kunmap in afs_dir_search_bucket() — Linux - - 2026-09-25
CVE-2026-97585 afs: Fix double-unmap of directory block — Linux - - 2026-09-25
CVE-2026-97584 afs: Fix incorrect free in candidate cleanup in afs_lookup_server() — Linux 7.8 High 2026-09-25
CVE-2026-97583 afs: Clear stale peer app data after address list changes — Linux 7.5 High 2026-09-25
CVE-2026-97582 hwmon: (gpio-fan) Fix use-after-free in alarm work — Linux - - 2026-09-25
CVE-2026-97580 media: rkvdec: bound HEVC tile loops and PPS id to the array capacity — Linux 7.8 High 2026-09-25
CVE-2026-97581 media: verisilicon: hantro: bound G2 HEVC tile loop to the buffer capacity — Linux - - 2026-09-25
CVE-2026-97578 media: verisilicon: rockchip: guard VPU981 AV1 divisor and tile buffer — Linux 7.8 High 2026-09-25
CVE-2026-97579 media: mediatek: vcodec: bound AV1 tile-start copy to the array capacity — Linux 7.8 High 2026-09-25
CVE-2026-97577 media: verisilicon: rockchip: reject AV1 frames exceeding the tile capacity — Linux 7.8 High 2026-09-25
CVE-2026-97575 media: v4l2-ctrls: validate AV1 tile counts — Linux 7.8 High 2026-09-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.