Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-97410 netconsole: take target_cleanup_list_lock in drop_netconsole_target() — Linux - - 2026-09-24
CVE-2026-97409 nvme-fc: Do not cancel requests in io target before it is initialized — Linux 8.8 High 2026-09-24
CVE-2026-97408 Bluetooth: L2CAP: validate connectionless PSM length — Linux - - 2026-09-24
CVE-2026-97407 ASoC: rockchip: rockchip_pdm: Handle runtime PM resume failures in set_fmt — Linux - - 2026-09-24
CVE-2026-93830 net: stmmac: xgmac2: disable RBUE in default RX interrupt mask — Linux 7.5 High 2026-09-24
CVE-2026-93829 smb: client: fix races in cifsd thread creation — Linux - - 2026-09-24
CVE-2026-93828 exfat: fix handling of damaged volume in exfat_create_upcase_table() — Linux - - 2026-09-24
CVE-2026-93827 virtio-fs: avoid double-free on failed queue setup — Linux 8.4 High 2026-09-24
CVE-2026-93826 HID: hidpp: fix potential UAF in hidpp_connect_event() — Linux 7.5 High 2026-09-24
CVE-2026-93825 spi: Add NULL check for spi_get_device_id() in spi_get_device_match_data() — Linux - - 2026-09-24
CVE-2026-93824 tls: reject the combination of TLS and sockmap — Linux - - 2026-09-24
CVE-2026-93823 drm/amdkfd: Let driver decide buffer size at AMDKFD_IOC_GET_DMABUF_INFO ioctl — Linux - - 2026-09-24
CVE-2026-93822 PCI: iproc: Protect root bus removal with rescan lock — Linux - - 2026-09-24
CVE-2026-93821 PCI: altera: Protect root bus removal with rescan lock — Linux - - 2026-09-24
CVE-2026-93820 PCI: rockchip: Protect root bus removal with rescan lock — Linux - - 2026-09-24
CVE-2026-93819 PCI: mediatek: Protect root bus removal with rescan lock — Linux - - 2026-09-24
CVE-2026-93818 PCI: plda: Protect root bus removal with rescan lock — Linux - - 2026-09-24
CVE-2026-93817 perf: Fix addr_filter_ranges lifetime — Linux 7.8 High 2026-09-24
CVE-2026-93816 f2fs: validate inline dentry name lengths before conversion — Linux 7.1 High 2026-09-24
CVE-2026-93815 net: au1000: move free_irq out of the close-time spinlocked section — Linux - - 2026-09-24
CVE-2026-93814 spi: core: Abort active target transfer on controller suspend — Linux - - 2026-09-24
CVE-2026-93813 btrfs: tree-checker: validate INODE_REF's namelen — Linux 7.8 High 2026-09-24
CVE-2026-93812 ksmbd: fix sd_ndr.data memory leak in ksmbd_vfs_set_sd_xattr — Linux - - 2026-09-24
CVE-2026-93811 ksmbd: Fix acl.sd_buf memory leak and invalid sd_size error handling — Linux - - 2026-09-24
CVE-2026-93810 cachefiles: Fix double fput — Linux 7.0 High 2026-09-24
CVE-2026-93809 drm/amdgpu: flush pending RCU callbacks on module unload — Linux - - 2026-09-24
CVE-2026-93808 ALSA: usb-audio: caiaq: validate EP1 reply lengths — Linux - - 2026-09-24
CVE-2026-93807 wifi: rsi: avoid reading TKIP MIC keys for non-TKIP ciphers — Linux - - 2026-09-24
CVE-2026-93806 wifi: cfg80211: validate assoc response length before status and IE access — Linux 8.8 High 2026-09-24
CVE-2026-93805 wifi: cfg80211: validate rx/tx MLME callback frame lengths before access — Linux - - 2026-09-24

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.