Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-93804 wifi: mac80211: ibss: wait for in-flight TX on disconnect — Linux - - 2026-09-24
CVE-2026-93803 wifi: libipw: fix key index receive bound checks — Linux - - 2026-09-24
CVE-2026-93802 wifi: rsi: validate beacon length before fixed buffer copy — Linux - - 2026-09-24
CVE-2026-93801 smb/client: zero-initialize stack-allocated cifs_open_info_data — Linux 7.0 High 2026-09-24
CVE-2026-93800 btrfs: fix use-after-free on reloc root after error in insert_dirty_subvol() — Linux - - 2026-09-24
CVE-2026-93799 wifi: iwlwifi: mvm: validate sta_id in BA window status notif — Linux 8.8 High 2026-09-24
CVE-2026-93798 btrfs: fix reloc root cleanup in merge_reloc_roots() — Linux 7.8 High 2026-09-24
CVE-2026-93797 wifi: iwlwifi: mvm: fix an off-by-1 boundary check — Linux - - 2026-09-24
CVE-2026-93796 wifi: iwlwifi: pcie: null RX pointers after free — Linux 7.0 High 2026-09-24
CVE-2026-93795 blk-cgroup: fix leaks and online flag on radix_tree_insert failure — Linux - - 2026-09-24
CVE-2026-93794 smb/client: flush dirty data before punching a hole — Linux - - 2026-09-24
CVE-2026-93793 wifi: iwlwifi: mvm: validate TX_CMD response layout — Linux 8.8 High 2026-09-24
CVE-2026-93792 wifi: iwlwifi: mvm: fix a possible underflow — Linux - - 2026-09-24
CVE-2026-93791 wifi: iwlwifi: mvm: add a check on the tid coming from the firmware — Linux - - 2026-09-24
CVE-2026-93790 wifi: iwlwifi: mvm: fix out-of-bounds tid_data access in BA notif — Linux 8.8 High 2026-09-24
CVE-2026-93789 wifi: iwlwifi: bound aligned TLV advance in FW parser — Linux - - 2026-09-24
CVE-2026-93788 wifi: iwlwifi: acpi: validate WGDS table revision index — Linux - - 2026-09-24
CVE-2026-93787 smb: client: bound dirent name against end of SMB response in cifs_filldir — Linux 8.1 High 2026-09-24
CVE-2026-93786 ksmbd: preserve VFS inherited POSIX ACL mask — Linux 8.1 High 2026-09-24
CVE-2026-93785 cifs: validate idmap key payload length — Linux - - 2026-09-24
CVE-2026-93784 wifi: cfg80211: validate IEs in cfg80211_wext_siwgenie() — Linux - - 2026-09-24
CVE-2026-93783 Bluetooth: RFCOMM: validate skb length in rfcomm_recv_frame — Linux - - 2026-09-24
CVE-2026-93781 scsi: core: Do not block on tag allocation in scsi_eh_lock_door() — Linux - - 2026-09-24
CVE-2026-93782 vhost-scsi: flush backend after device ioctls — Linux 7.8 High 2026-09-24
CVE-2026-93288 netfilter: nfnetlink_log: wait for rcu grace period before freeing pernet state — Linux 7.8 High 2026-09-24
CVE-2026-93287 i2c: smbus: reject oversized block transfers in the common path — Linux 7.8 High 2026-09-24
CVE-2026-93286 net: appletalk: fix NULL pointer dereference in aarp_send_ddp() — Linux - - 2026-09-24
CVE-2026-93284 drm/pagemap: dma-unmap pages before handling migration errors — Linux 8.8 High 2026-09-24
CVE-2026-93285 f2fs: embed f2fs_gc_kthread in f2fs_sb_info — Linux - - 2026-09-24
CVE-2026-93283 i3c: master: Fix device_register() error path — Linux - - 2026-09-24

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.