Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-93222 signal: avoid shared siginfo namespace rewrites — Linux - - 2026-09-24
CVE-2026-93221 nfsd: convert nfsd_net boolean flags to unsigned long flags word — Linux 8.1 High 2026-09-24
CVE-2026-93220 sched_ext: Keep kick_sync waiting on the rq's own CPU — Linux - - 2026-09-24
CVE-2026-93219 clocksource/drivers/timer-sun4i: Advertise a real minimum delta — Linux - - 2026-09-24
CVE-2026-93218 mm/huge_memory: skip device-private PMDs in madvise_free_huge_pmd — Linux - - 2026-09-24
CVE-2026-93217 mm/madvise: skip device-private PMDs in cold and pageout walks — Linux - - 2026-09-24
CVE-2026-93216 mm/page_owner: use memcg_data snapshot to avoid TOCTOU in print_page_owner_memcg() — Linux - - 2026-09-24
CVE-2026-93215 cdx: Fix double free when sysfs file creation fails — Linux - - 2026-09-24
CVE-2026-93214 usb: gadget: f_tcm: fix deadlock in usbg_make_tpg() — Linux - - 2026-09-24
CVE-2026-93213 of: fix out-of-bounds read in of_alias_scan() stem parser — Linux - - 2026-09-24
CVE-2026-93212 nfsd: guard nfsd_serv deref in nfsd_file_net_dispose — Linux - - 2026-09-24
CVE-2026-93211 nfsd: initialize DRC hash table before registering shrinker — Linux - - 2026-09-24
CVE-2026-93210 smb: client: harden DFS cache against invalid target hints — Linux - - 2026-09-24
CVE-2026-93209 Bluetooth: hci_core: use skb_get() instead of skb_clone() for req_skb — Linux - - 2026-09-24
CVE-2026-93208 kasan: fix cache shrink race with CPU hotplug — Linux - - 2026-09-24
CVE-2026-93207 SUNRPC: Zero rpc_gss_wire_cred at svcauth_gss_decode_credbody() entry — Linux 9.8 Critical 2026-09-24
CVE-2026-93206 PCI/proc: Use file_ns_capable() when checking config space read access — Linux - - 2026-09-24
CVE-2026-93205 iommu/arm-smmu-v3: Manage teardown with devm — Linux - - 2026-09-24
CVE-2026-93203 batman-adv: bla: avoid CRC corruption due to parallel claim add — Linux 7.1 High 2026-09-17
CVE-2026-93204 batman-adv: dat: atomically update mac addresses — Linux - - 2026-09-17
CVE-2026-93202 i3c: master: Fix recursive locking during device registration — Linux - - 2026-09-17
CVE-2026-93200 i3c: master: Fix use-after-free of master->this — Linux - - 2026-09-17
CVE-2026-93201 dm-pcache: validate seg_id fields from persistent memory — Linux 7.8 High 2026-09-17
CVE-2026-93199 i3c: master: Do not treat master device as a duplicate target — Linux - - 2026-09-17
CVE-2026-93197 memcg: move LRU size accounting on reparenting instead of copying it — Linux - - 2026-09-17
CVE-2026-93198 dm-pcache: validate the persisted dirty_tail chain at load — Linux - - 2026-09-17
CVE-2026-93196 nvdimm: virtio_pmem: refcount requests for token lifetime — Linux 8.4 High 2026-09-17
CVE-2026-93194 drm/rockchip: dw_dp: Release core resources — Linux - - 2026-09-17
CVE-2026-93195 drm/bridge: synopsys: dw-dp: Support unregistering the AUX channel — Linux - - 2026-09-17
CVE-2026-93193 drm/rockchip: analogix_dp: Fix OF node reference leak via auto cleanup — Linux - - 2026-09-17

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.