Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-72248 netfilter: flowtable: support IPIP tunnel with direct xmit — Linux 9.8 Critical 2026-08-15
CVE-2026-72247 netfilter: nf_conncount: fix zone comparison in tuple dedup — Linux 7.5 High 2026-08-15
CVE-2026-72245 gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path — Linux - - 2026-08-15
CVE-2026-72244 gpu/buddy: bail out of try_harder when alignment cannot be honoured — Linux 7.8 High 2026-08-15
CVE-2026-72243 selinux: check connect-related permissions on TCP Fast Open — Linux 8.4 High 2026-08-15
CVE-2026-72241 leds: uleds: Fix potential buffer overread — Linux - - 2026-08-15
CVE-2026-72242 selinux: avoid sk_socket dereference in selinux_sctp_bind_connect() — Linux 7.5 High 2026-08-15
CVE-2026-72240 mfd: sm501: Fix reference leak on failed device registration — Linux - - 2026-08-15
CVE-2026-72239 x86/virt/sev: Revert "Drop WBINVD before setting MSR_AMD64_SYSCFG_SNP_EN" — Linux 9.3 Critical 2026-08-15
CVE-2026-72238 x86/boot: Validate console=uart8250 baud rate to fix early boot hang — Linux - - 2026-08-15
CVE-2026-72237 perf/x86/amd/brs: Fix kernel address leakage — Linux - - 2026-08-15
CVE-2026-72236 s390/perf_cpum_cf: Add missing array_index_nospec() to __hw_perf_event_init() — Linux - - 2026-08-15
CVE-2026-72235 batman-adv: retrieve ethhdr after potential skb realloc on RX — Linux 8.8 High 2026-08-15
CVE-2026-72234 batman-adv: access unicast_ttvn skb->data only after skb realloc — Linux 9.8 Critical 2026-08-15
CVE-2026-72233 batman-adv: bla: reacquire gw address after skb realloc — Linux 8.8 High 2026-08-15
CVE-2026-72232 batman-adv: ensure minimal ethernet header on TX — Linux 7.8 High 2026-08-15
CVE-2026-72231 batman-adv: tt: avoid request storms during pending request — Linux 7.5 High 2026-08-15
CVE-2026-72229 batman-adv: clean untagged VLAN on netdev registration failure — Linux - - 2026-08-15
CVE-2026-72230 batman-adv: frag: free unfragmentable packet — Linux - - 2026-08-15
CVE-2026-72228 batman-adv: frag: fix primary_if leak on failed linearization — Linux - - 2026-08-15
CVE-2026-72227 batman-adv: mcast: avoid OOB read of num_dests header — Linux 8.1 High 2026-08-15
CVE-2026-72226 batman-adv: tt: prevent TVLV OOB check overflow — Linux 9.8 Critical 2026-08-15
CVE-2026-72225 jbd2: fix integer underflow in jbd2_journal_initialize_fast_commit() — Linux 7.8 High 2026-08-15
CVE-2026-72224 nvdimm/btt: Free arenas on btt_init() error paths — Linux - - 2026-08-15
CVE-2026-72223 nvdimm/btt: Free arena sub-allocations on discover_arenas() error path — Linux - - 2026-08-15
CVE-2026-72222 sunrpc: pin svc_xprt across the asynchronous TLS handshake callback — Linux 9.8 Critical 2026-08-15
CVE-2026-72221 sunrpc: wait for in-flight TLS handshake callback when cancel loses race — Linux 9.8 Critical 2026-08-15
CVE-2026-72220 sunrpc: harden rq_procinfo lifecycle to prevent double-free — Linux 9.8 Critical 2026-08-15
CVE-2026-72219 lockd: Plug nlm_file leak when nlm_do_fopen() fails — Linux - - 2026-08-15
CVE-2026-72218 lockd: Plug nlm_file refcount leak on cached nlm_do_fopen() failure — Linux - - 2026-08-15

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.