Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-93039 ASoC: meson: Keep link pointers valid on realloc failure — Linux 7.4 High 2026-09-17
CVE-2026-93040 dmaengine: dw-edma: Serialize channel state checks — Linux - - 2026-09-17
CVE-2026-93038 iio: dac: ad5686: missing NULL check on match data — Linux - - 2026-09-17
CVE-2026-93037 RDMA/hfi1: Propagate sdma_txinit_ahg() errors — Linux 7.8 High 2026-09-17
CVE-2026-92525 RDMA/rxe: Validate num_sge/cur_sge before indexing wqe->dma.sge[] — Linux 7.1 High 2026-09-17
CVE-2026-92524 irqchip/gic-v3-its: Prevent leak in its_vpe_irq_domain_alloc() — Linux - - 2026-09-17
CVE-2026-92522 ACPI: processor: validate MADT IOAPIC entry bounds — Linux 7.3 High 2026-09-17
CVE-2026-92523 RDMA/nldev: validate dynamic counter attribute length — Linux - - 2026-09-17
CVE-2026-92521 ACPI: PCI: Clear driver_data on all paths that free the acpi_pci_root — Linux - - 2026-09-17
CVE-2026-92519 riscv, bpf: Fix memory leak in bpf_jit_free — Linux - - 2026-09-17
CVE-2026-92520 bpf: Zero queue and stack outputs on lock failure — Linux - - 2026-09-17
CVE-2026-92518 riscv, bpf: Fix kernel stack corruption in tailcall with CFI — Linux 7.8 High 2026-09-17
CVE-2026-92516 bpf: Fix offset warn check for bpf_res_spin_lock — Linux - - 2026-09-17
CVE-2026-92517 bpf, riscv: Fix extable handling for arena load_acquire — Linux - - 2026-09-17
CVE-2026-92515 bpf: Preserve unique-field state across nested structs — Linux - - 2026-09-17
CVE-2026-92514 RDMA/erdma: Fix CEQ tasklet use-after-free on removal — Linux - - 2026-09-17
CVE-2026-92513 RDMA/mana_ib: drain QP references after partial table insertion — Linux - - 2026-09-17
CVE-2026-92512 RDMA/core: Fix use after free in ib_query_qp() — Linux - - 2026-09-17
CVE-2026-92511 RDMA/core: Fix potential use after free in ib_destroy_cq_user() — Linux 7.8 High 2026-09-17
CVE-2026-92510 RDMA/core: Fix potential use after free in ib_destroy_srq_user() — Linux 7.8 High 2026-09-17
CVE-2026-92509 RDMA/core: Fix potential use after free in counter_release() — Linux - - 2026-09-17
CVE-2026-92508 RDMA/core: Fix potential use after free in ib_free_cq() — Linux 7.8 High 2026-09-17
CVE-2026-92507 RDMA/core: Fix potential use after free in ib_dealloc_pd_user() — Linux 7.8 High 2026-09-17
CVE-2026-92506 firmware: arm_scmi: Fix requested device removal race — Linux - - 2026-09-17
CVE-2026-92504 thermal: intel: int3400: clean up ODVP on probe failures — Linux 7.0 High 2026-09-17
CVE-2026-92505 iommu/amd: Fix undefined behavior in devid_write debugfs function — Linux - - 2026-09-17
CVE-2026-92503 ext4: fix ABBA deadlock in ext4_xattr_inode_cache_find() — Linux - - 2026-09-17
CVE-2026-92501 ext4: drain in-flight DIO before buffered write fallback — Linux - - 2026-09-17
CVE-2026-92502 ext4: clear stale xarray tags on folios skipped during writeback — Linux - - 2026-09-17
CVE-2026-92500 ext4: use fsdata to track inline data write state and fix race — Linux - - 2026-09-17

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.