Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-72157 net: thunderbolt: Fix frags[] overflow by bounding frame_count — Linux 8.8 High 2026-08-15
CVE-2026-72156 fpga: microchip-spi: fix zero header_size OOB read in mpf_ops_parse_header() — Linux - - 2026-08-15
CVE-2026-72155 mtd: spi-nor: swp: Improve locking user experience — Linux - - 2026-08-15
CVE-2026-72154 openrisc: Fix jump_label smp syncing — Linux 7.8 High 2026-08-15
CVE-2026-72153 irqchip/crossbar: Use correct index in crossbar_domain_free() — Linux - - 2026-08-15
CVE-2026-72152 tpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat() — Linux - - 2026-08-15
CVE-2026-72151 tpm: tpm2-sessions: wait for async KPP completion in tpm_buf_append_salt — Linux 8.4 High 2026-08-15
CVE-2026-72149 dmaengine: tegra: Fix burst size calculation — Linux 7.5 High 2026-08-15
CVE-2026-72150 sunrpc: fix uninitialized xprt_create_args structure — Linux - - 2026-08-15
CVE-2026-72148 dmaengine: dw-edma: Add spinlock to protect DONE_INT_MASK and ABORT_INT_MASK — Linux 8.8 High 2026-08-15
CVE-2026-72147 dmaengine: dw-edma-pcie: Reject devices without driver data — Linux - - 2026-08-15
CVE-2026-72145 platform/x86/intel/tpmi: use cleanup helpers in mem_write() — Linux - - 2026-08-15
CVE-2026-72146 dmaengine: sh: rz-dmac: Move interrupt request after everything is set up — Linux 8.4 High 2026-08-15
CVE-2026-72144 platform/x86: dell-laptop: fix missing cleanups in init error path — Linux 7.8 High 2026-08-15
CVE-2026-72143 platform/x86: ISST: Restore SST-PP control to all domains — Linux 7.1 High 2026-08-15
CVE-2026-72142 i2c: imx: fix locked bus on SMBus block-read of 0 (atomic) — Linux - - 2026-08-15
CVE-2026-72141 i2c: imx: fix locked bus on SMBus block-read of 0 (IRQ) — Linux 7.5 High 2026-08-15
CVE-2026-72140 i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource() — Linux - - 2026-08-15
CVE-2026-72138 xen/gntdev: fix error handling in ioctl — Linux - - 2026-08-15
CVE-2026-72139 tcp: defer md5sig_info kfree past RCU grace period in tcp_connect — Linux 9.8 Critical 2026-08-15
CVE-2026-72137 xfrm: nat_keepalive: avoid double free on send error — Linux 9.8 Critical 2026-08-15
CVE-2026-72136 xfrm: xfrm_interface: require CAP_NET_ADMIN in the device netns for changelink — Linux 8.8 High 2026-08-15
CVE-2026-72135 tpm: Make the TPM character devices non-seekable — Linux 7.8 High 2026-08-15
CVE-2026-72134 spi: imx: reconfigure for PIO when DMA cannot be started — Linux 7.8 High 2026-08-15
CVE-2026-72133 spi: uniphier: Fix completion initialization order before devm_request_irq() — Linux 8.4 High 2026-08-15
CVE-2026-72132 NFS: Charge unstable writes by request size, not folio size — Linux - - 2026-08-15
CVE-2026-72131 nvme-apple: Prevent shared tags across queues on Apple A11 — Linux - - 2026-08-15
CVE-2026-72130 nvmet-auth: reject short AUTH_RECEIVE buffers — Linux 9.8 Critical 2026-08-15
CVE-2026-72129 nvmet-rdma: handle inline data with a nonzero offset — Linux 9.8 Critical 2026-08-15
CVE-2026-72128 nvmet: fix refcount leak in nvmet_sq_create() — Linux - - 2026-08-15

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.