Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-90399 wifi: ath12k: fix stride mismatch in mac_phy_caps_parse() — Linux 8.4 High 2026-09-17
CVE-2026-90398 wifi: ath11k: fix stride mismatch in mac_phy_caps_parse() — Linux 8.4 High 2026-09-17
CVE-2026-90397 firmware: qcom: scm: Fix NULL dereference in IRQ handler before __scm is published — Linux - - 2026-09-17
CVE-2026-90395 power: supply: isp1704_charger: cancel work on remove — Linux - - 2026-09-17
CVE-2026-90396 block: fix dio leak on metadata mapping error — Linux - - 2026-09-17
CVE-2026-90394 power: supply: sc2731_charger: cancel work on remove — Linux - - 2026-09-17
CVE-2026-90392 bpf: Fix potential UAF when reading bpf link info — Linux 7.8 High 2026-09-17
CVE-2026-90393 bpf: Fix potential UAF in bpf_netns_link_update_prog — Linux - - 2026-09-17
CVE-2026-90391 lib/test_hmm: fail dmirror_fault() when the mirrored mm is gone — Linux - - 2026-09-17
CVE-2026-90389 md: scope memalloc_noio to allocation critical sections — Linux - - 2026-09-17
CVE-2026-90390 md/bitmap: resume array on backlog_store() error path — Linux - - 2026-09-17
CVE-2026-90388 iommu/dma: Check atomic pool allocation result directly — Linux 7.8 High 2026-09-17
CVE-2026-90386 i3c: dw: avoid shift-out-of-bounds when DAA assigns no devices — Linux - - 2026-09-17
CVE-2026-90387 swiotlb: Preserve allocation virtual address for dynamic pools — Linux 7.8 High 2026-09-17
CVE-2026-90384 iomap: release the folio batch on iomap callback failures — Linux - - 2026-09-17
CVE-2026-90385 md/raid1: create serial pool adding rdev to array with serialize_policy=1 — Linux - - 2026-09-17
CVE-2026-90383 misc: sgi-gru: remove interrupt-context page-table walks — Linux 7.8 High 2026-09-17
CVE-2026-90381 wifi: mt76: fix handling channel context with different bands in mt76_switch_vif_chanctx() — Linux 8.8 High 2026-09-17
CVE-2026-90382 wifi: mt76: mt76x02: do not WARN on invalid rx descriptor length — Linux - - 2026-09-17
CVE-2026-90380 wifi: mt76: mt792x: fix use-after-free in mt76_rx_poll_complete — Linux 8.8 High 2026-09-17
CVE-2026-90378 wifi: mt76: mt792x: Fix memory leak in SDIO TX path — Linux - - 2026-09-17
CVE-2026-90379 wifi: mt76: mt7921: Add PCIe AER handler support to prevent system crash — Linux 8.8 High 2026-09-17
CVE-2026-90377 wifi: mt76: fix RX data queuing of RRO 3.0 — Linux - - 2026-09-17
CVE-2026-90376 wifi: mt76: mt7996: fix MLD ID in MAC TXD and HIF TXP — Linux - - 2026-09-17
CVE-2026-90375 wifi: mt76: fix non-AQL packet accounting for MLO stations — Linux - - 2026-09-17
CVE-2026-90374 wifi: mt76: mt7996: validate RX band_idx before dereferencing phys[] — Linux - - 2026-09-17
CVE-2026-90373 wifi: mt76: mt7915: clear wcid mask under mutex after RCU pointer clear — Linux - - 2026-09-17
CVE-2026-90372 wifi: mt76: mt7915: avoid nss underflow in mt7915_mcu_get_sta_nss — Linux 7.1 High 2026-09-17
CVE-2026-90371 wifi: mt76: fix RXDMAD_C buffer recycling race — Linux 8.8 High 2026-09-17
CVE-2026-90370 wifi: mt76: mt7996: bound TLV walk in mt7996_mcu_get_chip_config — Linux - - 2026-09-17

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.