Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-90369 wifi: mt76: fix out-of-bounds access in mmio copy helpers — Linux - - 2026-09-17
CVE-2026-90368 wifi: mt76: mt7915: unwind state on add_interface failure — Linux - - 2026-09-17
CVE-2026-90367 wifi: mt76: mt7996: hold dev->mt76.mutex while disabling tx worker in SER — Linux 8.8 High 2026-09-17
CVE-2026-90366 wifi: mt76: mt7996: reserve space for the CSA-abort countdown TLV — Linux - - 2026-09-17
CVE-2026-90365 wifi: mt76: cancel reset and rc work on device unregister — Linux - - 2026-09-17
CVE-2026-90363 drm/msm: don't tear down KMS twice when KMS init fails — Linux - - 2026-09-17
CVE-2026-90364 ACPI: processor: Unregister cpufreq notifier on init failure — Linux - - 2026-09-17
CVE-2026-90362 drm/msm/dsi: Drop dev_pm_opp_set_rate(0) — Linux - - 2026-09-17
CVE-2026-90361 wifi: ath11k: fix leak in ath11k_service_ready_ext_event() — Linux - - 2026-09-17
CVE-2026-90360 regulator: core: use system_freezable_wq for init complete work — Linux - - 2026-09-17
CVE-2026-90358 bpf, x86: Fix trampoline stack size for 128-bit arguments — Linux 7.8 High 2026-09-17
CVE-2026-90359 bpf: Reject >8 byte return values on return-reading trampoline paths — Linux - - 2026-09-17
CVE-2026-90357 wifi: mt76: mt7915: unlink TWT flow if the MCU rejects the agreement — Linux 8.8 High 2026-09-17
CVE-2026-90355 wifi: mt76: mt7996: clear stale link state on full reset — Linux - - 2026-09-17
CVE-2026-90356 wifi: mt76: mt7996: free vif links after clearing wcid entries on full reset — Linux - - 2026-09-17
CVE-2026-90354 wifi: mt76: mt7915: fix double hif2 init on the non-WED path — Linux - - 2026-09-17
CVE-2026-90353 wifi: mt76: mt7915: fix ext PHY use-after-free on register error path — Linux 7.0 High 2026-09-17
CVE-2026-90352 wifi: mt76: mt7915: release hif2 reference on probe IRQ failure — Linux - - 2026-09-17
CVE-2026-90351 wifi: mt76: mt7996: do not attach hif2 WED when the main WED attach failed — Linux - - 2026-09-17
CVE-2026-90350 wifi: mt76: reject out-of-range link ids in mt76_vif_link() — Linux - - 2026-09-17
CVE-2026-90349 wifi: mt76: mt7996: fix out-of-bounds link array access in mt7996_tx() — Linux - - 2026-09-17
CVE-2026-90348 wifi: ath10k: snoc: use memcpy_fromio() for MSA ramdump — Linux - - 2026-09-17
CVE-2026-90346 wifi: nl80211: clean up color-change beacon data on errors — Linux - - 2026-09-17
CVE-2026-90347 arm64: ptrace: Keep 'orig_x0' in-sync with x0 on syscall entry — Linux 8.4 High 2026-09-17
CVE-2026-90345 wifi: brcmfmac: fix P2P action frame handling without device vif — Linux - - 2026-09-17
CVE-2026-90344 wifi: mac80211: disconnect on CSA to channel 0 — Linux - - 2026-09-17
CVE-2026-90343 wifi: cfg80211: stop PMSR before P2P and NAN teardown — Linux 7.8 High 2026-09-17
CVE-2026-90342 bpf: Fix mmap_lock deadlock on arena lock failure — Linux - - 2026-09-17
CVE-2026-90340 pinctrl: generic: free maps on pinctrl_generic_to_map() failure — Linux - - 2026-09-17
CVE-2026-90341 firmware: coreboot: Validate table bounds — Linux 7.7 High 2026-09-17

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.