Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-98293 Bluetooth: ISO: Fix parent socket leak in iso_conn_ready() — Linux - - 2026-10-06
CVE-2026-98294 Bluetooth: hci_qca: Do not write to the serial port after it is closed — Linux - - 2026-10-06
CVE-2026-98292 Bluetooth: btmtksdio, btmtkuart: validate WMT event length before struct access — Linux - - 2026-10-06
CVE-2026-98291 Bluetooth: btintel_pcie: fix off-by-one bounds check in RX submit — Linux - - 2026-10-06
CVE-2026-98289 af_unix: Unify scc_index when finalising SCC in __unix_walk_scc(). — Linux - - 2026-10-06
CVE-2026-98290 Bluetooth: RFCOMM: avoid socket lock inversion in listener cleanup — Linux 7.5 High 2026-10-06
CVE-2026-98288 net: stmmac: fix TSO header length truncation — Linux - - 2026-10-06
CVE-2026-98287 pppoatm: ensure a writable skb header and linear data — Linux - - 2026-10-06
CVE-2026-98286 drop_monitor: use timer_shutdown_sync() to prevent timer rearming during teardown — Linux - - 2026-10-06
CVE-2026-98285 net: bridge: vlan: fix bugs caused by switchdev deletion errors — Linux - - 2026-10-06
CVE-2026-98284 netlink: do not free nlk->groups while lockless readers can use it — Linux - - 2026-10-06
CVE-2026-98283 KVM: PPC: Book3S HV: fix use-after-free in kvmhv_emulate_tlbie_all_lpid() — Linux 8.8 High 2026-10-06
CVE-2026-98282 powerpc/iommu: Fix the overflow validation in iommu_tce_check_ioba — Linux 8.8 High 2026-10-06
CVE-2026-98281 futex: Also allocate private hash on vfork() — Linux 7.8 High 2026-10-06
CVE-2026-98280 drm/xe/i2c: Disable IRQ on unbind — Linux - - 2026-10-06
CVE-2026-98279 btrfs: handle lack of space when cleaning up verity items — Linux - - 2026-10-06
CVE-2026-98278 net: remove WARN_ON_ONCE() from the dev_fill_forward_path() loop check — Linux - - 2026-10-06
CVE-2026-98277 eth: fbnic: ring the doorbell if a burst ends in a drop — Linux - - 2026-10-06
CVE-2026-98276 net: lock the socket in sock_gettstamp() — Linux 7.8 High 2026-10-06
CVE-2026-98275 net: ethernet: cortina: Ack RX overrun interrupt correctly — Linux - - 2026-10-06
CVE-2026-98273 x86/kprobes: Fix crash when probing CS CALL instructions — Linux - - 2026-10-06
CVE-2026-98274 net: psp: avoid conflicts with skb->decrypted and sk_validate_xmit_skb() — Linux - - 2026-10-06
CVE-2026-98272 net: mvpp2: prevent buffer overflow in page_pool allocation — Linux - - 2026-10-06
CVE-2026-98270 drm/amdgpu: check ras and obj before dereference — Linux - - 2026-10-06
CVE-2026-98271 net: skbuff: do not leave stale header offsets after pskb_carve() — Linux - - 2026-10-06
CVE-2026-98269 btrfs: abort transaction on failure to update inode for hole punching and reflinking — Linux - - 2026-10-06
CVE-2026-98268 perf: Fix null pointer access in is_include_guest_event() — Linux - - 2026-10-06
CVE-2026-98267 9p: Fix v9fs_issue_write() to update i_size and remote_i_size — Linux - - 2026-10-06
CVE-2026-98266 ALSA: core: Fix potential UAF after asynchronous card release — Linux - - 2026-10-06
CVE-2026-98265 ALSA: usb-audio: Clamp implicit feedback packet count to URB capacity — Linux - - 2026-10-06

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.