Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-68363 wifi: ath9k: hif_usb: don't dereference hif_dev after re-arming firmware request — Linux - - 2026-08-10
CVE-2026-68362 wifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin — Linux - - 2026-08-10
CVE-2026-68361 hwmon: (corsair-psu) Stop device IO before calling hid_hw_stop — Linux - - 2026-08-10
CVE-2026-68360 hwmon: (corsair-cpro) Stop device IO before calling hid_hw_stop — Linux - - 2026-08-10
CVE-2026-68359 hwmon: (nzxt-smart2) Stop device IO before calling hid_hw_stop — Linux - - 2026-08-10
CVE-2026-68358 hwmon: (nzxt-kraken3) Stop device IO before calling hid_hw_stop — Linux - - 2026-08-10
CVE-2026-68357 watchdog: pretimeout: Fix UAF in watchdog_unregister_governor() — Linux - - 2026-08-10
CVE-2026-68356 watchdog: airoha: Prevent division by zero when clock frequency is zero — Linux - - 2026-08-10
CVE-2026-68355 wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get() — Linux - - 2026-08-10
CVE-2026-68354 firewire: net: Fix fragmented datagram reassembly — Linux 8.8 High 2026-08-10
CVE-2026-68353 wifi: ath6kl: fix OOB read from firmware num_msg in TX complete handler — Linux 8.1 High 2026-08-10
CVE-2026-68352 wifi: ath6kl: fix OOB read from firmware IE lengths in connect event — Linux 8.3 High 2026-08-10
CVE-2026-68351 wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read — Linux - - 2026-08-10
CVE-2026-68350 wifi: carl9170: fix OOB read from off-by-two in TX status handler — Linux - - 2026-08-10
CVE-2026-68349 wifi: carl9170: fix buffer overflow in rx_stream failover path — Linux - - 2026-08-10
CVE-2026-68348 ASoC: tas2781: bound firmware description string parsing — Linux 7.1 High 2026-08-10
CVE-2026-68347 iommu/amd: Fix IRQ unsafe locking in gdom allocation — Linux - - 2026-08-10
CVE-2026-68346 ALSA: hda: cs35l41: validate and free ACPI mute object — Linux - - 2026-08-10
CVE-2026-68345 arm_mpam: guard MBWU state before adding it to garbage — Linux - - 2026-08-10
CVE-2026-68344 usb: atm: ueagle-atm: reject descriptors that confuse probe and disconnect — Linux - - 2026-08-10
CVE-2026-68343 smb: client: validate DFS referral PathConsumed — Linux 9.1 Critical 2026-08-10
CVE-2026-68342 ovpn: avoid putting unrelated P2P peer on socket release — Linux - - 2026-08-10
CVE-2026-68341 ovpn: fix use after free in unlock_ovpn() — Linux 8.8 High 2026-08-10
CVE-2026-68340 hwmon: occ: validate poll response sensor blocks — Linux 7.7 High 2026-08-10
CVE-2026-68339 Bluetooth: btusb: validate Realtek vendor event length — Linux - - 2026-08-10
CVE-2026-68338 net/packet: avoid fanout hook re-registration after unregister — Linux 7.8 High 2026-08-10
CVE-2026-68337 bpf: Reject redirect helpers without a bpf_net_context — Linux - - 2026-08-10
CVE-2026-68336 bonding: fix devconf_all NULL dereference when IPv6 is disabled — Linux - - 2026-08-10
CVE-2026-68335 rds: drop incoming messages that cross network namespace boundaries — Linux 7.8 High 2026-08-10
CVE-2026-68334 rxrpc: fix io_thread race in rxrpc_wake_up_io_thread() — Linux - - 2026-08-10

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.