Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-98264 ALSA: virtio: reset device before deleting virtqueues — Linux - - 2026-10-06
CVE-2026-98263 ASoC: codecs: rt712-sdca-dmic: fix uninitialized stream_config->type — Linux - - 2026-10-06
CVE-2026-98262 ata: libahci: clear PxCLBU and PxFBU for AHCI_HFLAG_32BIT_ONLY — Linux - - 2026-10-06
CVE-2026-98260 exec: Cleanup POSIX timers right after de_thread() — Linux 7.8 High 2026-10-06
CVE-2026-98261 cifs: Fix server use-after-free in cifs_chan_skip_or_disable() — Linux 8.1 High 2026-10-06
CVE-2026-98259 fs/dax: check zero or empty entry before converting xarray entry — Linux - - 2026-10-06
CVE-2026-98258 posix-cpu-timers: Prevent freeing a timer which is queued on the expiry list — Linux 7.8 High 2026-10-06
CVE-2026-98257 rds: ib: use rds_conn_drop() on protocol version mismatch — Linux 7.5 High 2026-10-06
CVE-2026-98256 signal: Prevent exec() race — Linux 7.8 High 2026-10-06
CVE-2026-98254 swiotlb: use the adjusted address for the highmem page lookup — Linux 7.8 High 2026-10-06
CVE-2026-98255 tcp: exclude old ACKs from tcp fast path — Linux - - 2026-10-06
CVE-2026-98253 RDMA/ucma: Serialize join and leave on copy_to_user failure — Linux 7.8 High 2026-10-06
CVE-2026-98252 RDMA/core: fix refcount bug in iwpm_get_nlmsg_request() — Linux 7.0 High 2026-10-06
CVE-2026-98251 openvswitch: avoid reallocating confirmed conntrack labels — Linux 7.8 High 2026-10-06
CVE-2026-98250 nfsd: fix handling of NFSEXP_PNFS in the netlink codepath — Linux - - 2026-10-06
CVE-2026-98248 arm64: percpu: Fix LSE operations on {8,16}-bit types — Linux - - 2026-10-06
CVE-2026-98249 arm64: hibernate: pass HVC_SET_VECTORS args to the resume hvc — Linux - - 2026-10-06
CVE-2026-98247 Bluetooth: hci_codec: validate vendor codec count length — Linux - - 2026-10-06
CVE-2026-98245 btrfs: take commit root semaphore when iterating in mark_block_group_to_copy() — Linux - - 2026-10-06
CVE-2026-98246 Bluetooth: hci_sync: Serialize local codec list cleanup — Linux - - 2026-10-06
CVE-2026-98244 btrfs: clear free space tree creation state on rebuild failure — Linux - - 2026-10-06
CVE-2026-98242 dma-buf: Fix silent overflow for phys vec to sgt — Linux - - 2026-10-06
CVE-2026-98243 dma-buf/dma-fence: fix checking signaling bit for timeline and driver name v3 — Linux 7.1 High 2026-10-06
CVE-2026-98241 ipv6: xfrm: use full sockets in local error paths — Linux 7.8 High 2026-10-06
CVE-2026-98239 net: lan743x: fix RX checksum use-after-free — Linux 8.1 High 2026-10-06
CVE-2026-98240 net: ip_tunnel: initialize `options_len` before referencing options — Linux - - 2026-10-06
CVE-2026-98238 net: wwan: t7xx: validate the netif index in t7xx_ccmni_recv_skb() — Linux - - 2026-10-06
CVE-2026-98237 net: wwan: mhi_wwan_mbim: guard against a cyclic NDP chain — Linux - - 2026-10-06
CVE-2026-98236 net: wwan: mhi_wwan_mbim: check skb_copy_bits() return value — Linux - - 2026-10-06
CVE-2026-98235 net/sched: act_api: release tail references on DELACTION failure — Linux - - 2026-10-06

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.