Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-64407 Bluetooth: btnxpuart: Fix out-of-bounds firmware read in nxp_recv_fw_req_v3() — Linux - - 2026-07-25
CVE-2026-64406 Bluetooth: fix UAF in bt_accept_dequeue() — Linux 8.0 High 2026-07-25
CVE-2026-64405 Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() — Linux - - 2026-07-25
CVE-2026-64404 Bluetooth: ISO: avoid NULL deref of conn in iso_conn_big_sync() — Linux - - 2026-07-25
CVE-2026-64403 Bluetooth: L2CAP: validate option length before reading conf opt value — Linux 7.1 High 2026-07-25
CVE-2026-64402 coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer() — Linux 7.8 High 2026-07-25
CVE-2026-64401 smb: client: resolve SWN tcon from live registrations — Linux 7.8 High 2026-07-25
CVE-2026-64400 ksmbd: prevent path traversal bypass by restricting caseless retry — Linux 8.6 High 2026-07-25
CVE-2026-64399 ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE — Linux 9.8 Critical 2026-07-25
CVE-2026-64397 ksmbd: serialize QUERY_DIRECTORY requests per file — Linux 9.8 Critical 2026-07-25
CVE-2026-64398 ksmbd: add a permission check for FSCTL_SET_ZERO_DATA — Linux 8.1 High 2026-07-25
CVE-2026-64396 ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellation — Linux 8.8 High 2026-07-25
CVE-2026-64395 ksmbd: require source read access for duplicate extents — Linux 7.5 High 2026-07-25
CVE-2026-64394 ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY — Linux 8.8 High 2026-07-25
CVE-2026-64392 ksmbd: use opener credentials for delete-on-close — Linux 9.1 Critical 2026-07-25
CVE-2026-64393 ksmbd: run set info with opener credentials — Linux 9.1 Critical 2026-07-25
CVE-2026-64391 ksmbd: use opener credentials for ADS I/O — Linux 9.8 Critical 2026-07-25
CVE-2026-64389 ksmbd: validate NTLMv2 response before updating session key — Linux 8.2 High 2026-07-25
CVE-2026-64390 ksmbd: track the connection owning a byte-range lock — Linux 8.8 High 2026-07-25
CVE-2026-64388 smb/client: fix chown/chgrp with SMB3 POSIX Extensions — Linux 7.8 High 2026-07-25
CVE-2026-64387 smb: client: fix query directory replay double-free — Linux 9.8 Critical 2026-07-25
CVE-2026-64386 smb: client: fix query_info() replay double-free — Linux 9.8 Critical 2026-07-25
CVE-2026-64385 smb: client: fix double-free in SMB2_ioctl() replay — Linux 9.8 Critical 2026-07-25
CVE-2026-64383 smb: client: fix double-free in SMB2_flush() replay — Linux 9.8 Critical 2026-07-25
CVE-2026-64384 smb: client: fix change notify replay double-free — Linux 9.8 Critical 2026-07-25
CVE-2026-64382 smb: client: fix double-free in SMB2_open() replay — Linux 8.8 High 2026-07-25
CVE-2026-64381 smb: client: Fix next buffer leak in receive_encrypted_standard() — Linux - - 2026-07-25
CVE-2026-64379 smb: client: mask server-provided mode to 07777 in modefromsid — Linux 7.1 High 2026-07-25
CVE-2026-64380 smb: client: harden POSIX SID length parsing — Linux 8.2 High 2026-07-25
CVE-2026-64378 writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs() — Linux 7.8 High 2026-07-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.