Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-64287 KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU — Linux 8.2 High 2026-07-25
CVE-2026-64286 KVM: arm64: Clear __hyp_running_vcpu when flushing the pKVM hyp vCPU — Linux 8.2 High 2026-07-25
CVE-2026-64285 KVM: SEV: Pin source page for write when adding CPUID data for SNP guest — Linux - - 2026-07-25
CVE-2026-64284 KVM: x86: Ensure vendor's exit handler runs before fastpath userspace exits — Linux 7.1 High 2026-07-25
CVE-2026-64283 KVM: guest_memfd: Treat memslot binding offset+size as unsigned values — Linux - - 2026-07-25
CVE-2026-64282 KVM: arm64: Don't leak PFN when kvm_translate_vncr() races MMU notifier — Linux - - 2026-07-25
CVE-2026-64281 svcrdma: wake sq waiters when the transport closes — Linux 7.5 High 2026-07-25
CVE-2026-64280 fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region() — Linux 8.8 High 2026-07-25
CVE-2026-64279 i2c: core: fix adapter deregistration race — Linux 7.8 High 2026-07-25
CVE-2026-64278 i2c: imx-lpi2c: mark I2C adapter when hardware is powered down — Linux - - 2026-07-25
CVE-2026-64277 Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count — Linux 7.8 High 2026-07-25
CVE-2026-64276 Input: synaptics-rmi4 - bound the F30 keymap to the GPIO/LED count — Linux 7.8 High 2026-07-25
CVE-2026-64275 Input: elan_i2c - prevent division by zero and arithmetic underflow — Linux - - 2026-07-25
CVE-2026-64274 Input: goodix - clamp the device-reported contact count — Linux - - 2026-07-25
CVE-2026-64272 Input: mms114 - fix touch indexing for MMS134S and MMS136 — Linux - - 2026-07-25
CVE-2026-64273 Input: iforce - bound the device-reported force-feedback effect index — Linux - - 2026-07-25
CVE-2026-64271 Input: touchwin - reset the packet index on every complete packet — Linux - - 2026-07-25
CVE-2026-64270 Input: mms114 - reject an oversized device packet size — Linux - - 2026-07-25
CVE-2026-64269 RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg — Linux 9.1 Critical 2026-07-25
CVE-2026-64268 RDMA/siw: bound Read Response placement to the RREAD length — Linux 9.8 Critical 2026-07-25
CVE-2026-64267 fuse: avoid 32-bit prune notification count wrap — Linux - - 2026-07-25
CVE-2026-64266 fuse: re-lock request before returning from fuse_ref_folio() — Linux 7.8 High 2026-07-25
CVE-2026-64265 fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req — Linux 7.8 High 2026-07-25
CVE-2026-64264 fuse-uring: fix EFAULT clobber in fuse_uring_commit — Linux - - 2026-07-25
CVE-2026-64263 fuse-uring: fix moving cancelled entry to ent_in_userspace list — Linux - - 2026-07-25
CVE-2026-64262 fuse-uring: end fuse_req on io-uring cancel task work — Linux - - 2026-07-25
CVE-2026-64261 fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues — Linux 7.8 High 2026-07-25
CVE-2026-64259 fuse-uring: make a fuse_req on SQE commit only findable after memcpy — Linux 7.8 High 2026-07-25
CVE-2026-64260 fuse-uring: Avoid queue->stopped races and set/read that value under lock — Linux 7.8 High 2026-07-25
CVE-2026-64258 fuse-uring: remove request-less entries from ent_w_req_queue to fix NULL deref — Linux - - 2026-07-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.