Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-64227 ACPI: driver: Check ACPI_COMPANION() against NULL during probe — Linux - - 2026-07-24
CVE-2026-64226 sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path — Linux 7.8 High 2026-07-24
CVE-2026-64225 octeontx2-af: CGX: add bounds check to cgx_speed_mbps index — Linux - - 2026-07-24
CVE-2026-64224 octeontx2-pf: fix double free in rvu_rep_rsrc_init() — Linux - - 2026-07-24
CVE-2026-64223 wifi: mac80211: consume only present negotiated TTLM maps — Linux 8.1 High 2026-07-24
CVE-2026-64222 octeontx2-pf: avoid double free of pool->stack on AQ init failure — Linux 7.0 High 2026-07-24
CVE-2026-64221 spi: ti-qspi: fix use-after-free after DMA setup failure — Linux 7.8 High 2026-07-24
CVE-2026-64220 device property: set fwnode->secondary to NULL in fwnode_init() — Linux - - 2026-07-24
CVE-2026-64218 batman-adv: bla: fix report_work leak on backbone_gw purge — Linux 7.8 High 2026-07-24
CVE-2026-64219 drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async — Linux 7.0 High 2026-07-24
CVE-2026-64216 netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages() — Linux 9.8 Critical 2026-07-24
CVE-2026-64217 netfs: Fix overrun check in netfs_extract_user_iter() — Linux 7.8 High 2026-07-24
CVE-2026-64214 powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_work_raise() — Linux - - 2026-07-24
CVE-2026-64215 drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send_perf_table — Linux - - 2026-07-24
CVE-2026-64213 hwmon: (lm90) Add lock protection to lm90_alert — Linux - - 2026-07-24
CVE-2026-64212 wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it — Linux - - 2026-07-24
CVE-2026-64211 srcu: Don't queue workqueue handlers to never-online CPUs — Linux - - 2026-07-24
CVE-2026-64210 net/mlx5e: xsk: Fix unlocked writing to ICOSQ — Linux 7.5 High 2026-07-24
CVE-2026-64209 phy: qcom: qmp-usbc: Fix out-of-bounds array access in dp swing config — Linux - - 2026-07-24
CVE-2026-64208 crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks — Linux 7.5 High 2026-07-24
CVE-2026-64600 xfs: resample the data fork mapping after cycling ILOCK — Linux 7.8 High 2026-07-23
CVE-2026-64206 Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock — Linux 8.8 High 2026-07-20
CVE-2026-64207 net/sched: dualpi2: fix GSO backlog accounting — Linux - - 2026-07-20
CVE-2026-64205 i2c: i801: fix hardware state machine corruption in error path — Linux - - 2026-07-20
CVE-2026-64192 bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized — Linux - - 2026-07-20
CVE-2026-64191 i2c: stub: Reject I2C block transfers with invalid length — Linux 7.8 High 2026-07-20
CVE-2026-64190 net: team: fix NULL pointer dereference in team_xmit during mode change — Linux - - 2026-07-20
CVE-2026-64189 netfilter: ipset: fix race between dump and ip_set_list resize — Linux 7.8 High 2026-07-20
CVE-2026-64187 xfs: fail recovery on a committed log item with no regions — Linux - - 2026-07-20
CVE-2026-64188 net: qualcomm: rmnet: fix endpoint use-after-free in rmnet_dellink() — Linux 7.8 High 2026-07-20

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.