Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-53255 Bluetooth: MGMT: validate advertising TLV before type checks — Linux - - 2026-06-25
CVE-2026-53254 Bluetooth: RFCOMM: validate skb length in MCC handlers — Linux 8.1 High 2026-06-25
CVE-2026-53253 Bluetooth: bnep: reject short frames before parsing — Linux 7.1 High 2026-06-25
CVE-2026-53252 Bluetooth: fix memory leak in error path of hci_alloc_dev() — Linux - - 2026-06-25
CVE-2026-53250 xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() — Linux 7.8 High 2026-06-25
CVE-2026-53251 Bluetooth: ISO: Fix not releasing hdev reference on iso_conn_big_sync — Linux - - 2026-06-25
CVE-2026-53249 ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options — Linux - - 2026-06-25
CVE-2026-53248 net: airoha: Fix use-after-free in metadata dst teardown — Linux 8.8 High 2026-06-25
CVE-2026-53247 net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown — Linux 9.8 Critical 2026-06-25
CVE-2026-53246 sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing — Linux 9.8 Critical 2026-06-25
CVE-2026-53245 net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr — Linux - - 2026-06-25
CVE-2026-53243 rseq: Fix using an uninitialized stack variable in rseq_exit_user_update() — Linux - - 2026-06-25
CVE-2026-53244 VFS: fix possible failure to unlock in nfsd4_create_file() — Linux 7.5 High 2026-06-25
CVE-2026-53242 ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams — Linux 7.8 High 2026-06-25
CVE-2026-53241 ALSA: seq: dummy: fix UMP event stack overread — Linux - - 2026-06-25
CVE-2026-53240 xfrm: iptfs: fix use-after-free on first_skb in __input_process_payload — Linux 8.8 High 2026-06-25
CVE-2026-53239 xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() — Linux 7.8 High 2026-06-25
CVE-2026-53237 gpio: mvebu: fix NULL pointer dereference in suspend/resume — Linux - - 2026-06-25
CVE-2026-53238 netlabel: validate unlabeled address and mask attribute lengths — Linux - - 2026-06-25
CVE-2026-53236 tcp: restrict SO_ATTACH_FILTER to priv users — Linux - - 2026-06-25
CVE-2026-53235 net: add pskb_may_pull() to skb_gro_receive_list() — Linux 7.5 High 2026-06-25
CVE-2026-53234 net: ibm: emac: Fix use-after-free during device removal — Linux - - 2026-06-25
CVE-2026-53233 netdev: fix double-free in netdev_nl_bind_rx_doit() — Linux - - 2026-06-25
CVE-2026-53232 net: phy: clean the sfp upstream if phy probing fails — Linux 8.8 High 2026-06-25
CVE-2026-53231 net: phy: don't try to setup PHY-driven SFP cages when using genphy — Linux - - 2026-06-25
CVE-2026-53230 net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list — Linux 8.7 High 2026-06-25
CVE-2026-53229 net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure — Linux 7.5 High 2026-06-25
CVE-2026-53228 ipv6: sit: reload inner IPv6 header after GSO offloads — Linux 9.8 Critical 2026-06-25
CVE-2026-53226 gpio: rockchip: fix generic IRQ chip leak on remove — Linux - - 2026-06-25
CVE-2026-53227 net: openvswitch: fix possible kfree_skb of ERR_PTR — Linux - - 2026-06-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.