Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Linux — Vulnerabilities & Security Advisories 17499

Browse all 17499 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2026-98153 nvme: fix racy access to FDP placement id array — Linux - - 2026-09-25
CVE-2026-98154 nvme-rdma: fix -EIO cleanup order in queue_rq — Linux 7.0 High 2026-09-25
CVE-2026-98152 nvmet-rdma: fix queue leak when connect backlog is exceeded — Linux - - 2026-09-25
CVE-2026-98151 bpf: Fix REG INVARIANTS VIOLATION on speculative pointer arithmetic — Linux - - 2026-09-25
CVE-2026-98150 bpf: Fix BPF_F_CPU validation for sparse CPU IDs — Linux 7.0 High 2026-09-25
CVE-2026-98148 drm/gud: validate GUD_ROTATION_0 is present in supported rotations — Linux - - 2026-09-25
CVE-2026-98149 bpf: Fix percpu map update indexing with sparse CPU IDs — Linux - - 2026-09-25
CVE-2026-98147 printk: Don't WARN on kthread_run failure. — Linux - - 2026-09-25
CVE-2026-98145 accel/amdxdna: reject a command chain that carries no commands — Linux - - 2026-09-25
CVE-2026-98146 accel/amdxdna: Remove __counted_by from struct amdxdna_cmd_chain — Linux - - 2026-09-25
CVE-2026-98144 accel/amdxdna: put the chained BO when its mapping fails — Linux - - 2026-09-25
CVE-2026-98143 accel: ethosu: Don't read the U65 rounding mode as a storage mode — Linux 7.8 High 2026-09-25
CVE-2026-98142 drm/cirrus-qemu: Validate BAR0 size during probe — Linux - - 2026-09-25
CVE-2026-98140 ntfs: fix kmap_local leak in write_mft_record_nolock() error paths — Linux - - 2026-09-25
CVE-2026-98141 ntfs: propagate reparse index insertion failure — Linux - - 2026-09-25
CVE-2026-98139 ntfs: only count successfully cleared runs when freeing clusters — Linux - - 2026-09-25
CVE-2026-98138 ntfs: do not mark the volume clean in sync_fs when errors were recorded — Linux - - 2026-09-25
CVE-2026-98137 ntfs: treat any nonzero dio zero-range return as an error — Linux - - 2026-09-25
CVE-2026-98136 ntfs: bound $AttrDef table walk to the loaded table size — Linux - - 2026-09-25
CVE-2026-98135 ntfs: reject invalid sectors_per_cluster in the boot sector — Linux - - 2026-09-25
CVE-2026-98134 bpf: check_cond_jmp_op(): properly infer if register is null — Linux - - 2026-09-25
CVE-2026-98133 ntfs: leave HasEA flag untouched on setxattr failure — Linux - - 2026-09-25
CVE-2026-98132 bpf: don't downgrade half-dead scalar zero spills to STACK_ZERO — Linux - - 2026-09-25
CVE-2026-98131 net: stmmac: fix dma mapping leak in stmmac_tso_xmit() — Linux - - 2026-09-25
CVE-2026-98129 scsi: mpi3mr: Fix NULL pointer dereference in mpi3mr_sas_port_add() — Linux - - 2026-09-25
CVE-2026-98130 sctp: fix a TOCTOU race in SCTP_CMD_TIMER_START — Linux 8.1 High 2026-09-25
CVE-2026-98128 scsi: mpi3mr: Fix target device refcount leak in mpi3mr_sas_port_add() — Linux - - 2026-09-25
CVE-2026-98126 smb/client: validate new EOF for zero range — Linux - - 2026-09-25
CVE-2026-98127 smb/client: validate new EOF for insert range — Linux - - 2026-09-25
CVE-2026-98124 smb/client: invalidate fscache for fallocate range operations — Linux - - 2026-09-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.