Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 14783

Browse all 14783 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-74519 pinctrl: devicetree: don't free uninitialized dev_name on error path — Linux 7.8 High2026-08-15
CVE-2026-74517 KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs — Linux 9.3 Critical2026-08-15
CVE-2026-74518 mm/hugetlb: fix list corruption in allocate_file_region_entries() — Linux 7.8 High2026-08-15
CVE-2026-74516 KVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active — Linux 8.2 High2026-08-15
CVE-2026-74515 KVM: s390: pci: Reject adapter interrupt forwarding if already enabled — Linux 8.8 High2026-08-15
CVE-2026-74514 KVM: s390: pci: Fix memory accounting for pinned/unpinned pages — Linux--2026-08-15
CVE-2026-74513 dibs: fix use-after-free of dmb_node in loopback attach/detach/unregister — Linux 7.8 High2026-08-15
CVE-2026-74512 audit: fix potential use-after-free in audit_del_rule() — Linux 7.8 High2026-08-15
CVE-2026-74511 Bluetooth: mgmt: fix pending command UAF in EIR updates — Linux 7.8 High2026-08-15
CVE-2026-74510 Bluetooth: mgmt: fix UAF in pair command cancellation — Linux 7.8 High2026-08-15
CVE-2026-74509 Bluetooth: hci_sync: Fix advertising data UAFs — Linux 8.8 High2026-08-15
CVE-2026-74507 Bluetooth: HIDP: validate numbered report payloads — Linux 7.1 High2026-08-15
CVE-2026-74508 Bluetooth: HIDP: reject frames without a transaction header — Linux 8.8 High2026-08-15
CVE-2026-74506 afs: Fix UAF when sending a message — Linux 7.8 High2026-08-15
CVE-2026-74504 ALSA: seq: Fix division by zero in initialize_timer() — Linux--2026-08-15
CVE-2026-74505 ALSA: 6fire: Fix UAF at error handling during probe — Linux--2026-08-15
CVE-2026-74502 ALSA: ump: fix double free of out_cvts on rawmidi error — Linux--2026-08-15
CVE-2026-74503 ALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes — Linux 7.8 High2026-08-15
CVE-2026-74501 ALSA: usb-audio: fix use-after-free in ump_to_endpoint() — Linux--2026-08-15
CVE-2026-74500 ALSA: usb-audio: fix stack info leak in RME Digiface status — Linux--2026-08-15
CVE-2026-74499 ALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output() — Linux--2026-08-15
CVE-2026-74498 ALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set — Linux--2026-08-15
CVE-2026-74497 ALSA: usb-audio: Clamp frame size in implicit-feedback mode — Linux 8.4 High2026-08-15
CVE-2026-74496 fou: Fix use-after-free in fou_create() — Linux 7.8 High2026-08-15
CVE-2026-74495 igbvf: Fix leak in TX DMA error cleanup — Linux 9.8 Critical2026-08-15
CVE-2026-74494 ksmbd: reject repeated SMB2 NEGOTIATE requests — Linux--2026-08-15
CVE-2026-74493 net/smc: fix socket use-after-free during link group termination — Linux 9.8 Critical2026-08-15
CVE-2026-74492 netfilter: ipset: do not update comments from kernel-side hash adds — Linux 8.4 High2026-08-15
CVE-2026-74491 of/address: Fix NULL bus dereference in of_pci_range_parser_one() — Linux--2026-08-15
CVE-2026-74490 tipc: avoid use-after-free in poll trace queue dumps — Linux 8.8 High2026-08-15

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.