Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 14783

Browse all 14783 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-74460 can: ems_usb: validate CPC message lengths — Linux--2026-08-15
CVE-2026-74458 can: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents — Linux--2026-08-15
CVE-2026-74456 can: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error — Linux 7.8 High2026-08-15
CVE-2026-74457 can: peak_usb: add bounds check for USB channel index — Linux--2026-08-15
CVE-2026-74454 drm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size — Linux 7.8 High2026-08-15
CVE-2026-74455 can: peak_usb: validate uCAN receive record lengths — Linux--2026-08-15
CVE-2026-74453 drm/vc4: Zero the tile state data array before each BIN job — Linux 7.8 High2026-08-15
CVE-2026-74451 drm/panthor: validate firmware interface structure sizes — Linux 7.8 High2026-08-15
CVE-2026-74452 drm/panthor: reject firmware sections with oversized data — Linux 7.8 High2026-08-15
CVE-2026-74450 drm/amd/pm: fix pptable use-after-free — Linux 7.8 High2026-08-15
CVE-2026-74449 drm/amd/display: Fix divide-by-zero in calculate_mcache_setting on zero viewport — Linux 7.8 High2026-08-15
CVE-2026-74448 drm/amdkfd: fix QID bit leak in pqm_create_queue() — Linux--2026-08-15
CVE-2026-74447 drm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment — Linux 7.8 High2026-08-15
CVE-2026-74446 drm/amdkfd: hold event_mutex while checkpointing CRIU events — Linux 7.8 High2026-08-15
CVE-2026-74445 drm/vmwgfx: reject DX_BIND_QUERY without a DX context — Linux--2026-08-15
CVE-2026-74444 drm/vmwgfx: validate DRAW_PRIMITIVES header size before division — Linux 7.8 High2026-08-15
CVE-2026-74443 drm/vmwgfx: bound DMA command body size against suffix pointer — Linux 8.8 High2026-08-15
CVE-2026-74442 drm/vmwgfx: avoid destroy_workqueue(NULL) on vkms init failure — Linux--2026-08-15
CVE-2026-74441 usb: typec: ucsi: Fix race condition and ordering in port unregistration — Linux--2026-08-15
CVE-2026-74440 drm/xe: Wait on external BO kernel fences in exec IOCTL — Linux 7.8 High2026-08-15
CVE-2026-74439 iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry — Linux 9.3 Critical2026-08-15
CVE-2026-74438 crypto: sun4i-ss - Remove insecure and unused rng_alg — Linux 7.8 High2026-08-15
CVE-2026-74436 rxrpc: serialize kernel accept preallocation with socket teardown — Linux 9.8 Critical2026-08-15
CVE-2026-74437 media: uvcvideo: Fix deadlock if uvc_status_stop is called from async_ctrl.work — Linux--2026-08-15
CVE-2026-74435 rxrpc: rxrpc_verify_data ensure rx_dec_buffer alloc — Linux 7.5 High2026-08-15
CVE-2026-74433 rxrpc: Fix UAF in rxgk_issue_challenge() — Linux 9.8 Critical2026-08-15
CVE-2026-74434 rxrpc: Don't move a peeked OOB message onto the pending queue — Linux 9.8 Critical2026-08-15
CVE-2026-74432 rxrpc: Fix leak of released call in recvmsg(MSG_PEEK) — Linux--2026-08-15
CVE-2026-74431 rxrpc: Fix potential infinite loop in rxrpc_recvmsg() — Linux 7.5 High2026-08-15
CVE-2026-74430 rxrpc: Fix ACKALL packet handling — Linux 7.5 High2026-08-15

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.