Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

linux — Vulnerabilities & Security Advisories 13937

Browse all 13937 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-68454 KVM: s390: pci: Fix handling of AIF enable without AISB — Linux 8.8 High2026-08-13
CVE-2026-68453 s390/zcrypt: Fix buffer over-read in cca_cipher2protkey — Linux 7.1 High2026-08-13
CVE-2026-68452 s390/zcrypt: Validate length for CCA AES cipher key requests — Linux 7.8 High2026-08-13
CVE-2026-68451 s390/zcrypt: Validate length for CCA ECC private key requests — Linux 7.8 High2026-08-13
CVE-2026-68450 btrfs: free mapping node on duplicate reloc root insert — Linux--2026-08-12
CVE-2026-68449 ata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning — Linux--2026-08-12
CVE-2026-68448 ovl: check access to copy_file_range source with src mounter creds — Linux--2026-08-12
CVE-2026-68447 drm/amdkfd: clamp v9 CRIU control stack checkpoint copy to BO size — Linux 7.1 High2026-08-12
CVE-2026-68446 drm/vmwgfx: Validate vmw_surface_metadata::array_size — Linux 7.8 High2026-08-12
CVE-2026-68445 drm/vc4: Prevent shader BO mappings from becoming writable — Linux 7.8 High2026-08-12
CVE-2026-68444 firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get() — Linux--2026-08-12
CVE-2026-68443 hwmon: (gigabyte_waterforce) Stop device IO before calling hid_hw_stop — Linux--2026-08-12
CVE-2026-68442 btrfs: don't propagate EXTENT_FLAG_LOGGING to split extent maps — Linux 7.8 High2026-08-12
CVE-2026-68441 net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains — Linux--2026-08-12
CVE-2026-68440 net: txgbe: fix heap overflow when reading module EEPROM — Linux 7.8 High2026-08-12
CVE-2026-68439 wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() — Linux--2026-08-12
CVE-2026-68438 smp: Make CSD lock acquisition atomic for debug mode — Linux--2026-08-12
CVE-2026-68437 drm/imagination: Fit paired fragment job in the correct CCCB — Linux--2026-08-12
CVE-2026-68436 drm/amd/display: use kvzalloc to allocate struct dc — Linux--2026-08-12
CVE-2026-68435 LoongArch: Fix address space mismatch in kexec command line lookup — Linux--2026-08-12
CVE-2026-68434 serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR platforms — Linux--2026-08-12
CVE-2026-68433 libceph: bound get_version reply decode to front len — Linux 8.6 High2026-08-12
CVE-2026-68432 vxlan: require CAP_NET_ADMIN in the device netns for changelink — Linux 8.8 High2026-08-12
CVE-2026-68431 ksmbd: validate minimum PDU size for transform requests — Linux 9.1 Critical2026-08-12
CVE-2026-68430 drm/amdgpu/gfx8: drop unecessary BUG_ON() — Linux--2026-08-12
CVE-2026-68429 drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue_probe() — Linux--2026-08-12
CVE-2026-68428 KVM: x86/mmu: Fix use-after-free on vendor module reload — Linux--2026-08-10
CVE-2026-68427 gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings — Linux 7.8 High2026-08-10
CVE-2026-68426 xfrm: fix stale skb->prev after async crypto steals a GSO segment — Linux 9.8 Critical2026-08-10
CVE-2026-68425 IB/mad: Drop unmatched RMPP responses before reassembly — Linux 7.1 High2026-08-10

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.