Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11138

Browse all 11138 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPublished
CVE-2026-23416 mm/mseal: update VMA end correctly on merge — Linux 5.5AIMediumAI2026-04-02
CVE-2026-23414 tls: Purge async_hold in tls_decrypt_async_wait() — Linux 7.5 High2026-04-02
CVE-2026-23415 futex: Fix UaF between futex_key_to_node_opt() and vma_replace_policy() — Linux 7.8 High2026-04-02
CVE-2026-23413 clsact: Fix use-after-free in init/destroy rollback asymmetry — Linux 7.8 High2026-04-02
CVE-2026-23412 netfilter: bpf: defer hook memory release until rcu readers are done — Linux 7.8 High2026-04-02
CVE-2026-23411 apparmor: fix race between freeing data and fs accessing it — Linux 7.8 High2026-04-01
CVE-2026-23410 apparmor: fix race on rawdata dereference — Linux 7.8 High2026-04-01
CVE-2026-23409 apparmor: fix differential encoding verification — Linux 7.1AIHighAI2026-04-01
CVE-2026-23408 apparmor: Fix double free of ns_name in aa_replace_profiles() — Linux 7.8 High2026-04-01
CVE-2026-23407 apparmor: fix missing bounds check on DEFAULT table in verify_dfa() — Linux 7.8 High2026-04-01
CVE-2026-23405 apparmor: fix: limit the number of levels of policy namespaces — Linux 5.5AIMediumAI2026-04-01
CVE-2026-23406 apparmor: fix side-effect bug in match_char() macro usage — Linux 7.8 High2026-04-01
CVE-2026-23404 apparmor: replace recursive profile removal with iterative approach — Linux 5.5AIMediumAI2026-04-01
CVE-2026-23403 apparmor: fix memory leak in verify_header — Linux 6.1AIMediumAI2026-04-01
CVE-2026-23402 KVM: x86/mmu: Only WARN in direct MMUs when overwriting shadow-present SPTE — Linux 4.7AIMediumAI2026-04-01
CVE-2026-23401 KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE — Linux 8.8AIHighAI2026-04-01
CVE-2026-23400 rust_binder: call set_notification_done() without proc lock — Linux 7.1 -2026-03-29
CVE-2026-23399 nf_tables: nft_dynset: fix possible stateful expression memleak in error path — Linux 5.5 -2026-03-28
CVE-2026-23398 icmp: fix NULL pointer dereference in icmp_tag_validation() — Linux 6.5 -2026-03-26
CVE-2026-23397 nfnetlink_osf: validate individual option lengths in fingerprints — Linux 7.5 -2026-03-26
CVE-2026-23396 wifi: mac80211: fix NULL deref in mesh_matches_local() — Linux 6.5 -2026-03-26
CVE-2026-23395 Bluetooth: L2CAP: Fix accepting multiple L2CAP_ECRED_CONN_REQ — Linux 8.8 High2026-03-25
CVE-2026-23394 af_unix: Give up GC if MSG_PEEK intervened. — Linux 6.3 -2026-03-25
CVE-2026-23392 netfilter: nf_tables: release flowtable after rcu grace period on error — Linux 7.8 High2026-03-25
CVE-2026-23393 bridge: cfm: Fix race condition in peer_mep deletion — Linux 7.8 High2026-03-25
CVE-2026-23391 netfilter: xt_CT: drop pending enqueued packets on template removal — Linux 7.8 High2026-03-25
CVE-2026-23390 tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow — Linux 7.7 -2026-03-25
CVE-2026-23389 ice: Fix memory leak in ice_set_ringparam() — Linux 7.1 -2026-03-25
CVE-2026-23388 Squashfs: check metadata block offset is within range — Linux 7.1 -2026-03-25
CVE-2026-23387 pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe() — Linux 7.1 -2026-03-25

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.