Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

linux — Vulnerabilities & Security Advisories 12632

Browse all 12632 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 12502 results / 12632Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-53277 KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation — Linux--2026-06-25
CVE-2026-53276 Bluetooth: ISO: Fix a use-after-free of the hci_conn pointer — Linux--2026-06-25
CVE-2026-53275 ipv6: mcast: Fix use-after-free when processing MLD queries — Linux--2026-06-25
CVE-2026-53274 net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS — Linux--2026-06-25
CVE-2026-53273 tee: optee: prevent use-after-free when the client exits before the supplicant — Linux--2026-06-25
CVE-2026-53272 erofs: fix use-after-free on sbi->sync_decompress — Linux--2026-06-25
CVE-2026-53271 ksmbd: fix NULL-deref of opinfo->conn in oplock/lease break notifiers — Linux--2026-06-25
CVE-2026-53270 ipvs: clear the svc scheduler ptr early on edit — Linux--2026-06-25
CVE-2026-53268 netfilter: conntrack_irc: fix possible out-of-bounds read — Linux--2026-06-25
CVE-2026-53269 netfilter: synproxy: add mutex to guard hook reference counting — Linux--2026-06-25
CVE-2026-53267 netfilter: nft_ct: bail out on template ct in get eval — Linux--2026-06-25
CVE-2026-53266 netfilter: bridge: make ebt_snat ARP rewrite writable — Linux--2026-06-25
CVE-2026-53265 dm cache policy smq: check allocation under invalidate lock — Linux--2026-06-25
CVE-2026-53264 net/sched: act_api: use RCU with deferred freeing for action lifecycle — Linux--2026-06-25
CVE-2026-53263 6lowpan: fix off-by-one in multicast context address compression — Linux--2026-06-25
CVE-2026-53262 l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() — Linux--2026-06-25
CVE-2026-53261 devlink: Release nested relation on devlink free — Linux--2026-06-25
CVE-2026-53259 ipv6: anycast: insert aca into global hash under idev->lock — Linux--2026-06-25
CVE-2026-53260 tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). — Linux--2026-06-25
CVE-2026-53258 wifi: fix leak if split 6 GHz scanning fails — Linux--2026-06-25
CVE-2026-53256 Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() — Linux--2026-06-25
CVE-2026-53257 wifi: cfg80211: enforce HE/EHT cap/oper consistency — Linux--2026-06-25
CVE-2026-53255 Bluetooth: MGMT: validate advertising TLV before type checks — Linux--2026-06-25
CVE-2026-53254 Bluetooth: RFCOMM: validate skb length in MCC handlers — Linux--2026-06-25
CVE-2026-53253 Bluetooth: bnep: reject short frames before parsing — Linux--2026-06-25
CVE-2026-53252 Bluetooth: fix memory leak in error path of hci_alloc_dev() — Linux--2026-06-25
CVE-2026-53250 xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() — Linux--2026-06-25
CVE-2026-53251 Bluetooth: ISO: Fix not releasing hdev reference on iso_conn_big_sync — Linux--2026-06-25
CVE-2026-53249 ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options — Linux--2026-06-25
CVE-2026-53248 net: airoha: Fix use-after-free in metadata dst teardown — Linux--2026-06-25

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.