Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13566

Browse all 13566 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-68081 KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state — Linux--2026-08-08
CVE-2026-68082 libceph: fix two unsafe bare decodes in decode_lockers() — Linux--2026-08-08
CVE-2026-68480 x86/bugs: Make Safe-RET robust against interrupt injection — Linux--2026-08-06
CVE-2026-64604 KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode — Linux--2026-08-06
CVE-2026-64602 iio: adc: spear: Initialize completion before requesting IRQ — Linux--2026-08-06
CVE-2026-64603 platform/x86: intel-hid: Protect ACPI notify handler against recursion — Linux--2026-08-06
CVE-2026-64601 ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on each resubmission — Linux 7.8 High2026-08-06
CVE-2026-64598 smb/client: Fix error code in smb2_aead_req_alloc() — Linux 8.8 High2026-08-06
CVE-2026-64599 crypto: amlogic - avoid double cleanup in meson_crypto_probe() — Linux 7.8 High2026-08-06
CVE-2026-64597 smb: client: fix double-free in SMB2_close() replay — Linux 9.8 Critical2026-08-06
CVE-2026-64596 libfs: set SB_I_NOEXEC and SB_I_NODEV by default in init_pseudo() — Linux--2026-08-06
CVE-2026-64595 HID: hid-lenovo-go: cancel cfg_setup work in hid_go_cfg_remove() — Linux--2026-08-06
CVE-2026-64594 usb: gadget: f_fs: initialize reset_work at allocation time — Linux--2026-08-06
CVE-2026-64593 btrfs: do not trim a device which is not writeable — Linux--2026-08-06
CVE-2026-64592 riscv: mm: Unconditionally sfence.vma for spurious fault — Linux--2026-08-06
CVE-2026-64590 dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning — Linux--2026-08-06
CVE-2026-64591 iommu/vt-d: Avoid WARNING in sva unbind path — Linux--2026-08-06
CVE-2026-64588 fuse-uring: fix data races on ring->ready — Linux 7.8 High2026-08-06
CVE-2026-64589 i2c: core: fix NULL-deref on adapter registration failure — Linux--2026-08-06
CVE-2026-64587 net: ethernet: arc: emac: quiesce interrupts before requesting IRQ — Linux 7.0 High2026-08-06
CVE-2026-64586 wifi: brcmfmac: drain bus_reset work on device removal — Linux 8.8 High2026-08-06
CVE-2026-64585 can: esd_usb: kill anchored URBs before freeing netdevs — Linux 7.8 High2026-08-06
CVE-2026-64584 usb: gadget: f_midi: cancel pending IN work before freeing the midi object — Linux 7.8 High2026-08-06
CVE-2026-64583 usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown — Linux 7.8 High2026-08-06
CVE-2026-64582 RDMA/rxe: Fix a use-after-free problem in rxe_mmap — Linux 7.8 High2026-08-05
CVE-2026-64581 xfrm: fix sk_dst_cache double-free in xfrm_user_policy() — Linux 7.8 High2026-08-05
CVE-2026-64580 xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst() — Linux 7.8 High2026-08-05
CVE-2026-64578 ksmbd: validate compound request size before reading StructureSize2 — Linux 8.2 High2026-08-05
CVE-2026-64579 xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert — Linux--2026-08-05
CVE-2026-64576 nexthop: initialize extack in nh_res_bucket_migrate() — Linux 7.1 High2026-08-05

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.