Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13933

Browse all 13933 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-68420 xfrm: reject optional IPTFS templates in outbound policies — Linux--2026-08-10
CVE-2026-68419 RDMA/irdma: Prevent rereg_mr for non-mem regions — Linux--2026-08-10
CVE-2026-68418 RDMA/irdma: Prevent user-triggered null deref on QP create — Linux--2026-08-10
CVE-2026-68417 RDMA/siw: publish QP after initialization — Linux--2026-08-10
CVE-2026-68416 mtd: fix double free and WARN_ON in add_mtd_device() error paths — Linux--2026-08-10
CVE-2026-68415 xfrm: clear mode callbacks after failed mode setup — Linux--2026-08-10
CVE-2026-68413 wifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one() — Linux--2026-08-10
CVE-2026-68414 wifi: cfg80211: cancel sched scan results work on unregister — Linux--2026-08-10
CVE-2026-68412 wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan() — Linux--2026-08-10
CVE-2026-68411 wifi: mac80211_hwsim: clamp virtio RX length before skb_put — Linux--2026-08-10
CVE-2026-68410 wifi: libertas: fix memory leak in helper_firmware_cb() — Linux--2026-08-10
CVE-2026-68409 wifi: mac80211: defer link RX stats percpu free to RCU — Linux--2026-08-10
CVE-2026-68408 wifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock — Linux--2026-08-10
CVE-2026-68407 wifi: nl80211: free RNR data on MBSSID mismatch — Linux--2026-08-10
CVE-2026-68406 wifi: cfg80211: validate PMSR FTM preamble range — Linux--2026-08-10
CVE-2026-68405 wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock — Linux--2026-08-10
CVE-2026-68404 wifi: cfg80211: use wiphy work for socket owner autodisconnect — Linux--2026-08-10
CVE-2026-68403 wifi: brcmfmac: initialize SDIO data work before cleanup — Linux--2026-08-10
CVE-2026-68402 wifi: cfg80211: bound element ID read when checking non-inheritance — Linux--2026-08-10
CVE-2026-68401 firmware: arm_ffa: Fix out-of-bound writes in ffa_setup_and_transmit() — Linux--2026-08-10
CVE-2026-68400 firmware: arm_ffa: Fix Endpoint Memory Access Descriptor offset calculation — Linux--2026-08-10
CVE-2026-68399 bpf: Fix UAF in sock clone early bailouts — Linux--2026-08-10
CVE-2026-68398 ppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF — Linux--2026-08-10
CVE-2026-68397 net/iucv: take a reference on the socket found in afiucv_hs_rcv() — Linux--2026-08-10
CVE-2026-68396 scsi: core: wake eh reliably when using scsi_schedule_eh — Linux--2026-08-10
CVE-2026-68395 ata: sata_dwc_460ex: enable SATA interrupts only after IRQ handler is registered — Linux--2026-08-10
CVE-2026-68394 Bluetooth: MGMT: revalidate LOAD_CONN_PARAM queued update — Linux--2026-08-10
CVE-2026-68393 Bluetooth: hci_sync: extend conn_hash lookup critical sections — Linux--2026-08-10
CVE-2026-68392 Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync — Linux--2026-08-10
CVE-2026-68391 Bluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds — Linux--2026-08-10

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.