Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13566

Browse all 13566 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-64518 tcp: Fix out-of-bounds access for twsk in tcp_ao_established_key(). — Linux--2026-07-25
CVE-2026-64517 drm/xe/gsc: Fix double-free of managed BO in error path — Linux--2026-07-25
CVE-2026-64516 drm/amdgpu/vce1: Fix VCE 1 firmware size and offsets — Linux 8.8 High2026-07-25
CVE-2026-64515 wifi: mac80211: fix MLE defragmentation — Linux 8.3 High2026-07-25
CVE-2026-64514 userfaultfd: gate must_wait writability check on pte_present() — Linux--2026-07-25
CVE-2026-64513 KVM: x86: Unconditionally recompute CR8 intercept on PPR update — Linux--2026-07-25
CVE-2026-64511 ACPI: NFIT: core: Fix possible NULL pointer dereference — Linux--2026-07-25
CVE-2026-64512 ACPI: CPPC: Suppress UBSAN warning caused by field misuse — Linux--2026-07-25
CVE-2026-64510 ACPI: NFIT: core: Fix acpi_nfit_init() error cleanup — Linux 7.0 High2026-07-25
CVE-2026-64509 rust: block: fix GenDisk cleanup paths — Linux--2026-07-25
CVE-2026-64508 bpf: Support for hardening against JIT spraying — Linux--2026-07-25
CVE-2026-64507 x86/bugs: Enable IBPB flush on BPF JIT allocation — Linux--2026-07-25
CVE-2026-64505 usb: gadget: function: rndis: add length check for header — Linux--2026-07-25
CVE-2026-64506 wifi: rtw89: correct drop logic for malformed AMPDU frames — Linux--2026-07-25
CVE-2026-64504 iio: accel: bmc150: clamp the device-reported FIFO frame count — Linux--2026-07-25
CVE-2026-64503 iio: accel: kxsd9: fix runtime PM imbalance on write_raw() error — Linux--2026-07-25
CVE-2026-64502 iio: adc: ad_sigma_delta: fix clear_pending_event for registerless devices — Linux 7.8 High2026-07-25
CVE-2026-64501 iio: adc: ad_sigma_delta: fix CS held asserted and state leaks — Linux 7.1 High2026-07-25
CVE-2026-64500 iio: adc: lpc32xx: Initialize completion before requesting IRQ — Linux--2026-07-25
CVE-2026-64498 iio: buffer: hw-consumer: free scan_mask on buffer release — Linux--2026-07-25
CVE-2026-64499 iio: adc: ti-ads1119: fix PM reference leak in buffer preenable — Linux--2026-07-25
CVE-2026-64497 iio: chemical: scd30: Cleanup initializations and fix sign-extension bug — Linux--2026-07-25
CVE-2026-64496 iio: event: Fix event FIFO reset race — Linux 7.1 High2026-07-25
CVE-2026-64495 iio: gyro: bmg160: bail out when bandwidth/filter is not in table — Linux--2026-07-25
CVE-2026-64494 iio: light: gp2ap002: fix runtime PM leak on read error — Linux--2026-07-25
CVE-2026-64493 iio: pressure: mpl115: fix runtime PM leak on read error — Linux--2026-07-25
CVE-2026-64491 ALSA: usx2y: us144mkii: fix work UAF on disconnect — Linux--2026-07-25
CVE-2026-64492 iio: temperature: tmp006: use devm_iio_trigger_register — Linux--2026-07-25
CVE-2026-64490 ALSA: virtio: Validate control metadata from the device — Linux 8.4 High2026-07-25
CVE-2026-64489 ALSA: ymfpci: check snd_ctl_new1() return value — Linux--2026-07-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.