Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13566

Browse all 13566 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-64487 ALSA: caiaq: fix out-of-bounds read in the Traktor Kontrol S4 input parser — Linux--2026-07-25
CVE-2026-64488 ALSA: aoa: check snd_ctl_new1() return value — Linux--2026-07-25
CVE-2026-64486 ALSA: cmipci: check snd_ctl_new1() return value — Linux--2026-07-25
CVE-2026-64484 ALSA: es1938: check snd_ctl_new1() return value — Linux--2026-07-25
CVE-2026-64485 ALSA: compress: Fix task creation error unwind — Linux 7.8 High2026-07-25
CVE-2026-64483 ALSA: firewire: isight: bound the sample count to the packet payload — Linux--2026-07-25
CVE-2026-64482 ALSA: gus: check snd_ctl_new1() return value — Linux--2026-07-25
CVE-2026-64480 ALSA: ice1712: check snd_ctl_new1() return value — Linux--2026-07-25
CVE-2026-64481 ALSA: hda/cs35l41: Fix firmware load work teardown — Linux 7.8 High2026-07-25
CVE-2026-64479 ALSA: seq: Fix uninitialised heap leak in snd_seq_event_dup() — Linux--2026-07-25
CVE-2026-64477 x86,fs/resctrl: Prevent out-of-bounds access while offlining CPU when SNC enabled — Linux--2026-07-25
CVE-2026-64478 ALSA: usb-audio: avoid kobject path lookup in DualSense match — Linux--2026-07-25
CVE-2026-64476 vfio/pci: Latch disable_idle_d3 per device — Linux--2026-07-25
CVE-2026-64475 vfio/pci: Release the VGA arbiter client on register_device() failure — Linux 8.8 High2026-07-25
CVE-2026-64474 vfio: prevent infinite loop in vfio_mig_get_next_state() on blocked arc — Linux--2026-07-25
CVE-2026-64473 vfio: Remove device debugfs before releasing devres — Linux--2026-07-25
CVE-2026-64472 vfio/mlx5: Fix racy bitfields and tighten struct layout — Linux--2026-07-25
CVE-2026-64470 Bluetooth: btusb: fix use-after-free on marvell probe failure — Linux--2026-07-25
CVE-2026-64471 Bluetooth: btusb: fix use-after-free on registration failure — Linux--2026-07-25
CVE-2026-64469 binder: fix UAF in binder_thread_release() — Linux 7.8 High2026-07-25
CVE-2026-64467 rust_binder: use a u64 stride when cleaning up the offsets array — Linux 8.8 High2026-07-25
CVE-2026-64468 binder: fix UAF in binder_free_transaction() — Linux 7.8 High2026-07-25
CVE-2026-64466 rust_binder: clear freeze listener on node removal — Linux--2026-07-25
CVE-2026-64465 usb: xhci: Fix sleep in atomic context in xhci_free_streams() — Linux--2026-07-25
CVE-2026-64463 usb: typec: tcpci_rt1711h: unregister TCPCI port with devres — Linux 7.8 High2026-07-25
CVE-2026-64464 xhci: sideband: fix ring sg table pages leak — Linux--2026-07-25
CVE-2026-64462 PCI: altera: Fix resource leaks on probe failure — Linux--2026-07-25
CVE-2026-64460 PCI/IOV: Skip VF Resizable BAR restore on read error — Linux 7.0 High2026-07-25
CVE-2026-64461 PCI: mediatek: Fix IRQ domain leak when port fails to enable — Linux--2026-07-25
CVE-2026-64459 tcp: restore RCU grace period in tcp_ao_destroy_sock — Linux 9.8 Critical2026-07-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.