Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13566

Browse all 13566 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-64427 HID: logitech-dj: Fix maxfield check in DJ short report validation — Linux--2026-07-25
CVE-2026-64428 gpio: sch: use raw_spinlock_t in the irq startup path — Linux--2026-07-25
CVE-2026-64426 io_uring/nop: fix file reference leak with IOSQE_FIXED_FILE — Linux--2026-07-25
CVE-2026-64425 io_uring/io-wq: re-check IO_WQ_BIT_EXIT for each linked work item — Linux--2026-07-25
CVE-2026-64424 netpoll: fix a use-after-free on shutdown path — Linux--2026-07-25
CVE-2026-64423 ipv4: igmp: remove multicast group from hash table on device destruction — Linux 7.8 High2026-07-25
CVE-2026-64422 net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes — Linux 7.1 High2026-07-25
CVE-2026-64421 media: nxp: imx8-isi: Fix use-after-free on remove — Linux--2026-07-25
CVE-2026-64420 mfd: cros_ec: Delay dev_set_drvdata() until probe success — Linux 7.0 High2026-07-25
CVE-2026-64419 mm/shrinker: do not hold RCU lock in shrinker_debugfs_count_show() — Linux--2026-07-25
CVE-2026-64418 mm: shrinker: fix shrinker_info teardown race with expansion — Linux 7.8 High2026-07-25
CVE-2026-64417 mm: shrinker: fix NULL pointer dereference in debugfs — Linux--2026-07-25
CVE-2026-64416 mm: swap_cgroup: fix NULL deref in lookup_swap_cgroup_id on swapless host — Linux--2026-07-25
CVE-2026-64415 mm/swap: add cond_resched() in swap_reclaim_full_clusters to prevent softlockup — Linux--2026-07-25
CVE-2026-64413 netfilter: ebtables: zero chainstack array — Linux 7.0 High2026-07-25
CVE-2026-64414 netfilter: handle unreadable frags — Linux 7.5 High2026-07-25
CVE-2026-64412 netfilter: ebtables: module names must be null-terminated — Linux 7.1 High2026-07-25
CVE-2026-64411 netfilter: ebtables: terminate table name before find_table_lock() — Linux 7.1 High2026-07-25
CVE-2026-64410 netfilter: flowtable: IPIP tunnel hardware offload is not yet support — Linux 9.8 Critical2026-07-25
CVE-2026-64409 Bluetooth: btmtksdio: fix infinite loop in btmtksdio_txrx_work() — Linux--2026-07-25
CVE-2026-64408 Bluetooth: bnep: pin L2CAP connection during netdev registration — Linux 8.8 High2026-07-25
CVE-2026-64407 Bluetooth: btnxpuart: Fix out-of-bounds firmware read in nxp_recv_fw_req_v3() — Linux--2026-07-25
CVE-2026-64406 Bluetooth: fix UAF in bt_accept_dequeue() — Linux 8.0 High2026-07-25
CVE-2026-64405 Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() — Linux--2026-07-25
CVE-2026-64404 Bluetooth: ISO: avoid NULL deref of conn in iso_conn_big_sync() — Linux--2026-07-25
CVE-2026-64403 Bluetooth: L2CAP: validate option length before reading conf opt value — Linux 7.1 High2026-07-25
CVE-2026-64402 coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer() — Linux 7.8 High2026-07-25
CVE-2026-64401 smb: client: resolve SWN tcon from live registrations — Linux 7.8 High2026-07-25
CVE-2026-64400 ksmbd: prevent path traversal bypass by restricting caseless retry — Linux 8.6 High2026-07-25
CVE-2026-64399 ksmbd: add permission checks for FSCTL_DUPLICATE_EXTENTS_TO_FILE — Linux 9.8 Critical2026-07-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.