目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

Linux 厂商漏洞列表 / CVE 中文分析 11726

Linux 厂商相关 11726 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

Linux 作为广泛使用的开源操作系统内核,支撑着从嵌入式设备到超级计算机的众多基础设施。其历史漏洞多集中于内核提权、内存破坏及本地权限提升,远程代码执行相对较少。值得关注的是,Linux 拥有活跃的社区安全响应机制及 SELinux 等强制访问控制特性,有效缓解部分风险。尽管 CVE 数量庞大,但多数为配置不当或旧版遗留问题,整体生态通过持续补丁更新维持较高安全性。

CVE IDタイトルCVSS深刻度公開日
CVE-2026-31709 smb: client: validate the whole DACL before rewriting it in cifsacl — Linux 8.8 High2026-05-01
CVE-2026-31708 smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path — Linux 8.1 High2026-05-01
CVE-2026-31706 ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() — Linux 8.8 High2026-05-01
CVE-2026-31707 ksmbd: validate response sizes in ipc_validate_msg() — Linux 7.1 High2026-05-01
CVE-2026-31705 ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment — Linux 9.8 Critical2026-05-01
CVE-2026-31704 ksmbd: use check_add_overflow() to prevent u16 DACL size overflow — Linux 8.4 -2026-05-01
CVE-2026-31702 f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io() — Linux 7.1 -2026-05-01
CVE-2026-31703 writeback: Fix use after free in inode_switch_wbs_work_fn() — Linux 7.8 High2026-05-01
CVE-2026-31701 ALSA: caiaq: take a reference on the USB device in create_card() — Linux 7.1 -2026-05-01
CVE-2026-31700 net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd() — Linux 7.8 High2026-05-01
CVE-2026-31699 crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed — Linux 7.1 High2026-05-01
CVE-2026-31698 crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed — Linux 7.1 High2026-05-01
CVE-2026-31697 crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed — Linux 7.1 High2026-05-01
CVE-2026-31696 rxrpc: Fix missing validation of ticket length in non-XDR key preparsing — Linux 7.8 -2026-05-01
CVE-2026-31695 wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free — Linux 7.8 High2026-05-01
CVE-2026-31694 fuse: reject oversized dirents in page cache — Linux 7.8 High2026-05-01
CVE-2026-31693 cifs: some missing initializations on replay — Linux 7.8 High2026-04-30
CVE-2026-31692 rtnetlink: add missing netlink_ns_capable() check for peer netns — Linux 7.1 -2026-04-30
CVE-2026-31787 xen/privcmd: fix double free via VMA splitting — Linux 7.1 -2026-04-30
CVE-2026-31786 Buffer overflow in drivers/xen/sys-hypervisor.c — Linux 7.8 High2026-04-30
CVE-2026-31691 igb: remove napi_synchronize() in igb_down() — Linux 7.1 -2026-04-27
CVE-2026-31690 firmware: thead: Fix buffer overflow and use standard endian macros — Linux 8.8AIHighAI2026-04-27
CVE-2026-31689 EDAC/mc: Fix error path ordering in edac_mc_alloc() — Linux 7.8 -2026-04-27
CVE-2026-31688 driver core: enforce device_lock for driver_match_device() — Linux 6.1 -2026-04-27
CVE-2026-31687 gpio: omap: do not register driver in probe() — Linux 6.6AIMediumAI2026-04-27
CVE-2026-31686 mm/kasan: fix double free for kasan pXds — Linux 7.1 -2026-04-27
CVE-2026-31685 netfilter: ip6t_eui64: reject invalid MAC header for all packets — Linux 9.4 Critical2026-04-25
CVE-2026-31684 net: sched: act_csum: validate nested VLAN headers — Linux 7.3AIHighAI2026-04-25
CVE-2026-31683 batman-adv: avoid OGM aggregation when skb tailroom is insufficient — Linux 7.8 High2026-04-25
CVE-2026-31682 bridge: br_nd_send: linearize skb before parsing ND options — Linux 9.1 Critical2026-04-25

本页汇总了 Linux 厂商截至目前公开的全部 11726 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。