Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-43047 HID: multitouch: Check to ensure report responses match the request — Linux 7.8 High2026-05-01
CVE-2026-43048 HID: core: Mitigate potential OOB by removing bogus memset() — Linux 8.8 High2026-05-01
CVE-2026-43046 btrfs: reject root items with drop_progress and zero drop_level — Linux 6.3 -2026-05-01
CVE-2026-43045 mshv: Fix error handling in mshv_region_pin — Linux 7.8 -2026-05-01
CVE-2026-43043 crypto: af-alg - fix NULL pointer dereference in scatterwalk — Linux 8.1 -2026-05-01
CVE-2026-43044 crypto: caam - fix DMA corruption on long hmac keys — Linux 7.8 High2026-05-01
CVE-2026-43042 mpls: add seqcount to protect the platform_label{,s} pair — Linux 7.1 High2026-05-01
CVE-2026-43041 net: qrtr: replace qrtr_tx_flow radix_tree with xarray to fix memory leak — Linux 7.1 -2026-05-01
CVE-2026-43040 net: ipv6: ndisc: fix ndisc_ra_useropt to initialize nduseropt_padX fields to zero to prevent an info-leak — Linux 6.5 -2026-05-01
CVE-2026-43039 net: ti: icssg-prueth: fix missing data copy and wrong recycle in ZC RX dispatch — Linux 9.8 Critical2026-05-01
CVE-2026-43038 ipv6: icmp: clear skb2->cb[] in ip6_err_gen_icmpv6_unreach() — Linux 9.8 Critical2026-05-01
CVE-2026-43036 net: use skb_header_pointer() for TCPv4 GSO frag_off check — Linux 7.5 -2026-05-01
CVE-2026-43037 ip6_tunnel: clear skb2->cb[] in ip4ip6_err() — Linux 9.8 Critical2026-05-01
CVE-2026-43035 net: sched: cls_api: fix tc_chain_fill_node to initialize tcm_info to zero to prevent an info-leak — Linux 6.5 -2026-05-01
CVE-2026-43033 crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption — Linux 7.8 High2026-05-01
CVE-2026-43034 bnxt_en: set backing store type from query type — Linux 7.8 -2026-05-01
CVE-2026-43032 NFC: pn533: bound the UART receive buffer — Linux--2026-05-01
CVE-2026-43030 bpf: Fix regsafe() for pointers to packet — Linux 7.8 High2026-05-01
CVE-2026-43031 net: xilinx: axienet: Fix BQL accounting for multi-BD TX packets — Linux 7.5 High2026-05-01
CVE-2026-43029 mptcp: fix soft lockup in mptcp_recvmsg() — Linux 7.5 High2026-05-01
CVE-2026-43028 netfilter: x_tables: ensure names are nul-terminated — Linux 7.1 High2026-05-01
CVE-2026-43027 netfilter: nf_conntrack_helper: pass helper to expect cleanup — Linux 7.1 -2026-05-01
CVE-2026-43026 netfilter: ctnetlink: zero expect NAT fields when CTA_EXPECT_NAT absent — Linux 5.5 -2026-05-01
CVE-2026-43025 netfilter: ctnetlink: ignore explicit helper on new expectations — Linux 7.3 High2026-05-01
CVE-2026-43023 Bluetooth: SCO: fix race conditions in sco_sock_connect() — Linux 7.8 High2026-05-01
CVE-2026-43024 netfilter: nf_tables: reject immediate NF_QUEUE verdict — Linux 5.5 -2026-05-01
CVE-2026-43022 Bluetooth: hci_sync: hci_cmd_sync_queue_once() return -EEXIST if exists — Linux 6.5 -2026-05-01
CVE-2026-43020 Bluetooth: MGMT: validate LTK enc_size on load — Linux 8.1 -2026-05-01
CVE-2026-43021 Bluetooth: hci_sync: fix leaks when hci_cmd_sync_queue_once fails — Linux 6.5 -2026-05-01
CVE-2026-43019 Bluetooth: hci_conn: fix potential UAF in set_cig_params_sync — Linux 7.8 High2026-05-01

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.