Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-23466 drm/xe: Open-code GGTT MMIO access protection — Linux 7.8 High2026-04-03
CVE-2026-23465 btrfs: log new dentries when logging parent dir of a conflicting inode — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23464 soc: microchip: mpfs: Fix memory leak in mpfs_sys_controller_probe() — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23463 soc: fsl: qbman: fix race condition in qman_destroy_fq — Linux 7.0AIHighAI2026-04-03
CVE-2026-23462 Bluetooth: HIDP: Fix possible UAF — Linux 8.8 High2026-04-03
CVE-2026-23461 Bluetooth: L2CAP: Fix use-after-free in l2cap_unregister_user — Linux 8.8 High2026-04-03
CVE-2026-23460 net/rose: fix NULL pointer dereference in rose_transmit_link on reconnect — Linux 6.2AIMediumAI2026-04-03
CVE-2026-23459 ip_tunnel: adapt iptunnel_xmit_stats() to NETDEV_PCPU_STAT_DSTATS — Linux 8.2 High2026-04-03
CVE-2026-23458 netfilter: ctnetlink: fix use-after-free in ctnetlink_dump_exp_ct() — Linux 7.8 High2026-04-03
CVE-2026-23456 netfilter: nf_conntrack_h323: fix OOB read in decode_int() CONS case — Linux 8.2 High2026-04-03
CVE-2026-23457 netfilter: nf_conntrack_sip: fix Content-Length u32 truncation in sip_help_tcp() — Linux 8.6 High2026-04-03
CVE-2026-23455 netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() — Linux 9.1 Critical2026-04-03
CVE-2026-23453 net: ti: icssg-prueth: Fix memory leak in XDP_DROP for non-zero-copy mode — Linux 7.5 High2026-04-03
CVE-2026-23454 net: mana: fix use-after-free in mana_hwc_destroy_channel() by reordering teardown — Linux 6.3AIMediumAI2026-04-03
CVE-2026-23452 PM: runtime: Fix a race condition related to device removal — Linux 6.3AIMediumAI2026-04-03
CVE-2026-23451 bonding: prevent potential infinite loop in bond_header_parse() — Linux 7.5 High2026-04-03
CVE-2026-23450 net/smc: fix NULL dereference and UAF in smc_tcp_syn_recv_sock() — Linux 9.8 Critical2026-04-03
CVE-2026-23449 net/sched: teql: Fix double-free in teql_master_xmit — Linux 7.8 High2026-04-03
CVE-2026-23448 net: usb: cdc_ncm: add ndpoffset to NDP16 nframes bounds check — Linux 7.1AIHighAI2026-04-03
CVE-2026-23446 net: usb: aqc111: Do not perform PM inside suspend callback — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23447 net: usb: cdc_ncm: add ndpoffset to NDP32 nframes bounds check — Linux 7.1AIHighAI2026-04-03
CVE-2026-23445 igc: fix page fault in XDP TX timestamps handling — Linux 7.8 High2026-04-03
CVE-2026-23444 wifi: mac80211: always free skb on ieee80211_tx_prepare_skb() failure — Linux 7.8 High2026-04-03
CVE-2026-23443 ACPI: processor: Fix previous acpi_processor_errata_piix4() fix — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23442 ipv6: add NULL checks for idev in SRv6 paths — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23441 net/mlx5e: Prevent concurrent access to IPSec ASO context — Linux 6.3AIMediumAI2026-04-03
CVE-2026-23440 net/mlx5e: Fix race condition during IPSec ESN update — Linux 7.5 High2026-04-03
CVE-2026-23439 udp_tunnel: fix NULL deref caused by udp_sock_create6 when CONFIG_IPV6=n — Linux 6.5AIMediumAI2026-04-03
CVE-2026-23438 net: mvpp2: guard flow control update with global_tx_fc in buffer switching — Linux 7.8AIHighAI2026-04-03
CVE-2026-23437 net: shaper: protect late read accesses to the hierarchy — Linux 7.8 High2026-04-03

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.