Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-23436 net: shaper: protect from late creation of hierarchy — Linux 6.3AIMediumAI2026-04-03
CVE-2026-23435 perf/x86: Move event pointer setup earlier in x86_pmu_enable() — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23433 arm_mpam: Fix null pointer dereference when restoring bandwidth counters — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23434 mtd: rawnand: serialize lock/unlock against other NAND operations — Linux 7.1 High2026-04-03
CVE-2026-23432 mshv: Fix use-after-free in mshv_map_user_memory error path — Linux 7.8 High2026-04-03
CVE-2026-23431 spi: amlogic-spisg: Fix memory leak in aml_spisg_probe() — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23430 drm/vmwgfx: Don't overwrite KMS surface dirty tracker — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23429 iommu/sva: Fix crash in iommu_sva_unbind_device() — Linux 7.8 High2026-04-03
CVE-2026-23428 ksmbd: fix use-after-free of share_conf in compound request — Linux 9.8 Critical2026-04-03
CVE-2026-23427 ksmbd: fix use-after-free in durable v2 replay of active file handles — Linux 9.8 Critical2026-04-03
CVE-2026-23426 drm/logicvc: Fix device node reference leak in logicvc_drm_config_parse() — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23425 KVM: arm64: Fix ID register initialization for non-protected pKVM guests — Linux 8.8 High2026-04-03
CVE-2026-23424 accel/amdxdna: Validate command buffer payload count — Linux 7.1 High2026-04-03
CVE-2026-23423 btrfs: free pages on error in btrfs_uring_read_extent() — Linux 7.1AIHighAI2026-04-03
CVE-2026-23421 drm/xe/configfs: Free ctx_restore_mid_bb in release — Linux 3.3AILowAI2026-04-03
CVE-2026-23422 dpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler — Linux 5.5AIMediumAI2026-04-03
CVE-2026-23420 wifi: wlcore: Fix a locking bug — Linux 7.1AIHighAI2026-04-03
CVE-2026-23419 net/rds: Fix circular locking dependency in rds_tcp_tune — Linux 7.5 High2026-04-03
CVE-2026-23418 drm/xe/reg_sr: Fix leak on xa_store failure — Linux 7.1AIHighAI2026-04-03
CVE-2026-23417 bpf: Fix constant blinding for PROBE_MEM32 stores — Linux 7.8AIHighAI2026-04-02
CVE-2026-23416 mm/mseal: update VMA end correctly on merge — Linux 5.5AIMediumAI2026-04-02
CVE-2026-23414 tls: Purge async_hold in tls_decrypt_async_wait() — Linux 7.5 High2026-04-02
CVE-2026-23415 futex: Fix UaF between futex_key_to_node_opt() and vma_replace_policy() — Linux 7.8 High2026-04-02
CVE-2026-23413 clsact: Fix use-after-free in init/destroy rollback asymmetry — Linux 7.8 High2026-04-02
CVE-2026-23412 netfilter: bpf: defer hook memory release until rcu readers are done — Linux 7.8 High2026-04-02
CVE-2026-23411 apparmor: fix race between freeing data and fs accessing it — Linux 7.8 High2026-04-01
CVE-2026-23410 apparmor: fix race on rawdata dereference — Linux 7.8 High2026-04-01
CVE-2026-23409 apparmor: fix differential encoding verification — Linux 7.1AIHighAI2026-04-01
CVE-2026-23408 apparmor: Fix double free of ns_name in aa_replace_profiles() — Linux 7.8 High2026-04-01
CVE-2026-23407 apparmor: fix missing bounds check on DEFAULT table in verify_dfa() — Linux 7.8 High2026-04-01

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.