Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-71286 ASoC: SOF: ipc4-topology: Correct the allocation size for bytes controls — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43283 net: ethernet: ec_bhf: Fix dma_free_coherent() dma handle — Linux 8.8 High2026-05-06
CVE-2026-43282 RDMA/ionic: Fix potential NULL pointer dereference in ionic_query_port — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43280 drm/xe: Add bounds check on pat_index to prevent OOB kernel read in madvise — Linux 7.1 High2026-05-06
CVE-2026-43281 mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate() — Linux 9.1AICriticalAI2026-05-06
CVE-2026-43279 ALSA: usb-audio: Add sanity check for OOB writes at silencing — Linux 7.8 High2026-05-06
CVE-2026-43278 dm: clear cloned request bio pointer when last clone bio completes — Linux 7.8 High2026-05-06
CVE-2026-43277 APEI/GHES: ensure that won't go past CPER allocated record — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43276 net: mana: Fix double destroy_workqueue on service rescan PCI path — Linux 7.1AIHighAI2026-05-06
CVE-2026-43275 scsi: ufs: core: Flush exception handling work when RPM level is zero — Linux 7.5AIHighAI2026-05-06
CVE-2026-43274 mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq() — Linux 8.4 High2026-05-06
CVE-2026-43273 ceph: supply snapshot context in ceph_zero_partial_object() — Linux 7.4AIHighAI2026-05-06
CVE-2026-43272 ring-buffer: Fix possible dereference of uninitialized pointer — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43271 md-cluster: fix NULL pointer dereference in process_metadata_update — Linux 7.1AIHighAI2026-05-06
CVE-2026-43270 media: mtk-mdp: Fix a reference leak bug in mtk_mdp_remove() — Linux--AI2026-05-06
CVE-2026-43268 hfsplus: pretend special inodes as regular files — Linux 7.8AIHighAI2026-05-06
CVE-2026-43269 drm/atmel-hlcdc: fix memory leak from the atomic_destroy_state callback — Linux 6.2AIMediumAI2026-05-06
CVE-2026-43267 wifi: rtw89: fix potential zero beacon interval in beacon tracking — Linux 6.5AIMediumAI2026-05-06
CVE-2026-43265 KVM: x86: Ignore -EBUSY when checking nested events from vcpu_block() — Linux 7.1AIHighAI2026-05-06
CVE-2026-43266 EFI/CPER: don't go past the ARM processor CPER record buffer — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43264 fbdev: of: display_timing: fix refcount leak in of_get_display_timings() — Linux 6.1AIMediumAI2026-05-06
CVE-2026-43263 media: chips-media: wave5: Fix Null reference while testing fluster — Linux 7.8 High2026-05-06
CVE-2026-43262 gfs2: fiemap page fault fix — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43261 arm64: Add support for TSV110 Spectre-BHB mitigation — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43260 bnxt_en: Fix RSS context delete logic — Linux 2.5AILowAI2026-05-06
CVE-2026-43259 phy: fsl-imx8mq-usb: set platform driver data — Linux 7.1AIHighAI2026-05-06
CVE-2026-43258 alpha: fix user-space corruption during memory compaction — Linux 7.8 High2026-05-06
CVE-2026-43257 media: cx88: Add missing unmap in snd_cx88_hw_params() — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43255 wifi: libertas: fix WARNING in usb_tx_block — Linux 5.7AIMediumAI2026-05-06
CVE-2026-43256 media: qcom: camss: vfe: Fix out-of-bounds access in vfe_isr_reg_update() — Linux 7.8 High2026-05-06

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.