Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-43254 ovpn: tcp - fix packet extraction from stream — Linux 7.5 High2026-05-06
CVE-2026-43252 mptcp: pm: in-kernel: always set ID as avail when rm endp — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43253 iommu/amd: move wait_on_sem() out of spinlock — Linux 7.5 High2026-05-06
CVE-2026-43251 HID: prodikeys: Check presence of pm->input_ep82 — Linux 4.6AIMediumAI2026-05-06
CVE-2026-43250 usb: chipidea: udc: fix DMA and SG cleanup in _ep_nuke() — Linux 7.1AIHighAI2026-05-06
CVE-2026-43249 9p/xen: protect xen_9pfs_front_free against concurrent calls — Linux 8.8 High2026-05-06
CVE-2026-43248 vhost: move vdpa group bound check to vhost_vdpa — Linux 7.8 High2026-05-06
CVE-2026-43247 media: chips-media: wave5: Fix SError of kernel panic when closed — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43245 ntfs: ->d_compare() must not block — Linux 7.5 High2026-05-06
CVE-2026-43246 media: i2c/tw9906: Fix potential memory leak in tw9906_probe() — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43244 kcm: fix zero-frag skb in frag_list on partial sendmsg error — Linux 6.2AIMediumAI2026-05-06
CVE-2026-43243 drm/amd/display: Add signal type check for dcn401 get_phyd32clk_src — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43242 soc: ti: k3-socinfo: Fix regmap leak on probe failure — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43241 ntb: ntb_hw_switchtec: Fix array-index-out-of-bounds access — Linux 7.1AIHighAI2026-05-06
CVE-2026-43239 smb: client: prevent races in ->query_interfaces() — Linux 8.8 High2026-05-06
CVE-2026-43240 x86/kexec: add a sanity check on previous kernel's ima kexec buffer — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43238 net/sched: act_skbedit: fix divide-by-zero in tcf_skbedit_hash() — Linux 5.5AIMediumAI2026-05-06
CVE-2026-43236 drm/atmel-hlcdc: fix use-after-free of drm_crtc_commit after release — Linux 7.8 High2026-05-06
CVE-2026-43237 drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 — Linux 7.8 High2026-05-06
CVE-2026-43235 media: iris: Add missing platform data entries for SM8750 — Linux 7.1AIHighAI2026-05-06
CVE-2026-43234 team: avoid NETDEV_CHANGEMTU event when unregistering slave — Linux 7.8AIHighAI2026-05-06
CVE-2026-43233 netfilter: nf_conntrack_h323: fix OOB read in decode_choice() — Linux 8.2 High2026-05-06
CVE-2026-43232 net: wan: farsync: Fix use-after-free bugs caused by unfinished tasklets — Linux 8.8 High2026-05-06
CVE-2026-43230 net/rds: Clear reconnect pending bit — Linux 7.5 High2026-05-06
CVE-2026-43231 media: radio-keene: fix memory leak in error path — Linux 6.2AIMediumAI2026-05-06
CVE-2026-43229 media: chips-media: wave5: Fix device cleanup order to prevent kernel panic — Linux 7.1AIHighAI2026-05-06
CVE-2026-43227 clocksource/drivers/sh_tmu: Always leave device running after probe — Linux 4.7AIMediumAI2026-05-06
CVE-2026-43228 hfs: Replace BUG_ON with error handling for CNID count checks — Linux 7.1AIHighAI2026-05-06
CVE-2026-43226 net/rds: No shortcut out of RDS_CONN_ERROR — Linux 7.5 High2026-05-06
CVE-2026-43224 io_uring/zcrx: fix sgtable leak on mapping failures — Linux--AI2026-05-06

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.