Linux
5071 known vulnerabilities in Linux, 436 critical, 17 actively exploited, with patch priority, exploit likelihood and the news covering them.
Recently exploited
- CVE-2026-53362 CVSS 7.8 high · actively exploited Linux Kernel Unspecified Vulnerability
- CVE-2026-53266 CVSS 8.8 high · actively exploited Linux Kernel Out-of-Bounds Write Vulnerability
- CVE-2026-31431 CVSS 7.8 high · actively exploited Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability
- CVE-2025-39964 CVSS 5.5 medium · actively exploited Linux Kernel Race Condition Vulnerability
- CVE-2025-39682 CVSS 9.8 critical · actively exploited Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability
- CVE-2025-38352 CVSS 7.8 high · actively exploited Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition Vulnerability
- CVE-2024-53197 CVSS 7.8 high · actively exploited Linux Kernel Out-of-Bounds Access Vulnerability
- CVE-2024-53150 CVSS 7.1 high · actively exploited Linux Kernel Out-of-Bounds Read Vulnerability
- CVE-2024-53104 CVSS 7.8 high · actively exploited Linux Kernel Out-of-Bounds Write Vulnerability
- CVE-2024-50302 CVSS 5.5 medium · actively exploited Linux Kernel Use of Uninitialized Resource Vulnerability
Latest vulnerabilities
- CVE-2026-98164 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Check write tracking in all address spaces…
- CVE-2026-98163 CVSS 7.0 high In the Linux kernel, the following vulnerability has been resolved: cgroup: Avoid iteration of dying tasks with zero refcount The commit…
- CVE-2026-98162 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: smb/server: fix tree connection leak in smb2_tree_connect() See the…
- CVE-2026-98161 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: nvdimm: pmem: keep PREFLUSH before data writes pmem_submit_bio()…
- CVE-2026-98160 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix mismatched free of HalData in…
- CVE-2026-100079 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: unregister debugfs entries on teardown…
- CVE-2026-100078 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mei: pass correct argument to function The first…
- CVE-2026-100077 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: drm/msm: Recover HW before retire hung submit During recovery, it is…
- CVE-2026-100076 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix xmit_frame/xmit_buf leaks on mgnt-frame error…
- CVE-2026-100075 CVSS 9.8 critical In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: Fix srpt_alloc_rw_ctxs() unwind counters When…
- CVE-2026-100074 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: bpf: Mark bpf_refcount field as unique BPF_REFCOUNT is not marked as a…
- CVE-2026-100073 not yet scored In the Linux kernel, the following vulnerability has been resolved: ext4: fix transaction overflow during writeback Commit 95ad8ee45cdb…
- CVE-2026-100072 not yet scored In the Linux kernel, the following vulnerability has been resolved: ACPI: platform: Use acpi_bus_get_primary_device() The…
- CVE-2026-100071 not yet scored In the Linux kernel, the following vulnerability has been resolved: net: hsr: free learned nodes on device setup failure…
- CVE-2026-100070 not yet scored In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_nat_sip: rewind offset when NAT shrinks the packet…
- CVE-2026-98159 not yet scored In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: validate CLC firmware records The CLC region is…
- CVE-2026-98158 not yet scored In the Linux kernel, the following vulnerability has been resolved: ppp_async: drop the errored frame instead of resetting its headroom…
- CVE-2026-98157 not yet scored In the Linux kernel, the following vulnerability has been resolved: EDAC/device_sysfs: Use kstrtouint() for poll_msec to prevent…
- CVE-2026-98156 CVSS 7.8 high In the Linux kernel, the following vulnerability has been resolved: drm/virtio: use the DMA API for resource backing on Xen On a Xen PV…
- CVE-2026-98155 not yet scored In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Address potential out-of-bounds read in resp_worker()…
- CVE-2026-98154 CVSS 7.0 high In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: fix -EIO cleanup order in queue_rq On -EIO, the RDMA…
- CVE-2026-98153 not yet scored In the Linux kernel, the following vulnerability has been resolved: nvme: fix racy access to FDP placement id array nvme_query_fdp_info()…
- CVE-2026-98152 CVSS 5.5 medium In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: fix queue leak when connect backlog is exceeded When…
- CVE-2026-98151 not yet scored In the Linux kernel, the following vulnerability has been resolved: bpf: Fix REG INVARIANTS VIOLATION on speculative pointer arithmetic…
- CVE-2026-98150 CVSS 7.0 high In the Linux kernel, the following vulnerability has been resolved: bpf: Fix BPF_F_CPU validation for sparse CPU IDs BPF_F_CPU stores the…
- CVE-2026-98149 not yet scored In the Linux kernel, the following vulnerability has been resolved: bpf: Fix percpu map update indexing with sparse CPU IDs Per-CPU array…
- CVE-2026-98148 not yet scored In the Linux kernel, the following vulnerability has been resolved: drm/gud: validate GUD_ROTATION_0 is present in supported rotations The…
- CVE-2026-98147 not yet scored In the Linux kernel, the following vulnerability has been resolved: printk: Don't WARN on kthread_run failure. Since…
- CVE-2026-98146 not yet scored In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Remove __counted_by from struct amdxdna_cmd_chain…
- CVE-2026-98145 not yet scored In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: reject a command chain that carries no commands A chain…