VendorsLinuxlinux_kernel7.0
Vulnerabilities

Linux Kernel 7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

827CVEs
CVE-2026-43076
ocfs2: validate inline data i_size during inode read
Published 2026-05-06 · Modified
7.8EPSS 0.002
CVE-2026-31507
net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer
Published 2026-04-22 · Modified
7.8EPSS 0.002
CVE-2026-31396
net: macb: fix use-after-free access to PTP clock
Published 2026-04-03 · Modified
7.8EPSS 0.002
CVE-2026-31485
spi: spi-fsl-lpspi: fix teardown order issue (UAF)
Published 2026-04-22 · Modified
7.8EPSS 0.002
CVE-2026-31665
netfilter: nft_ct: fix use-after-free in timeout object destroy
Published 2026-04-24 · Modified
7.8EPSS 0.002
CVE-2026-31769
gpib: fix use-after-free in IO ioctl handlers
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-43027
netfilter: nf_conntrack_helper: pass helper to expect cleanup
Published 2026-05-01 · Modified
7.8EPSS 0.002
CVE-2026-31403
NFSD: Hold net reference for the lifetime of /proc/fs/nfs/exports fd
Published 2026-04-03 · Modified
7.8EPSS 0.002
CVE-2026-23406
apparmor: fix side-effect bug in match_char() macro usage
Published 2026-04-01 · Analyzed
7.8EPSS 0.002
CVE-2026-43324
USB: dummy-hcd: Fix interrupt synchronization error
Published 2026-05-08 · Analyzed
7.8EPSS 0.002
CVE-2026-43180
net: usb: kaweth: remove TX queue manipulation in kaweth_set_rx_mode
Published 2026-05-06 · Analyzed
7.8EPSS 0.002
CVE-2026-31759
usb: ulpi: fix double free in ulpi_register_interface() error path
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-43020
Bluetooth: MGMT: validate LTK enc_size on load
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-43074
eventpoll: defer struct eventpoll free to RCU grace period
Published 2026-05-06 · Modified
7.8EPSS 0.002
CVE-2026-43047
HID: multitouch: Check to ensure report responses match the request
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-31747
comedi: me4000: Fix potential overrun of firmware buffer
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-31630
rxrpc: proc: size address buffers for %pISpc output
Published 2026-04-24 · Modified
7.8EPSS 0.002
CVE-2026-31673
af_unix: read UNIX_DIAG_VFS data under unix_state_lock
Published 2026-04-25 · Modified
7.8EPSS 0.002
CVE-2026-64108
cifs: Fix busy dentry used after unmounting
Published 2026-07-19 · Analyzed
7.8EPSS 0.002
CVE-2026-43476
iio: chemical: sps30_i2c: fix buffer size in sps30_i2c_read_meas()
Published 2026-05-13 · Analyzed
7.8EPSS 0.002
CVE-2026-31748
comedi: me_daq: Fix potential overrun of firmware buffer
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-43328
cpufreq: governor: fix double free in cpufreq_dbs_governor_init() error path
Published 2026-05-08 · Modified
7.8EPSS 0.002
CVE-2026-31453
xfs: avoid dereferencing log items after push callbacks
Published 2026-04-22 · Analyzed
7.8EPSS 0.002
CVE-2026-43339
ipv6: prevent possible UaF in addrconf_permanent_addr()
Published 2026-05-08 · Analyzed
7.8EPSS 0.002
CVE-2026-43205
dpaa2-switch: validate num_ifs to prevent out-of-bounds write
Published 2026-05-06 · Analyzed
7.8EPSS 0.002
CVE-2026-43128
RDMA/umem: Fix double dma_buf_unpin in failure path
Published 2026-05-06 · Analyzed
7.8EPSS 0.002
CVE-2026-43060
netfilter: nft_ct: drop pending enqueued packets on removal
Published 2026-05-05 · Analyzed
7.8EPSS 0.002
CVE-2026-31548
wifi: cfg80211: cancel pmsr_free_wk in cfg80211_pmsr_wdev_down
Published 2026-04-24 · Analyzed
7.8EPSS 0.002
CVE-2026-31683
batman-adv: avoid OGM aggregation when skb tailroom is insufficient
Published 2026-04-25 · Analyzed
7.8EPSS 0.002
CVE-2026-31720
usb: gadget: f_uac1_legacy: validate control request size
Published 2026-05-01 · Analyzed
7.8EPSS 0.002
CVE-2026-31768
iio: adc: ti-adc161s626: use DMA-safe memory for spi_read()
Published 2026-05-01 · Modified
7.8EPSS 0.002
CVE-2026-23274
netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM timer labels
Published 2026-03-20 · Modified
7.8EPSS 0.002
CVE-2026-43093
xsk: tighten UMEM headroom validation to account for tailroom and min frame
Published 2026-05-06 · Modified
7.8EPSS 0.002
CVE-2026-31489
spi: meson-spicc: Fix double-put in remove path
Published 2026-04-22 · Modified
7.8EPSS 0.002
CVE-2026-43366
io_uring/kbuf: check if target buffer list is still legacy on recycle
Published 2026-05-08 · Analyzed
7.8EPSS 0.002
CVE-2026-43078
crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl
Published 2026-05-06 · Analyzed
7.8EPSS 0.002
CVE-2026-31666
btrfs: fix incorrect return value after changing leaf in lookup_extent_data_ref()
Published 2026-04-24 · Analyzed
7.8EPSS 0.002
CVE-2026-31406
xfrm: Fix work re-schedule after cancel in xfrm_nat_keepalive_net_fini()
Published 2026-04-06 · Analyzed
7.8EPSS 0.002
CVE-2026-31506
net: bcmasp: fix double free of WoL irq
Published 2026-04-22 · Analyzed
7.8EPSS 0.002
CVE-2026-31479
drm/xe: always keep track of remap prev/next
Published 2026-04-22 · Analyzed
7.8EPSS 0.002
← Prev4 / 21Next →