VendorsLinuxlinux_kernelany version
Vulnerabilities

Linux Kernel any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18467CVEs
CVE-2026-52958
libceph: Fix potential out-of-bounds access in osdmap_decode()
Published 2026-06-24 · Analyzed
9.1EPSS 0.007
CVE-2026-43407
libceph: Fix potential out-of-bounds access in ceph_handle_auth_reply()
Published 2026-05-08 · Analyzed
9.1EPSS 0.007
CVE-2026-53043
ocfs2/dlm: validate qr_numregions in dlm_match_regions()
Published 2026-06-24 · Analyzed
9.1EPSS 0.007
CVE-2021-47354
drm/sched: Avoid data corruptions
Published 2024-05-21 · Modified
9.1EPSS 0.007
CVE-2026-43406
libceph: prevent potential out-of-bounds reads in process_message_header()
Published 2026-05-08 · Analyzed
9.1EPSS 0.007
CVE-2026-46119
libceph: Fix slab-out-of-bounds access in auth message processing
Published 2026-05-28 · Undergoing Analysis
9.1EPSS 0.007
CVE-2026-64269
RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg
Published 2026-07-25 · Modified
9.1EPSS 0.007
CVE-2026-46266
inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP
Published 2026-06-03 · Modified
9.1EPSS 0.007
CVE-2026-64393
ksmbd: run set info with opener credentials
Published 2026-07-25 · Analyzed
9.1EPSS 0.007
CVE-2026-64257
smb: client: reject overlapping data areas in SMB2 responses
Published 2026-07-25 · Analyzed
9.1EPSS 0.007
CVE-2026-46185
smb/client: fix out-of-bounds read in symlink_data()
Published 2026-05-28 · Analyzed
9.1EPSS 0.007
CVE-2020-4926
A vulnerability in the Spectrum Scale 5.1 core component and IBM Elastic Storage System 6.1 could allow unauthorized access to user data or injection of arbitrary data in the communication protocol. IBM X-Force ID: 191600.
Published 2022-05-24 · Modified
9.1EPSS 0.007
CVE-2021-47478
isofs: Fix out of bound access for corrupted isofs image
Published 2024-05-22 · Modified
9.1EPSS 0.007
CVE-2023-52441
ksmbd: fix out of bounds in init_smb2_rsp_hdr()
Published 2024-02-21 · Modified
9.1EPSS 0.007
CVE-2024-26665
tunnels: fix out of bounds access when building IPv6 PMTU error
Published 2024-04-02 · Modified
9.1EPSS 0.007
CVE-2024-41783
IBM Sterling Secure Proxy improper input validation
Published 2025-01-19 · Analyzed
9.1EPSS 0.007
CVE-2021-39063
IBM Spectrum Protect Plus 10.1.0.0 through 10.1.8.x uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information due to a misconfiguration in access control headers. IBM X-Force ID: 214956.
Published 2021-12-13 · Modified
9.1EPSS 0.007
CVE-2026-43197
netconsole: avoid OOB reads, msg is not nul-terminated
Published 2026-05-06 · Modified
9.1EPSS 0.007
CVE-2022-48829
NFSD: Fix NFSv3 SETATTR/CREATE's handling of large file sizes
Published 2024-07-16 · Modified
9.1EPSS 0.007
CVE-2026-46155
smb/client: fix out-of-bounds read in smb2_compound_op()
Published 2026-05-28 · Analyzed
9.1EPSS 0.007
CVE-2026-31636
rxrpc: fix RESPONSE authenticator parser OOB read
Published 2026-04-24 · Analyzed
9.1EPSS 0.006
CVE-2026-43083
net: ioam6: fix OOB and missing lock
Published 2026-05-06 · Analyzed
9.1EPSS 0.006
CVE-2022-48828
NFSD: Fix ia_size underflow
Published 2024-07-16 · Modified
9.1EPSS 0.006
CVE-2026-19297
Insufficient Authentication Brute Force Protection on Login Endpoint
Published 2026-08-13 · Analyzed
9.1EPSS 0.006
CVE-2023-52801
iommufd: Fix missing update of domains_itree after splitting iopt_area
Published 2024-05-21 · Modified
9.1EPSS 0.006
CVE-2026-8646
IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities
Published 2026-06-22 · Analyzed
9.1EPSS 0.006
CVE-2024-49571
net/smc: check iparea_offset and ipv6_prefixes_cnt when receiving proposal msg
Published 2025-01-11 · Modified
9.1EPSS 0.006
CVE-2023-44152
Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.
Published 2023-09-27 · Modified
9.1EPSS 0.006
CVE-2024-46958
In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (between the server and client) may become world writable or world readable. This is fixed in 3.13.4.
Published 2024-09-16 · Modified
9.1EPSS 0.006
CVE-2026-82011
Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89)
Published 2026-09-22 · Analyzed
9.1EPSS 0.006
CVE-2025-33117
IBM QRadar SIEM command execution
Published 2025-06-19 · Analyzed
9.1EPSS 0.006
CVE-2024-53146
NFSD: Prevent a potential integer overflow
Published 2024-12-24 · Modified
9.1EPSS 0.005
CVE-2026-64450
tipc: fix out-of-bounds read in broadcast Gap ACK blocks
Published 2026-07-25 · Analyzed
9.1EPSS 0.005
CVE-2022-43842
IBM Aspera Console SQL injection
Published 2024-02-23 · Analyzed
9.1EPSS 0.005
CVE-2026-64319
nvmet-auth: validate reply message payload bounds against transfer length
Published 2026-07-25 · Analyzed
9.1EPSS 0.005
CVE-2025-23327
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer overflow through specially crafted inputs. A successful exploit of this vulnerability might lead to denial of service and data tampering.
Published 2025-08-06 · Analyzed
9.1EPSS 0.005
CVE-2026-46043
RDMA/rxe: Validate pad and ICRC before payload_size() in rxe_rcv
Published 2026-05-27 · Analyzed
9.1EPSS 0.005
CVE-2026-3627
Multiple Vulnerabilities in IBM Concert Software
Published 2026-08-28 · Analyzed
9.1EPSS 0.005
CVE-2024-38337
IBM Sterling Secure Proxy improper input validation
Published 2025-01-19 · Analyzed
9.1EPSS 0.005
CVE-2026-64392
ksmbd: use opener credentials for delete-on-close
Published 2026-07-25 · Analyzed
9.1EPSS 0.005
← Prev43 / 462Next →