VendorsLinuxlinux_kernelany version
Vulnerabilities

Linux Kernel any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18475CVEs
CVE-2024-35915
nfc: nci: Fix uninit-value in nci_dev_up and nci_ntf_packet
Published 2024-05-19 · Modified
8.8EPSS 0.003
CVE-2017-0311
NVIDIA GPU Display Driver R378 contains a vulnerability in the kernel mode layer handler where improper access control may lead to denial of service or possible escalation of privileges.
Published 2017-02-15 · Modified
8.8EPSS 0.003
CVE-2024-26856
net: sparx5: Fix use after free inside sparx5_del_mact_entry
Published 2024-04-17 · Modified
8.8EPSS 0.003
CVE-2025-11460
Use after free in Storage in Google Chrome prior to 141.0.7390.65 allowed a remote attacker to execute arbitrary code via a crafted video file. (Chromium security severity: High)
Published 2025-11-06 · Analyzed
8.8EPSS 0.003
CVE-2022-49471
rtw89: cfo: check mac_id to avoid out-of-bounds
Published 2025-02-26 · Modified
8.8EPSS 0.003
CVE-2025-8576
Use after free in Extensions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)
Published 2025-08-07 · Analyzed
8.8EPSS 0.003
CVE-2026-5910
Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap corruption via a crafted video file. (Chromium security severity: Low)
Published 2026-04-08 · Modified
8.8EPSS 0.003
CVE-2026-7344
Use after free in Accessibility in Google Chrome on Windows prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Published 2026-04-28 · Analyzed
8.8EPSS 0.003
CVE-2026-5909
Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap corruption via a crafted video file. (Chromium security severity: Low)
Published 2026-04-08 · Modified
8.8EPSS 0.003
CVE-2026-9958
Use after free in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)
Published 2026-05-28 · Analyzed
8.8EPSS 0.003
CVE-2026-9121
Out of bounds read in GPU in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-05-20 · Analyzed
8.8EPSS 0.003
CVE-2026-7334
Use after free in Views in Google Chrome on Mac prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2026-04-28 · Analyzed
8.8EPSS 0.003
CVE-2026-13777
Insufficient validation of untrusted input in iOSWeb in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
Published 2026-06-30 · Modified
8.8EPSS 0.003
CVE-2026-5908
Integer overflow in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap corruption via a crafted video file. (Chromium security severity: Low)
Published 2026-04-08 · Modified
8.8EPSS 0.003
CVE-2026-7361
Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
Published 2026-04-28 · Analyzed
8.8EPSS 0.003
CVE-2026-13027
Use after free in FileSystem in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-24 · Analyzed
8.8EPSS 0.003
CVE-2026-7359
Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-04-28 · Analyzed
8.8EPSS 0.003
CVE-2022-49535
scsi: lpfc: Fix null pointer dereference after failing to issue FLOGI and PLOGI
Published 2025-02-26 · Modified
8.8EPSS 0.003
CVE-2026-10013
Use after free in WebCodecs in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Published 2026-05-28 · Analyzed
8.8EPSS 0.003
CVE-2024-47721
wifi: rtw89: remove unused C2H event ID RTW89_MAC_C2H_FUNC_READ_WOW_CAM to prevent out-of-bounds reading
Published 2024-10-21 · Modified
8.8EPSS 0.003
CVE-2026-7354
Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published 2026-04-28 · Analyzed
8.8EPSS 0.003
CVE-2026-53358
Bluetooth: L2CAP: use chan timer to close channels in cleanup_listen()
Published 2026-07-02 · Analyzed
8.8EPSS 0.003
CVE-2026-3541
Inappropriate implementation in CSS in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
Published 2026-03-04 · Analyzed
8.8EPSS 0.003
CVE-2026-53072
Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER
Published 2026-06-24 · Analyzed
8.8EPSS 0.003
CVE-2024-53237
Bluetooth: fix use-after-free in device_for_each_child()
Published 2024-12-27 · Modified
8.8EPSS 0.003
CVE-2025-11205
Heap buffer overflow in WebGPU in Google Chrome prior to 141.0.7390.54 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2025-11-06 · Analyzed
8.8EPSS 0.003
CVE-2026-65097
NVIDIA NemoClaw for Linux contains a vulnerability in its installation scripts, where an attacker could cause a download of code without integrity check. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
Published 2026-08-25 · Analyzed
8.8EPSS 0.003
CVE-2023-53676
scsi: target: iscsi: Fix buffer overflow in lio_target_nacl_info_show()
Published 2025-10-07 · Modified
8.8EPSS 0.003
CVE-2026-11649
Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
8.8EPSS 0.003
CVE-2022-49479
mt76: fix tx status related use-after-free race on station removal
Published 2025-02-26 · Modified
8.8EPSS 0.003
CVE-2026-11650
Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Published 2026-06-08 · Analyzed
8.8EPSS 0.003
CVE-2025-8901
Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
Published 2025-08-13 · Analyzed
8.8EPSS 0.003
CVE-2022-48830
can: isotp: fix potential CAN frame reception race in isotp_rcv()
Published 2024-07-16 · Modified
8.8EPSS 0.003
CVE-2022-49470
Bluetooth: btmtksdio: fix use-after-free at btmtksdio_recv_event
Published 2025-02-26 · Modified
8.8EPSS 0.003
CVE-2022-48964
ravb: Fix potential use-after-free in ravb_rx_gbeth()
Published 2024-10-21 · Modified
8.8EPSS 0.003
CVE-2024-42083
ionic: fix kernel panic due to multi-buffer handling
Published 2024-07-29 · Modified
8.8EPSS 0.003
CVE-2026-11076
Type Confusion in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
Published 2026-06-04 · Analyzed
8.8EPSS 0.003
CVE-2025-40039
ksmbd: Fix race condition in RPC handle list access
Published 2025-10-28 · Modified
8.8EPSS 0.003
CVE-2025-38092
ksmbd: use list_first_entry_or_null for opinfo_get_list()
Published 2025-07-02 · Modified
8.8EPSS 0.003
CVE-2024-56653
Bluetooth: btmtk: avoid UAF in btmtk_process_coredump
Published 2024-12-27 · Modified
8.8EPSS 0.003
← Prev60 / 462Next →