VendorsLinuxlinux_kernelany version
Vulnerabilities

Linux Kernel any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18492CVEs
CVE-2025-37996
KVM: arm64: Fix uninitialized memcache pointer in user_mem_abort()
Published 2025-05-29 · Modified
8.8EPSS 0.002
CVE-2025-38511
drm/xe/pf: Clear all LMTT pages on alloc
Published 2025-08-16 · Modified
8.8EPSS 0.002
CVE-2026-53277
KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation
Published 2026-06-25 · Modified
8.8EPSS 0.002
CVE-2025-39704
LoongArch: KVM: Fix stack protector issue in send_ipi_data()
Published 2025-09-05 · Modified
8.8EPSS 0.002
CVE-2025-71112
net: hns3: add VLAN id validation before using
Published 2026-01-14 · Modified
8.8EPSS 0.002
CVE-2025-38367
LoongArch: KVM: Avoid overflow with array index
Published 2025-07-25 · Modified
8.8EPSS 0.001
CVE-2025-1095
IBM Personal Communications command execution
Published 2025-04-08 · Modified
8.8EPSS 0.001
CVE-2025-22012
Revert "arm64: dts: qcom: sdm845: Affirm IDR0.CCTW on apps_smmu"
Published 2025-04-08 · Modified
8.8EPSS 0.001
CVE-2026-63807
KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level
Published 2026-07-19 · Analyzed
8.8EPSS 0.001
CVE-2026-64115
vsock/vmci: fix UAF when peer resets connection during handshake
Published 2026-07-19 · Analyzed
8.8EPSS 0.001
CVE-2026-45945
iommu/vt-d: Fix race condition during PASID entry replacement
Published 2026-05-27 · Modified
8.8EPSS 0.001
CVE-2026-53159
misc: fastrpc: fix DMA address corruption due to find_vma misuse
Published 2026-06-25 · Modified
8.8EPSS 0.001
CVE-2026-64109
af_unix: Fix UAF read of tail->len in unix_stream_data_wait()
Published 2026-07-19 · Analyzed
8.8EPSS 0.001
CVE-2026-53053
iommu/amd: Fix clone_alias() to use the original device's devid
Published 2026-06-24 · Analyzed
8.8EPSS 0.001
CVE-2026-53170
accel/ethosu: reject DMA commands with uninitialized length
Published 2026-06-25 · Analyzed
8.8EPSS 0.001
CVE-2026-53171
accel/ethosu: fix arithmetic issues in dma_length()
Published 2026-06-25 · Analyzed
8.8EPSS 0.001
CVE-2025-54286
CSRF Vulnerability When Using Client Certificate Authentication with the LXD-UI
Published 2025-10-02 · Analyzed
8.8EPSS 0.001
CVE-2026-53188
RDMA/core: Validate the passed in fops for ib_get_ucaps()
Published 2026-06-25 · Analyzed
8.8EPSS 0.001
CVE-2026-46317
KVM: arm64: Reassign nested_mmus array behind mmu_lock
Published 2026-06-09 · Analyzed
8.8EPSS 0.001
CVE-2026-53200
KVM: arm64: nv: Fix handling of XN[0] when !FEAT_XNX
Published 2026-06-25 · Analyzed
8.8EPSS 0.001
CVE-2026-23425
KVM: arm64: Fix ID register initialization for non-protected pKVM guests
Published 2026-04-03 · Modified
8.8EPSS 0.001
CVE-2025-71202
iommu/sva: invalidate stale IOTLB entries for kernel address space
Published 2026-02-14 · Modified
8.8EPSS 0.001
CVE-2025-39961
iommu/amd/pgtbl: Fix possible race while increase page table level
Published 2025-10-09 · Modified
8.8EPSS 0.001
CVE-2021-29678
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a user with DBADM authority to access other databases and read or modify files. IBM X-Force ID: 199914.
Published 2021-12-09 · Modified
8.7EPSS 0.011
CVE-2026-35562
Allocation of resources without limits in parsing components in Amazon Athena ODBC driver
Published 2026-04-03 · Analyzed
8.7EPSS 0.007
CVE-2021-42083
Authenticated Stored XSS in OSNEXUS QuantaStor 6.0.0.335
Published 2023-07-10 · Modified
8.7EPSS 0.005
CVE-2026-77103
CommServe Information Disclosure
Published 2026-09-08 · Analyzed
8.7EPSS 0.005
CVE-2026-77102
CommServe Denial of Service
Published 2026-09-08 · Analyzed
8.7EPSS 0.005
CVE-2026-77101
CommServe Stack-based Buffer Overflow
Published 2026-09-08 · Analyzed
8.7EPSS 0.005
CVE-2025-69273
Spectrum broken authentication
Published 2026-01-12 · Analyzed
8.7EPSS 0.004
CVE-2026-30791
RustDesk Client Accepts Pseudo-Encrypted Config Strings Without Cryptographic Validation
Published 2026-03-05 · Analyzed
8.7EPSS 0.003
CVE-2026-3598
RustDesk Server Generates Config Strings Using Reversible Encoding (Base64 + Reverse) Instead of Encryption
Published 2026-03-05 · Analyzed
8.7EPSS 0.003
CVE-2026-30795
RustDesk HTTP Client Silently Accepts Invalid TLS Certificates After Handshake Failure
Published 2026-03-05 · Analyzed
8.7EPSS 0.003
CVE-2024-26822
smb: client: set correct id, uid and cruid for multiuser automounts
Published 2024-04-17 · Modified
8.7EPSS 0.002
CVE-2025-37936
perf/x86/intel: KVM: Mask PEBS_ENABLE loaded for guest with vCPU's value.
Published 2025-05-20 · Modified
8.7EPSS 0.002
CVE-2025-22117
ice: fix using untrusted value of pkt_len in ice_vc_fdir_parse_raw()
Published 2025-04-16 · Modified
8.7EPSS 0.002
CVE-2026-64104
virt: sev-guest: Explicitly leak pages in unknown state
Published 2026-07-19 · Analyzed
8.7EPSS 0.002
CVE-2026-53230
net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list
Published 2026-06-25 · Analyzed
8.7EPSS 0.001
CVE-2021-21009
Server-side request forgery (SSRF) in Campaign Classic could lead to sensitive information disclosure
Published 2021-01-13 · Analyzed
8.6EPSS 0.030
CVE-2022-28199
NVIDIA’s distribution of the Data Plane Development Kit (MLNX_DPDK) contains a vulnerability in the network stack, where error recovery is not handled properly, which can allow a remote attacker to cause denial of service and some impact to data integrity and confidentiality.
Published 2022-09-01 · Modified
8.6EPSS 0.022
← Prev68 / 463Next →