VendorsLinuxlinux_kernel5.10
Vulnerabilities

Linux Kernel 5.10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

21CVEs
CVE-2025-2073
Out-of-Bounds Read in netfilter/ipset in Linux Kernel ChromeOS [6.1, 5.15, 5.10, 5.4, 4.19] allows a local attacker with low privileges to trigger an out-of-bounds read, potentially leading to information disclosure
Published 2025-04-16 · Analyzed
8.8EPSS 0.002
CVE-2020-29534
An issue was discovered in the Linux kernel before 5.9.3. io_uring takes a non-refcounted reference to the files_struct of the process that submitted a request, causing execve() to incorrectly optimize unshare_fd(), aka CID-0f2122045b94.
Published 2020-12-03 · Modified
7.8EPSS 0.005
CVE-2023-53065
perf/core: Fix perf_output_begin parameter is incorrectly invoked in perf_event_bpf_output
Published 2025-05-02 · Modified
7.8EPSS 0.002
CVE-2023-53084
drm/shmem-helper: Remove another errant put in error path
Published 2025-05-02 · Modified
7.8EPSS 0.002
CVE-2025-38227
media: vidtv: Terminating the subsequent process of initialization failure
Published 2025-07-04 · Modified
7.8EPSS 0.002
CVE-2026-43449
nvme-pci: Fix slab-out-of-bounds in nvme_dbbuf_set
Published 2026-05-08 · Analyzed
7.1EPSS 0.002
CVE-2026-53076
bpf: Fix OOB in pcpu_init_value
Published 2026-06-24 · Analyzed
7.1EPSS 0.002
CVE-2026-23315
wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211()
Published 2026-03-25 · Analyzed
7.1EPSS 0.001
CVE-2020-27825
A use-after-free flaw was found in kernel/trace/ring_buffer.c in Linux kernel (before 5.10-rc1). There was a race problem in trace_open and resize of cpu buffer running parallely on different cpus, may cause a denial of service problem (DOS). This flaw could even allow a local attacker with special user privilege to a kernel information leak threat.
Published 2020-12-11 · Modified
5.7EPSS 0.003
CVE-2020-28588
An information disclosure vulnerability exists in the /proc/pid/syscall functionality of Linux Kernel 5.1 Stable and 5.4.66. More specifically, this issue has been introduced in v5.1-rc4 (commit 631b7abacd02b88f4b0795c08b54ad4fc3e7c7c0) and is still present in v5.10-rc4, so it’s likely that all versions in between are affected. An attacker can read /proc/pid/syscall to trigger this vulnerability, which leads to the kernel leaking memory contents.
Published 2021-05-10 · Modified
5.5EPSS 0.011
CVE-2020-27673
An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. Guest OS users can cause a denial of service (host OS hang) via a high rate of events to dom0, aka CID-e99502f76271.
Published 2020-10-22 · Modified
5.5EPSS 0.004
CVE-2020-25704
A flaw memory leak in the Linux kernel performance monitoring subsystem was found in the way if using PERF_EVENT_IOC_SET_FILTER. A local user could use this flaw to starve the resources causing denial of service.
Published 2020-12-02 · Modified
5.5EPSS 0.004
CVE-2024-36000
mm/hugetlb: fix missing hugetlb_lock for resv uncharge
Published 2024-05-20 · Analyzed
5.5EPSS 0.002
CVE-2020-36789
can: dev: can_get_echo_skb(): prevent call to kfree_skb() in hard IRQ context
Published 2025-04-17 · Modified
5.5EPSS 0.002
CVE-2026-45974
btrfs: fix invalid leaf access in btrfs_quota_enable() if ref key not found
Published 2026-05-27 · Analyzed
5.5EPSS 0.002
CVE-2023-53099
firmware: xilinx: don't make a sleepable memory allocation from an atomic context
Published 2025-05-02 · Analyzed
5.5EPSS 0.001
CVE-2026-23019
net: marvell: prestera: fix NULL dereference on devlink_alloc() failure
Published 2026-01-31 · Modified
5.5EPSS 0.001
CVE-2026-23097
migrate: correct lock ordering for hugetlb file folios
Published 2026-02-04 · Analyzed
5.5EPSS 0.001
CVE-2026-23371
sched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting
Published 2026-03-25 · Modified
5.5EPSS 0.001
CVE-2022-50436
ext4: don't set up encryption key during jbd2 transaction
Published 2025-10-01 · Analyzed
5.5EPSS 0.001
CVE-2020-25656
A flaw was found in the Linux kernel. A use-after-free was found in the way the console subsystem was using ioctls KDGKBSENT and KDSKBSENT. A local user could use this flaw to get read memory access out of bounds. The highest threat from this vulnerability is to data confidentiality.
Published 2020-12-02 · Modified
4.1EPSS 0.004