VendorsLinuxlinux_kernel5.12
Vulnerabilities

Linux Kernel 5.12

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

19CVEs
CVE-2026-31669
mptcp: fix slab-use-after-free in __inet_lookup_established
Published 2026-04-24 · Modified
9.8EPSS 0.008
CVE-2024-35789
wifi: mac80211: check/clear fast rx for non-4addr sta VLAN changes
Published 2024-05-17 · Modified
8.0EPSS 0.004
CVE-2021-3483
A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list, leading to a use-after-free when one of these devices is removed. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. Versions before kernel 5.12-rc6 are affected
Published 2021-05-17 · Modified
7.8EPSS 0.004
CVE-2026-31493
RDMA/efa: Fix use of completion ctx after free
Published 2026-04-22 · Analyzed
7.8EPSS 0.002
CVE-2024-27435
nvme: fix reconnection fail due to reserved tag allocation
Published 2024-05-17 · Modified
7.5EPSS 0.004
CVE-2021-3506
An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/node.c in the f2fs module in the Linux kernel in versions before 5.12.0-rc4. A bounds check failure allows a local attacker to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system availability.
Published 2021-04-19 · Analyzed
7.1EPSS 0.004
CVE-2021-28038
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors such as failed memory allocations (as a result of changes to the handling of grant mapping errors). A host OS denial of service may occur during misbehavior of a networking frontend driver. NOTE: this issue exists because of an incomplete fix for CVE-2021-26931.
Published 2021-03-05 · Modified
6.5EPSS 0.007
CVE-2021-4442
tcp: add sanity tests to TCP_QUEUE_SEQ
Published 2024-08-29 · Analyzed
5.5EPSS 0.004
CVE-2021-46905
net: hso: fix NULL-deref on disconnect regression
Published 2024-02-25 · Modified
5.5EPSS 0.003
CVE-2021-47009
KEYS: trusted: Fix memory leak on object td
Published 2024-02-28 · Analyzed
5.5EPSS 0.002
CVE-2022-50073
net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null
Published 2025-06-18 · Modified
5.5EPSS 0.002
CVE-2026-31483
s390/syscalls: Add spectre boundary for syscall dispatch table
Published 2026-04-22 · Analyzed
5.5EPSS 0.002
CVE-2026-31551
wifi: mac80211: Fix static_branch_dec() underflow for aql_disable.
Published 2026-04-24 · Analyzed
5.5EPSS 0.002
CVE-2022-50318
perf/x86/intel/uncore: Fix reference count leak in hswep_has_limit_sbox()
Published 2025-09-15 · Analyzed
5.5EPSS 0.002
CVE-2023-53221
bpf: Fix memleak due to fentry attach failure
Published 2025-09-15 · Modified
5.5EPSS 0.002
CVE-2025-71084
RDMA/cm: Fix leaking the multicast GID table reference
Published 2026-01-13 · Analyzed
5.5EPSS 0.001
CVE-2026-23438
net: mvpp2: guard flow control update with global_tx_fc in buffer switching
Published 2026-04-03 · Modified
5.5EPSS 0.001
CVE-2026-23113
io_uring/io-wq: check IO_WQ_BIT_EXIT inside work run loop
Published 2026-02-14 · Modified
5.5EPSS 0.001
CVE-2020-35508
A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.
Published 2021-03-26 · Modified
4.5EPSS 0.002