VendorsLinuxlinux_kernel6.16
Vulnerabilities

Linux Kernel 6.16

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

310CVEs
CVE-2025-38488
smb: client: fix use-after-free in crypt_message when using async crypto
Published 2025-07-28 · Modified
9.8EPSS 0.006
CVE-2025-38089
sunrpc: handle SVC_GARBAGE during svc auth processing as auth error
Published 2025-06-30 · Modified
9.8EPSS 0.005
CVE-2025-38439
bnxt_en: Set DMA unmap len correctly for XDP_REDIRECT
Published 2025-07-25 · Modified
9.8EPSS 0.005
CVE-2026-31633
rxrpc: Fix integer overflow in rxgk_verify_response()
Published 2026-04-24 · Analyzed
9.8EPSS 0.005
CVE-2025-38527
smb: client: fix use-after-free in cifs_oplock_break
Published 2025-08-16 · Modified
9.8EPSS 0.004
CVE-2025-38325
ksmbd: add free_transport ops in ksmbd connection
Published 2025-07-10 · Modified
9.8EPSS 0.004
CVE-2025-38471
tls: always refresh the queue when reading sock
Published 2025-07-28 · Modified
9.8EPSS 0.004
CVE-2025-38472
netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
Published 2025-07-28 · Modified
9.8EPSS 0.004
CVE-2025-38476
rpl: Fix use-after-free in rpl_do_srh_inline().
Published 2025-07-28 · Modified
9.8EPSS 0.003
CVE-2025-38411
netfs: Fix double put of request
Published 2025-07-25 · Modified
9.8EPSS 0.003
CVE-2025-38490
net: libwx: remove duplicate page_pool_put_full_page()
Published 2025-07-28 · Modified
9.8EPSS 0.003
CVE-2025-38246
bnxt: properly flush XDP redirect lists
Published 2025-07-09 · Modified
9.8EPSS 0.003
CVE-2025-38533
net: libwx: fix the using of Rx buffer DMA
Published 2025-08-16 · Modified
9.8EPSS 0.003
CVE-2025-39726
s390/ism: fix concurrency management in ism_cmd()
Published 2025-09-05 · Modified
9.8EPSS 0.002
CVE-2025-38552
mptcp: plug races between subflow fail and subflow creation
Published 2025-08-16 · Modified
9.4EPSS 0.003
CVE-2026-31636
rxrpc: fix RESPONSE authenticator parser OOB read
Published 2026-04-24 · Analyzed
9.1EPSS 0.004
CVE-2025-38365
btrfs: fix a race between renames and directory logging
Published 2025-07-25 · Modified
9.1EPSS 0.003
CVE-2025-38437
ksmbd: fix potential use-after-free in oplock/lease break ack
Published 2025-07-25 · Modified
8.8EPSS 0.004
CVE-2025-38495
HID: core: ensure the allocated report buffer can contain the reserved report ID
Published 2025-07-28 · Modified
8.8EPSS 0.003
CVE-2025-38377
rose: fix dangling neighbour pointers in rose_rt_device_down()
Published 2025-07-25 · Modified
8.8EPSS 0.002
CVE-2025-38512
wifi: prevent A-MSDU attacks in mesh networks
Published 2025-08-16 · Modified
8.8EPSS 0.002
CVE-2025-38253
HID: wacom: fix crash in wacom_aes_battery_handler()
Published 2025-07-09 · Modified
8.8EPSS 0.002
CVE-2025-38238
scsi: fnic: Fix crash in fnic_wq_cmpl_handler when FDMI times out
Published 2025-07-09 · Modified
8.8EPSS 0.002
CVE-2025-38600
wifi: mt76: mt7925: fix off by one in mt7925_mcu_hw_scan()
Published 2025-08-19 · Modified
8.8EPSS 0.002
CVE-2025-38511
drm/xe/pf: Clear all LMTT pages on alloc
Published 2025-08-16 · Modified
8.8EPSS 0.002
CVE-2025-38367
LoongArch: KVM: Avoid overflow with array index
Published 2025-07-25 · Modified
8.8EPSS 0.001
CVE-2025-38375
virtio-net: ensure the received length does not exceed allocated size
Published 2025-07-25 · Modified
8.4EPSS 0.002
CVE-2025-38395
regulator: gpio: Fix the out-of-bounds access to drvdata::gpiods
Published 2025-07-25 · Modified
8.4EPSS 0.002
CVE-2026-31631
rxrpc: Fix buffer overread in rxgk_do_verify_authenticator()
Published 2026-04-24 · Analyzed
8.2EPSS 0.004
CVE-2025-38491
mptcp: make fallback action and fallback decision atomic
Published 2025-07-28 · Modified
8.2EPSS 0.002
CVE-2025-38352
posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del()
Published 2025-07-22 · Analyzed
7.8KEVEPSS 0.013
CVE-2025-38248
bridge: mcast: Fix use-after-free during router port configuration
Published 2025-07-09 · Modified
7.8EPSS 0.003
CVE-2025-38236
af_unix: Don't leave consecutive consumed OOB skbs.
Published 2025-07-08 · Modified
7.8EPSS 0.003
CVE-2025-38111
net/mdiobus: Fix potential out-of-bounds read/write access
Published 2025-07-03 · Modified
7.8EPSS 0.002
CVE-2025-38494
HID: core: do not bypass hid_hw_raw_request
Published 2025-07-28 · Modified
7.8EPSS 0.002
CVE-2025-38115
net_sched: sch_sfq: fix a potential crash on gso_skb handling
Published 2025-07-03 · Modified
7.8EPSS 0.002
CVE-2025-38361
drm/amd/display: Check dce_hwseq before dereferencing it
Published 2025-07-25 · Analyzed
7.8EPSS 0.002
CVE-2025-38350
net/sched: Always pass notifications when child class becomes empty
Published 2025-07-19 · Modified
7.8EPSS 0.002
CVE-2025-38416
NFC: nci: uart: Set tty->disc_data only in success path
Published 2025-07-25 · Modified
7.8EPSS 0.002
CVE-2025-38323
net: atm: add lec_mutex
Published 2025-07-10 · Analyzed
7.8EPSS 0.002
1 / 8Next →