VendorsLinuxlinux_kernel6.4
Vulnerabilities

Linux Kernel 6.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

63CVEs
CVE-2025-38089
sunrpc: handle SVC_GARBAGE during svc auth processing as auth error
Published 2025-06-30 · Modified
9.8EPSS 0.005
CVE-2026-23428
ksmbd: fix use-after-free of share_conf in compound request
Published 2026-04-03 · Modified
9.8EPSS 0.003
CVE-2023-53517
tipc: do not update mtu if msg_max is too small in mtu negotiation
Published 2025-10-01 · Modified
9.8EPSS 0.003
CVE-2023-53382
net/smc: Reset connection when trying to use SMCRv2 fails.
Published 2025-09-18 · Modified
9.8EPSS 0.003
CVE-2023-4515
ksmbd: validate command request size
Published 2025-08-16 · Modified
9.1EPSS 0.003
CVE-2023-53589
wifi: iwlwifi: mvm: don't trust firmware n_channels
Published 2025-10-04 · Modified
8.8EPSS 0.002
CVE-2023-53374
Bluetooth: hci_conn: fail SCO/ISO via hci_conn_failed if ACL gone early
Published 2025-09-18 · Modified
8.8EPSS 0.002
CVE-2023-1194
Use-after-free in parse_lease_state()
Published 2023-11-03 · Analyzed
8.1EPSS 0.011
CVE-2023-3865
ksmbd: fix out-of-bound read in smb2_write
Published 2025-08-16 · Modified
8.1EPSS 0.006
CVE-2023-3269
Distros-[dirtyvma] privilege escalation via non-rcu-protected vma traversal
Published 2023-07-11 · Modified
7.8EPSS 0.013
CVE-2026-23111
netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate()
Published 2026-02-13 · Modified
7.8EPSS 0.005
CVE-2023-3609
Use-after-free in Linux kernel's net/sched: cls_u32 component
Published 2023-07-21 · Analyzed
7.8EPSS 0.005
CVE-2023-52620
netfilter: nf_tables: disallow timeout for anonymous sets
Published 2024-03-21 · Modified
7.8EPSS 0.003
CVE-2023-53340
net/mlx5: Collect command failures data only for known commands
Published 2025-09-17 · Modified
7.8EPSS 0.002
CVE-2023-53640
ASoC: lpass: Fix for KASAN use_after_free out of bounds
Published 2025-10-07 · Modified
7.8EPSS 0.002
CVE-2026-43074
eventpoll: defer struct eventpoll free to RCU grace period
Published 2026-05-06 · Modified
7.8EPSS 0.002
CVE-2023-53308
net: fec: Better handle pm_runtime_get() failing in .remove()
Published 2025-09-16 · Modified
7.8EPSS 0.002
CVE-2023-53471
drm/amdgpu/gfx: disable gfx9 cp_ecc_error_irq only when enabling legacy gfx ras
Published 2025-10-01 · Analyzed
7.8EPSS 0.002
CVE-2023-53473
ext4: improve error handling from ext4_dirhash()
Published 2025-10-01 · Modified
7.8EPSS 0.002
CVE-2023-53219
media: netup_unidvb: fix use-after-free at del_timer()
Published 2025-09-15 · Modified
7.8EPSS 0.002
CVE-2023-53285
ext4: add bounds checking in get_max_inline_xattr_value_size()
Published 2025-09-16 · Modified
7.8EPSS 0.002
CVE-2023-53566
netfilter: nft_set_rbtree: fix null deref on element insertion
Published 2025-10-04 · Modified
7.8EPSS 0.002
CVE-2026-31474
can: isotp: fix tx.buf use-after-free in isotp_sendmsg()
Published 2026-04-22 · Modified
7.8EPSS 0.001
CVE-2023-53609
scsi: Revert "scsi: core: Do not increase scsi_device's iorequest_cnt if dispatch failed"
Published 2025-10-04 · Modified
7.8EPSS 0.001
CVE-2026-63802
blk-cgroup: fix UAF in __blkcg_rstat_flush()
Published 2026-07-19 · Analyzed
7.8EPSS 0.001
CVE-2023-53580
USB: Gadget: core: Help prevent panic during UVC unconfigure
Published 2025-10-04 · Modified
7.8EPSS 0.001
CVE-2023-53178
mm: fix zswap writeback race condition
Published 2025-09-15 · Modified
7.8EPSS 0.001
CVE-2026-23412
netfilter: bpf: defer hook memory release until rcu readers are done
Published 2026-04-02 · Modified
7.8EPSS 0.001
CVE-2023-3866
ksmbd: validate session id and tree id in the compound request
Published 2025-08-16 · Modified
7.5EPSS 0.111
CVE-2026-53383
ksmbd: reject non-VALID session in compound request branch
Published 2026-07-19 · Analyzed
7.5EPSS 0.007
CVE-2026-23440
net/mlx5e: Fix race condition during IPSec ESN update
Published 2026-04-03 · Modified
7.5EPSS 0.002
CVE-2023-6606
Kernel: out-of-bounds read vulnerability in smbcalcsize
Published 2023-12-08 · Modified
7.1EPSS 0.005
CVE-2024-0775
Kernel: use-after-free while changing the mount option in __ext4_remount leading
Published 2024-01-22 · Modified
7.1EPSS 0.002
CVE-2023-53499
virtio_net: Fix error unwinding of XDP initialization
Published 2025-10-01 · Modified
7.0EPSS 0.002
CVE-2024-0443
Kernel: blkio memory leakage due to blkcg and some blkgs are not freed after they are made offline.
Published 2024-01-11 · Modified
5.5EPSS 0.002
CVE-2024-27412
power: supply: bq27xxx-i2c: Do not free non existing IRQ
Published 2024-05-17 · Analyzed
5.5EPSS 0.002
CVE-2024-0340
Kernel: information disclosure in vhost/vhost.c:vhost_new_msg()
Published 2024-01-09 · Modified
5.5EPSS 0.002
CVE-2023-52657
Revert "drm/amd/pm: resolve reboot exception for si oland"
Published 2024-05-17 · Analyzed
5.5EPSS 0.002
CVE-2025-21705
mptcp: handle fastopen disconnect correctly
Published 2025-02-27 · Modified
5.5EPSS 0.002
CVE-2023-53347
net/mlx5: Handle pairing of E-switch via uplink un/load APIs
Published 2025-09-17 · Modified
5.5EPSS 0.002
1 / 2Next →