Linux kernel
This hub aggregates every CVE we track for Linux kernel, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
16,077
CVEs tracked
624
Critical
6,630
High
31
In CISA KEV
Severity distribution
MEDIUM8,388HIGH6,630CRITICAL624LOW435
Monthly trend
279
415
280
356
229
910
207
281
551
376
404
188
738
638
102
604
208
64
171
377
1023
513
487
26
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Linux kernel.
- CVE-2026-64599crypto: amlogic - avoid double cleanup in meson_crypto_probe()7.8
- CVE-2026-64601ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on each resubmission7.8
- CVE-2026-64598smb/client: Fix error code in smb2_aead_req_alloc()8.8
- CVE-2026-64597smb: client: fix double-free in SMB2_close() replay9.8
- CVE-2026-64588fuse-uring: fix data races on ring->ready7.8
- CVE-2026-64586wifi: brcmfmac: drain bus_reset work on device removal8.8
- CVE-2026-64587net: ethernet: arc: emac: quiesce interrupts before requesting IRQ7.0
- CVE-2026-64585can: esd_usb: kill anchored URBs before freeing netdevs7.8
- CVE-2026-64583usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown7.8
- CVE-2026-64584usb: gadget: f_midi: cancel pending IN work before freeing the midi object7.8
- CVE-2026-64582RDMA/rxe: Fix a use-after-free problem in rxe_mmap7.8
- CVE-2026-64581xfrm: fix sk_dst_cache double-free in xfrm_user_policy()7.8
- CVE-2026-64580xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst()7.8
- CVE-2026-64578ksmbd: validate compound request size before reading StructureSize28.2
- CVE-2026-64577gtp: check skb_pull_data() return in gtp1u_send_echo_resp()7.5
Product normalization is registry-driven with AI assist and human review. How it works