Linux
19,044 known vulnerabilities
Top Products
drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory leak (socket buffers have memory allocated
A use after free vulnerability was discovered in PDFTron SDK version 9.2.0. A crafted PDF can overwrite RIP with data pr
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
A vulnerability was found in kvm_s390_guest_sida_op in the arch/s390/kvm/kvm-s390.c function in KVM for s390 in the Linu
A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_nex
A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU
A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic
A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, whe
A flaw was found in the Linux kernel's OverlayFS subsystem in the way the user mounts the TmpFS filesystem with OverlayF
Microsoft Defender for Endpoint Spoofing Vulnerability
st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTIO
A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMC
A flaw was found in the Linux kernel. A denial of service problem is identified if an extent tree is corrupted in a craf
A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c,
An out-of-bounds (OOB) memory read flaw was found in the Qualcomm IPC router protocol in the Linux kernel. A missing san
A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls i
A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memor
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. Th
.A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the
A flaw was found in the Linux SCTP stack. A blind attacker may be able to kill an existing SCTP association through inva
A flaw was found in the "Routing decision" classifier in the Linux kernel's Traffic Control networking subsystem in the
A security vulnerability in the Spectrum Scale 5.0 and 5.1 allows a non-root user to overflow the mmfsd daemon with requ
An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID a
net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a
An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget
SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel
A flaw use after free in the Linux kernel Management Component Transport Protocol (MCTP) subsystem was found in the way
A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KV
An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write b
A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functional
A race condition accessing file object in the Linux kernel OverlayFS subsystem was found in the way users do rename in s
A flaw was found in s390 eBPF JIT in bpf_jit_insn in arch/s390/net/bpf_jit_comp.c in the Linux kernel. In this flaw, a l
In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approxim
An issue was discovered in drivers/usb/gadget/composite.c in the Linux kernel before 5.16.10. The USB Gadget subsystem l
In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from th
A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for furthe
A flaw was found in the Linux kernel. A use-after-free vulnerability in the NFC stack can lead to a threat to confidenti
A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel, which may cause an out of bo
A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket an
A flaw null pointer dereference in the Linux kernel UDF file system functionality was found in the way user triggers udf
In gc_data_segment in fs/f2fs/gc.c in the Linux kernel before 5.16.3, special files are not considered, leading to a mov
An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol subsystem, in the way
A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functio
The check_alu_op() function in kernel/bpf/verifier.c in the Linux kernel through v5.16-rc5 did not properly update bound
An issue was discovered in the Linux kernel before 5.16.5. There is a memory leak in yam_siocdevprivate in drivers/net/h
drivers/usb/gadget/legacy/inode.c in the Linux kernel through 5.16.8 mishandles dev->buf release.
An insufficiently protected credentials vulnerability exists in the Palo Alto Networks GlobalProtect app on Linux that e
SQL Server for Linux Containers Elevation of Privilege Vulnerability
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of in
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficie
Frequently Asked Questions
How many CVEs affect Linux?
Linux has 19,044 CVE records in our database, including 767 critical and 8163 high severity vulnerabilities. 47 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Linux vulnerabilities?
Linux has 767 critical severity (CVSS 9.0+) and 8163 high severity (CVSS 7.0-8.9) vulnerabilities. 47 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Linux vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Linux products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Linux Vulnerabilities
CyberStrike scans your infrastructure for Linux vulnerabilities and provides real-time remediation guidance.
Get Started