Linux
19,044 known vulnerabilities
Top Products
Mounting /proc filesystem via chroot command silently mounts it in read-write mode. The user could bypass the chroot env
A flaw was found in the Linux kernel's implementation of string matching within a packet. A privileged user (with root o
IBM Cloud Pak for Data 3.0 could allow an authenticated user to obtain sensitive information when installed with additio
A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set ex
A vulnerability was found in the Linux Kernel where the function sunkbd_reinit having been scheduled by sunkbd_interrupt
A flaw was found in Linux Kernel because access to the global variable fg_console is not properly synchronized leading t
An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and
A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads to leak and eventually
A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-after-free which mig
A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-free which might lea
A memory leak vulnerability was found in Linux kernel in llcp_sock_connect
Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-mi
IBM Security Guardium 11.2 could allow a remote authenticated attacker to execute arbitrary commands on the system by se
IBM Security Guardium 11.2 could allow a remote attacker to obtain sensitive information when a detailed technical error
IBM Security Guardium 11.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for i
IBM Security Guardium 11.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hi
IBM Security Guardium 11.2 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID
IBM InfoSphere Information Server 11.7 could allow an attacker to obtain sensitive information by injecting parameters i
This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel 5.11.15. An a
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure
IBM Security Identity Manager 7.0.2 contains hard-coded credentials, such as a password or cryptographic key, which it u
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed techni
IBM Security Identity Manager 7.0.2 could allow a remote user to enumerate usernames due to a difference of responses fr
IBM Security Identity Manager 7.0.2 could allow an authenticated user to bypass security and perform actions that they s
IBM Security Identity Manager 7.0.2 stores user credentials in plain clear text which can be read by an authenticated us
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed techni
TCP firewalls could be circumvented by sending a SYN Packets with other flags (like e.g. RST flag) set, which was not co
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain highly sensitive information due to a vul
A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-l
In the Linux kernel before 5.12.4, net/bluetooth/hci_event.c has a use-after-free when destroying an hci_chan, aka CID-5
The Linux kernel before 5.11.14 has a use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c because the CIPSO and C
The block subsystem in the Linux kernel before 5.2 has a use-after-free that can lead to arbitrary code execution in the
A vulnerability was found in Linux Kernel where in the spk_ttyio_receive_buf2() function, it would dereference spk_ttyio
Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their pr
In the Linux kernel 5.11 through 5.12.2, isotp_setsockopt in net/can/isotp.c allows privilege escalation to root by leve
An issue was discovered in the Linux kernel 5.8.9. The WEP, WPA, WPA2, and WPA3 implementations reassemble fragments eve
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn
net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.
An information disclosure vulnerability exists in the /proc/pid/syscall functionality of Linux Kernel 5.1 Stable and 5.4
SABnzbd is an open source binary newsreader. A vulnerability was discovered in SABnzbd that could trick the `filesystem.
An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver m
kernel/bpf/verifier.c in the Linux kernel through 5.12.1 performs undesirable speculative loads, leading to disclosure o
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc
A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to
IBM Informix Dynamic Server 14.10 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A
NVIDIA vGPU driver contains a vulnerability in the guest kernel mode driver and Virtual GPU Manager (vGPU plugin), in wh
NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU Manager (vGPU plugin), in
NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and Virtual GPU manager (vGPU plugin), in
Frequently Asked Questions
How many CVEs affect Linux?
Linux has 19,044 CVE records in our database, including 767 critical and 8163 high severity vulnerabilities. 47 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Linux vulnerabilities?
Linux has 767 critical severity (CVSS 9.0+) and 8163 high severity (CVSS 7.0-8.9) vulnerabilities. 47 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Linux vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Linux products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Linux Vulnerabilities
CyberStrike scans your infrastructure for Linux vulnerabilities and provides real-time remediation guidance.
Get Started