Linux
19,044 known vulnerabilities
Top Products
Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw
Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service o
Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.
Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tamperin
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw
Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a
Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature ov
Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a netw
Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges
Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny servi
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service ove
openSIS Classic 9.3 contains an authenticated path traversal vulnerability in the legacy messaging sent-mail attachment
In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix zerocopy completion for multi-skb
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix memory leak in hci_le_big_
Software installed and run as a non-privileged user may conduct a sequence of improper GPU system calls causing use afte
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memor
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a GPU r
Software installed and run as a non-privileged user may cause OOB kernel memory reads or writes through GPU API calls.
Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an integer overflow a
In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: preserve shared-frag marker in iptfs_c
A Weak Password Recovery Mechanism for Forgotten Password exists in Esri Portal for ArcGIS versions 12.1 and earlier on
Esri Portal for ArcGIS versions 12.1 and earlier on Windows, Linux and Kubernetes have a missing authentication for crit
Esri ArcGIS Server contains an unrestricted file upload vulnerability. An unauthenticated attacker could exploit this is
Esri ArcGIS Server contains a directory traversal vulnerability. ArcGIS Enterprise on Kubernetes is not impacted. An una
In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation p
In the Linux kernel, the following vulnerability has been resolved: af_unix: Set gc_in_progress to true in unix_gc().
In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Require in-GHCB scratch area if GHCB v2+
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to u
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use chan timer to close channels
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix UAF in l2cap_sock_cleanup_listen() v
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use-after-free issue. A
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause improper handling of highl
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper validation of allowed i
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of code generat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause server-side request forgery. A s
NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted dat
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: Fix phys BO pread/pwrite with offset
In the Linux kernel, the following vulnerability has been resolved: net: rds: clear i_sends on setup unwind The RDS IB
In the Linux kernel, the following vulnerability has been resolved: arm64: errata: Mitigate TLBI errata on various Arm
In the Linux kernel, the following vulnerability has been resolved: hsr: Remove WARN_ONCE() in hsr_addr_is_self(). syz
Frequently Asked Questions
How many CVEs affect Linux?
Linux has 19,044 CVE records in our database, including 767 critical and 8163 high severity vulnerabilities. 47 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Linux vulnerabilities?
Linux has 767 critical severity (CVSS 9.0+) and 8163 high severity (CVSS 7.0-8.9) vulnerabilities. 47 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Linux vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Linux products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Linux Vulnerabilities
CyberStrike scans your infrastructure for Linux vulnerabilities and provides real-time remediation guidance.
Get Started