linux

15,098 tracked vulnerabilities.

CVE-2026-23423 MEDIUM
btrfs: free pages on error in btrfs_uring_read_extent()
Apr 03, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-23422
dpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler
Apr 03, 2026
EPSS 0.00
CVE-2026-23421
drm/xe/configfs: Free ctx_restore_mid_bb in release
Apr 03, 2026
EPSS 0.00
CVE-2026-23420
wifi: wlcore: Fix a locking bug
Apr 03, 2026
EPSS 0.00
CVE-2026-23419 HIGH
net/rds: Fix circular locking dependency in rds_tcp_tune
Apr 03, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23418
Linux Kernel drm/xe reg_sr - xa_store Failure Memory Leak
Apr 03, 2026
EPSS 0.00
CVE-2026-23417
bpf: Fix constant blinding for PROBE_MEM32 stores
Apr 02, 2026
EPSS 0.00
CVE-2026-23416
mm/mseal: update VMA end correctly on merge
Apr 02, 2026
EPSS 0.00
CVE-2026-23415 HIGH
futex: Fix UaF between futex_key_to_node_opt() and vma_replace_policy()
Apr 02, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23414 HIGH
tls: Purge async_hold in tls_decrypt_async_wait()
Apr 02, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23413 HIGH
clsact: Fix use-after-free in init/destroy rollback asymmetry
Apr 02, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23412 HIGH
netfilter: bpf: defer hook memory release until rcu readers are done
Apr 02, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23411 HIGH
apparmor: fix race between freeing data and fs accessing it
Apr 01, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23410 HIGH
apparmor: fix race on rawdata dereference
Apr 01, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23409
apparmor: fix differential encoding verification
Apr 01, 2026
EPSS 0.00
CVE-2026-23408 HIGH
apparmor: Fix double free of ns_name in aa_replace_profiles()
Apr 01, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23407 HIGH
apparmor: fix missing bounds check on DEFAULT table in verify_dfa()
Apr 01, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23406 HIGH
apparmor: fix side-effect bug in match_char() macro usage
Apr 01, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-23405 MEDIUM
apparmor: fix: limit the number of levels of policy namespaces
Apr 01, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-23404 MEDIUM
apparmor: replace recursive profile removal with iterative approach
Apr 01, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-23403 MEDIUM
apparmor: fix memory leak in verify_header
Apr 01, 2026
CVSS 5.5
EPSS 0.00
CVE-2026-23402
KVM: x86/mmu: Only WARN in direct MMUs when overwriting shadow-present SPTE
Apr 01, 2026
EPSS 0.00
CVE-2026-23401
KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE
Apr 01, 2026
EPSS 0.00
CVE-2026-23400
rust_binder: call set_notification_done() without proc lock
Mar 29, 2026
EPSS 0.00
CVE-2026-23399 MEDIUM
nf_tables: nft_dynset: fix possible stateful expression memleak in error path
Mar 28, 2026
CVSS 5.5
EPSS 0.00