Linux Kernel CVE Tracker

16,385 vulnerabilities indexed - updated daily from NIST NVD

LinuxCVETracker is a free, searchable database of 16,385 Linux kernel CVEs, sourced daily from the NIST National Vulnerability Database and the CISA Known Exploited Vulnerabilities catalog. Of these, 265 are rated Critical severity and 25 have been confirmed as actively exploited. Use it to search, filter, and monitor Linux kernel security vulnerabilities by severity, year, affected package, or exploitation status.

CVE Statistics

16,385
Total CVEs
265
Critical
4,520
High
25
KEV - Actively Exploited

Linux Kernel CVE Database

All time 2026 2025 2024 2023 2022 2021 2020 2019 2018 2017 2016 2015 2014 2013 2012 2011 2010 2009 2008 2007 2006 2005 2004 2003 2002 2001 2000 1999 1998
16,385 vulnerabilities
Page 1 of 820
CVE ID Package Severity CVSS Published Description
CVE-2026-64555 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_han…
CVE-2026-64554 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: fix stale prevhdr pointer in br_…
CVE-2026-64553 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: net: psample: fix info leak in PSAMPLE_ATTR_DATA ps…
CVE-2026-64552 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix len check in receive_big() receive_…
CVE-2026-64551 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: sctp: validate STALE_COOKIE cause length before rea…
CVE-2026-64550 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: validate MAP frame length bef…
CVE-2026-64549 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bpa10x: avoid OOB read of revision strin…
CVE-2026-64548 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: reject overflowing copy + len in bpf_…
CVE-2026-64547 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: net: usb: net1080: validate packet_len before pad-b…
CVE-2026-64546 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: drm/edid: fix OOB read in drm_parse_tiled_block() d…
CVE-2026-64545 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: net, bpf: check master for NULL in xdp_master_redir…
CVE-2026-64544 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: crypto: asymmetric_keys - fix OOB read in pefile_di…
CVE-2026-64543 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: tipc: fix use-after-free of the discoverer in tipc_…
CVE-2026-64542 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: ipv6: ndisc: fix NULL deref in accept_untracked_na(…
CVE-2026-64541 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: net/smc: fix UAF in smc_cdc_rx_handler() by pinning…
CVE-2026-64540 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: usbnet: gl620a: fix out-of-bounds read in genelink_…
CVE-2026-64539 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix stack OOB write when prepending…
CVE-2026-64538 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change(). f…
CVE-2026-64537 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: bridge: cfm: reject invalid CCM interval at configu…
CVE-2026-64536 linux Awaiting NVD 2026-07-27 In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix OOB reads in is_ap_in_tkip(…

Frequently Asked Questions

How many Linux kernel CVEs have been published in total?

As of today, 16,385 Linux kernel CVEs have been published and indexed in this database. The Linux kernel is one of the most widely tracked packages in the NIST National Vulnerability Database due to its use in servers, cloud infrastructure, Android devices, and embedded systems. View full statistics →

How many Linux kernel CVEs are actively exploited?

25 Linux kernel CVEs are listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, meaning they have been confirmed as actively exploited in the wild. These are the highest-priority vulnerabilities for patching. View all actively exploited CVEs →

How often is this database updated?

The database is updated daily from the NIST NVD API. New CVEs are typically added within 24–48 hours of NVD publication. CISA KEV status is also checked daily. Affected version data is sourced from the CVE.org API and refreshed regularly.

What is a CVSS score?

CVSS (Common Vulnerability Scoring System) is a standardised 0–10 score assigned to each CVE, measuring its technical severity. Scores 9.0–10.0 are Critical, 7.0–8.9 are High, 4.0–6.9 are Medium, and 0.1–3.9 are Low. CVSS scores are assigned by NIST analysts and updated as new information emerges.

What is the CISA KEV catalog?

The CISA Known Exploited Vulnerabilities (KEV) catalog is maintained by the US Cybersecurity and Infrastructure Security Agency. It lists CVEs confirmed as actively exploited in real-world attacks. US federal agencies are required to patch KEV-listed vulnerabilities within a defined deadline. The catalog is a high-signal filter for security teams prioritising patching efforts.