Linux Security News

Security news specific to Linux: kernel and distribution vulnerabilities, patches and exploitation affecting Linux systems.

Linux underpins most of the internet's servers, cloud infrastructure and embedded devices, so kernel and distribution-level vulnerabilities matter more than their raw numbers suggest. CVEs, exploits and patches for the kernel and major distributions land here: the kind of privilege-escalation and remote-exploitation bugs that hit whole fleets, not just individual desktops.

Recent Linux items

CVE-2026-90049 In the Linux kernel, the following vulnerability has been resolved: net: skbuff: don't skb_tx_error() the source skb in skb_zerocopy() skb_zerocopy() copies frags from into @to. On an s…
@cveNotify · Sep 28, 2026
CVE-2026-90048 In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() ni_create_attr_list() allocates a fixed buffer of al_…
@cveNotify · Sep 28, 2026
CVE-2026-90047 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't hand out the flat CCS storage as usable VRAM get_flat_ccs_offset() reads the base of the flat CCS stora…
@cveNotify · Sep 28, 2026
CVE-2026-90046 In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: don't spin_trylock() in NMI on UP Patch series "mm/page_alloc: fixes for free_pages_nolock() on RT/UP"…
@cveNotify · Sep 28, 2026
CVE-2026-97686 Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in the IPNET subsystem failing to properly release allocated kernel memory and system file descriptors bef…
@cveNotify · Sep 28, 2026
CVE-2026-16529 A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affected d…
@cveNotify · Sep 28, 2026
CVE-2026-16527 An unauthenticated remote attacker can bypass access controls by sending crafted requests to the PCP pmproxy /store endpoint. This allows the attacker to overwrite any PMDA metric, lead…
@cveNotify · Sep 28, 2026
CVE-2026-16526 A flaw in the PCP linux_sockets module exposes an unsecured internal connection. An attacker with initial code execution can exploit this to escalate privileges and execute arbitrary co…
@cveNotify · Sep 28, 2026
CVE-2026-16524 A command injection flaw in PCP's linux_sockets PMDA allows malicious shell metacharacters via the network.persocket.filter metric. This failed validation lets attackers execute arbitra…
@cveNotify · Sep 28, 2026
CVE-2026-97027 Flatpak passes through arbitrary vendor-extension keys unmodified when exporting an application's Desktop Entry (.desktop) and D-Bus Service (.service) files, instead of validating agai…
@cveNotify · Sep 28, 2026
CVE-2026-97026 Flatpak creates temporary child repository directories under the user cache with world-writable permissions (0777). On multi-user systems with a permissive umask, other local users coul…
@cveNotify · Sep 28, 2026
CVE-2026-97025 Flatpak writes the OCI repository authentication token with world-readable permissions (0644) in the system-helper's cache directory, allowing other local users on a multi-user system t…
@cveNotify · Sep 28, 2026
CVE-2026-18415 ieee802154_send() in subsys/net/l2/ieee802154/ieee802154.c copies the outgoing packet into a single fixed 125-byte transmit buffer (tx_frame_buf_pool, sized IEEE802154_MTU). In builds w…
@cveNotify · Sep 28, 2026
CVE-2026-18414 The ADC API requires each driver to reject a sampling sequence whose destination buffer is too small: the buffer_size field of struct adc_sequence in include/zephyr/drivers/adc.h docume…
@cveNotify · Sep 28, 2026
CVE-2026-18413 The ADC API requires each driver to reject a sampling sequence whose destination buffer is too small: the buffer_size field of struct adc_sequence in include/zephyr/drivers/adc.h docume…
@cveNotify · Sep 28, 2026
CVE-2026-16513 The userspace verifier z_vrfy_rtio_sqe_copy_in_get_handles() in subsys/rtio/rtio_syscalls.c (subsys/rtio/rtio_handlers.c before v4.3.0) validated the RTIO object handle and the sqes inp…
@cveNotify · Sep 28, 2026
CVE-2026-97686 Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in the IPNET subsystem failing to properly release allocated kernel memory and system file descriptors bef…
@cveNotify · Sep 28, 2026
CVE-2026-97686 Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in the IPNET subsystem failing to properly release allocated kernel memory and system file descriptors bef…
@cveNotify · Sep 28, 2026
CVE-2026-97023 A path traversal vulnerability in Flatpak's handling of the export/bin directory during app deployment allows a malicious Flatpak app to cause deletion of attacker-chosen files outside…
@cveNotify · Sep 28, 2026
CVE-2026-102010 A flaw was found in GCC. When an application calls the erase_if function on a binary heap priority queue in libstdc++, the library reallocates storage but fails to update its internal…
@cveNotify · Sep 28, 2026
CVE-2026-97686 Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in the IPNET subsystem failing to properly release allocated kernel memory and system file descriptors bef…
@cveNotify · Sep 28, 2026
CVE-2026-97023 A path traversal vulnerability in Flatpak's handling of the export/bin directory during app deployment allows a malicious Flatpak app to cause deletion of attacker-chosen files outside…
@cveNotify · Sep 28, 2026
CVE-2026-102010 A flaw was found in GCC. When an application calls the erase_if function on a binary heap priority queue in libstdc++, the library reallocates storage but fails to update its internal…
@cveNotify · Sep 28, 2026
CVE-2026-93841 vLLM through 0.29.0 contains a memory corruption vulnerability in the Triton _bincount_kernel where prompt token IDs index the penalty prompt-presence bitset without bounds checking aga…
@cveNotify · Sep 28, 2026
CVE-2026-96740 A flaw was found in the StreamsHub Console for Apache Kafka. Tenant-supplied Kafka client properties from the Console custom resource are copied into the console-api AdminClient configu…
@cveNotify · Sep 28, 2026
CVE-2026-87114 A flaw was found in kube-compare. When processing a 'container://' reference path, the tool incorrectly executes an untrusted container image's entrypoint instead of merely extracting d…
@cveNotify · Sep 28, 2026
CVE-2026-101894 The decompress package for Node.js extracts archives. Prior to 10.2.2 and 11.1.4, the default decompress(input, output) API relies on lexical containment checks that do not account for…
@cveNotify · Sep 28, 2026
CVE-2026-101333 A flaw was found in the Micrometer user-event metrics listener of Keycloak, a solution for integrated identity and access management. The issue occurs when the listener is configured t…
@cveNotify · Sep 28, 2026
CVE-2026-82935 mH-DEVELOPER smart home module ships with an end-of-life, unsupported Debian 8 and Node.js runtime v17.0.1 in its production firmware. This exposes the device to publicly known vulnerab…
@cveNotify · Sep 28, 2026
CVE-2026-101333 A flaw was found in the Micrometer user-event metrics listener of Keycloak, a solution for integrated identity and access management. The issue occurs when the listener is configured t…
@cveNotify · Sep 28, 2026

Other topics

CVE
Recent CVE identifiers and vulnerability disclosures aggregated from security feeds: new IDs, published advisories, and the vendors and products they affect.
Ransomware
Ransomware attacks, extortion group activity, victim disclosures and decryptor releases.
Phishing
Phishing campaigns, credential-harvesting kits, and social-engineering techniques used to compromise users and organizations.
Zero-Day
Zero-day vulnerabilities being actively exploited before a patch exists, and the fixes that follow.
Data Breach
Confirmed and reported data breaches: what was exposed, which organizations were affected, and how the incident came to light.
Exploit
Public exploit code, proof-of-concept releases, and technical exploitation write-ups for known vulnerabilities.