{"schema_version":1,"title":"Linux Kernel vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 7,007 vulnerabilities in Linux Kernel: 606 in the last 7 days and 3,701 in the last 90 days, 427 of them critical and 37 exploited in the wild. The most recent, CVE-2026-98163, was published on 26 September 2026.","url":"https://junglewise.ai/threats/technologies/kernel","json_url":"https://junglewise.ai/threats/technologies/kernel.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/kernel","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":2327,"all_time":7007,"critical":427,"exploited":37,"last_7_days":606,"last_30_days":2234,"last_90_days":3701,"last_365_days":6202},"latest":[{"cve":"CVE-2026-98163","slug":"cve-2026-98163-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel cgroup iterator use-after-free with dying tasks","severity":"info","exploited":false,"published_at":"2026-09-26T09:16:38.303+00:00","url":"https://junglewise.ai/threats/cve-2026-98163-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98162","slug":"cve-2026-98162-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel SMB server tree connection resource leak","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:27.887+00:00","url":"https://junglewise.ai/threats/cve-2026-98162-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98161","slug":"cve-2026-98161-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel NVDIMM pmem ordering barrier bypass in flush handling","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:27.77+00:00","url":"https://junglewise.ai/threats/cve-2026-98161-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98160","slug":"cve-2026-98160-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel rtl8723bs SDIO memory management error","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:27.627+00:00","url":"https://junglewise.ai/threats/cve-2026-98160-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-100079","slug":"cve-2026-100079-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel USB Type-C UCSI debugfs resource leak","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:15+00:00","url":"https://junglewise.ai/threats/cve-2026-100079-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100078","slug":"cve-2026-100078-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel iwlwifi MEI incorrect function argument","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:14.74+00:00","url":"https://junglewise.ai/threats/cve-2026-100078-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100077","slug":"cve-2026-100077-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel DRM MSM GPU pagefault in recovery","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:14.593+00:00","url":"https://junglewise.ai/threats/cve-2026-100077-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100076","slug":"cve-2026-100076-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel rtl8723bs xmit_frame/xmit_buf memory leak","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:14.44+00:00","url":"https://junglewise.ai/threats/cve-2026-100076-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100075","cvss":9.8,"slug":"cve-2026-100075-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel RDMA/srpt integer underflow in send queue accounting","severity":"critical","exploited":false,"published_at":"2026-09-25T14:17:14.163+00:00","url":"https://junglewise.ai/threats/cve-2026-100075-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100074","slug":"cve-2026-100074-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel BPF refcount field missing unique constraint","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:13.973+00:00","url":"https://junglewise.ai/threats/cve-2026-100074-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100073","slug":"cve-2026-100073-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel ext4 transaction overflow during writeback","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:13.81+00:00","url":"https://junglewise.ai/threats/cve-2026-100073-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100072","slug":"cve-2026-100072-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel ACPI platform unsafe pointer dereference","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:13.7+00:00","url":"https://junglewise.ai/threats/cve-2026-100072-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100071","slug":"cve-2026-100071-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel HSR memory leak in device setup failure","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:13.567+00:00","url":"https://junglewise.ai/threats/cve-2026-100071-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-100070","slug":"cve-2026-100070-in-the-linux-kernel-the-following-vulnerability-has-been","title":"Linux kernel netfilter SIP NAT packet offset parsing bug","severity":"info","exploited":false,"published_at":"2026-09-25T14:17:13.4+00:00","url":"https://junglewise.ai/threats/cve-2026-100070-in-the-linux-kernel-the-following-vulnerability-has-been"},{"cve":"CVE-2026-98159","slug":"cve-2026-98159-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel mt76 mt7921 bounds check bypass in CLC firmware parsing","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:47.64+00:00","url":"https://junglewise.ai/threats/cve-2026-98159-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98158","slug":"cve-2026-98158-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel ppp_async headroom panic in PPP frame reassembly","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:47.51+00:00","url":"https://junglewise.ai/threats/cve-2026-98158-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98157","slug":"cve-2026-98157-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel EDAC device sysfs integer truncation","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:47.397+00:00","url":"https://junglewise.ai/threats/cve-2026-98157-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98156","cvss":7.8,"slug":"cve-2026-98156-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel drm/virtio memory disclosure on Xen PV domains","severity":"high","exploited":false,"published_at":"2026-09-25T11:17:47.28+00:00","url":"https://junglewise.ai/threats/cve-2026-98156-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98155","slug":"cve-2026-98155-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel QAIC out-of-bounds read in resp_worker","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:47.157+00:00","url":"https://junglewise.ai/threats/cve-2026-98155-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98154","cvss":7,"slug":"cve-2026-98154-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel NVMe-RDMA double cleanup in error handling","severity":"high","exploited":false,"published_at":"2026-09-25T11:17:47.043+00:00","url":"https://junglewise.ai/threats/cve-2026-98154-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98153","slug":"cve-2026-98153-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel NVMe race condition in FDP placement id initialization","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:46.937+00:00","url":"https://junglewise.ai/threats/cve-2026-98153-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98151","slug":"cve-2026-98151-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel BPF verifier register invariants violation in speculative pointer arithmetic","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:46.693+00:00","url":"https://junglewise.ai/threats/cve-2026-98151-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98150","cvss":7,"slug":"cve-2026-98150-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel BPF validation logic error in sparse CPU ID handling","severity":"high","exploited":false,"published_at":"2026-09-25T11:17:46.58+00:00","url":"https://junglewise.ai/threats/cve-2026-98150-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98149","slug":"cve-2026-98149-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel BPF map update out-of-bounds read with sparse CPU IDs","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:46.473+00:00","url":"https://junglewise.ai/threats/cve-2026-98149-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"},{"cve":"CVE-2026-98147","slug":"cve-2026-98147-in-the-linux-kernel-the-following-vulnerability-has-been-resolved","title":"Linux kernel printk false warning on kthread creation failure","severity":"info","exploited":false,"published_at":"2026-09-25T11:17:46.257+00:00","url":"https://junglewise.ai/threats/cve-2026-98147-in-the-linux-kernel-the-following-vulnerability-has-been-resolved"}],"weekly":[{"week":"2026-06-29","critical":1,"exploited":1,"vulnerabilities":28},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":321},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":255},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":27},{"week":"2026-08-03","critical":2,"exploited":0,"vulnerabilities":19},{"week":"2026-08-10","critical":82,"exploited":0,"vulnerabilities":546},{"week":"2026-08-17","critical":22,"exploited":0,"vulnerabilities":158},{"week":"2026-08-24","critical":41,"exploited":1,"vulnerabilities":249},{"week":"2026-08-31","critical":1,"exploited":0,"vulnerabilities":204},{"week":"2026-09-07","critical":66,"exploited":0,"vulnerabilities":420},{"week":"2026-09-14","critical":32,"exploited":0,"vulnerabilities":867},{"week":"2026-09-21","critical":20,"exploited":0,"vulnerabilities":606}],"related":[],"technology":{"hub":true,"name":"Linux Kernel","slug":"kernel","vendor":{"name":"Linux","slug":"linux","url":"https://junglewise.ai/threats/vendors/linux"},"aliases":["linux-kernel","linux-kernel-accel-amdxdna-driver","linux-kernel-arm64-architecture"],"category":"operating-system","homepage":"https://www.kernel.org/","repo_url":"https://github.com/torvalds/linux","description":"The Linux kernel is an open-source, monolithic, Unix-like operating system kernel.","url":"https://junglewise.ai/threats/technologies/kernel"},"most_severe":[{"cve":"CVE-2025-10585","cvss":9.8,"epss":0.0542,"slug":"cve-2025-10585-google-chrome-type-confusion-in-v8-engine","title":"Google Chrome type confusion in V8 engine","severity":"critical","exploited":true,"published_at":"2025-09-24T17:15:39.473+00:00","url":"https://junglewise.ai/threats/cve-2025-10585-google-chrome-type-confusion-in-v8-engine"},{"cve":"CVE-2025-39682","cvss":9.8,"epss":0.0288,"slug":"cve-2025-39682-linux-kernel-memory-corruption-in-tls-zero-length-record-handling","title":"Linux Kernel memory corruption in TLS zero-length record handling","severity":"critical","exploited":true,"published_at":"2025-09-05T18:15:44.67+00:00","url":"https://junglewise.ai/threats/cve-2025-39682-linux-kernel-memory-corruption-in-tls-zero-length-record-handling"},{"cve":"CVE-2026-5281","cvss":8.8,"epss":0.0504,"slug":"cve-2026-5281-google-chrome-use-after-free-in-dawn","title":"Google Chrome use after free in Dawn","severity":"critical","exploited":true,"published_at":"2026-04-01T05:16:01.44+00:00","url":"https://junglewise.ai/threats/cve-2026-5281-google-chrome-use-after-free-in-dawn"},{"cve":"CVE-2025-13223","cvss":8.8,"epss":0.0484,"slug":"cve-2025-13223-google-chrome-type-confusion-in-v8-engine","title":"Google Chrome type confusion in V8 engine","severity":"critical","exploited":true,"published_at":"2025-11-17T23:15:45.14+00:00","url":"https://junglewise.ai/threats/cve-2025-13223-google-chrome-type-confusion-in-v8-engine"},{"cve":"CVE-2013-6282","cvss":8.8,"slug":"cve-2013-6282-linux-kernel-improper-input-validation-vulnerability","title":"Linux Kernel Improper Input Validation Vulnerability","severity":"critical","exploited":true,"published_at":"2022-09-15T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2013-6282-linux-kernel-improper-input-validation-vulnerability"},{"cve":"CVE-2022-0185","cvss":8.4,"slug":"cve-2022-0185-linux-kernel-heap-based-buffer-overflow-vulnerability","title":"Linux Kernel Heap-Based Buffer Overflow Vulnerability","severity":"critical","exploited":true,"published_at":"2024-08-21T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-0185-linux-kernel-heap-based-buffer-overflow-vulnerability"},{"cve":"CVE-2013-2094","cvss":8.4,"slug":"cve-2013-2094-linux-kernel-privilege-escalation-vulnerability","title":"Linux Kernel Privilege Escalation Vulnerability","severity":"critical","exploited":true,"published_at":"2022-09-15T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2013-2094-linux-kernel-privilege-escalation-vulnerability"},{"cve":"CVE-2023-0266","cvss":7.9,"slug":"cve-2023-0266-linux-kernel-use-after-free-vulnerability","title":"Linux Kernel Use-After-Free Vulnerability","severity":"critical","exploited":true,"published_at":"2023-03-30T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-0266-linux-kernel-use-after-free-vulnerability"},{"cve":"CVE-2021-22555","cvss":7.8,"epss":0.8631,"slug":"cve-2021-22555-linux-kernel-heap-out-of-bounds-write-in-netfilter-x-tables","title":"Linux Kernel heap out-of-bounds write in Netfilter x_tables","severity":"critical","exploited":true,"published_at":"2025-10-06T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-22555-linux-kernel-heap-out-of-bounds-write-in-netfilter-x-tables"},{"cve":"CVE-2023-0386","cvss":7.8,"epss":0.5424,"slug":"cve-2023-0386-linux-kernel-privilege-escalation-in-overlayfs","title":"Linux Kernel privilege escalation in OverlayFS","severity":"critical","exploited":true,"published_at":"2025-06-17T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-0386-linux-kernel-privilege-escalation-in-overlayfs"}],"generated_at":"2026-09-26T11:07:00.153785+00:00"}