Technology
Linux kernel vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 23 vulnerabilities in Linux kernel: 23 in the last 7 days and 23 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-98141, was published on 25 September 2026.
- Last 7 days
- 23
- Last 90 days
- 23
- Critical, all time
- 0
- Exploited in the wild
- 0
Latest Linux kernel vulnerabilities
- CVE-2026-98141: Linux kernel NTFS reparse index insertion error handling flawinfo
- CVE-2026-98129: Linux kernel NULL pointer dereference in mpi3mr_sas_port_addinfo
- CVE-2026-98121: Linux kernel msc313e watchdog NULL pointer dereference in PM callbacksinfo
- CVE-2026-98109: Linux kernel Bluetooth race condition in device registrationinfo
- CVE-2026-98016: Linux kernel use-after-free in mlx5e TC sample restoreinfo
- CVE-2026-97987: Linux kernel virtio_input input device registration error handlinginfo
- CVE-2026-97983: Linux kernel VDUSE compat ioctl file descriptor leakinfo
- CVE-2026-97978: Linux kernel ice driver use-after-free in tracepointinfo
- CVE-2026-97962: Linux kernel mlx5 devlink reporter locking violationinfo
- CVE-2026-97915: Linux kernel accel/ivpu information disclosure in firmware loginfo
- CVE-2026-97610: Linux kernel uninitialized variable in netfs_unbuffered_write()info
- CVE-2026-97539: Linux kernel xusbatm USB ID table pointer arithmetic flawinfo
- CVE-2026-97507: Linux kernel dm1105 missing error check in DMA allocationinfoEPSS 0.2%
- CVE-2026-97501: Linux kernel MediaTek pinctrl mutex sleep context violationinfoEPSS 0.1%
- CVE-2026-97483: Linux kernel USB core deadlock in root hub control transfersinfoEPSS 0.2%
- CVE-2026-97431: Linux kernel NULL pointer dereference in drm/amd/display DPMSinfoEPSS 0.2%
- CVE-2026-93826: Linux kernel HID subsystem use-after-free in hidpp_connect_eventhighCVSS 7.5EPSS 0.2%
- CVE-2026-93792: Linux kernel iwlwifi integer underflow in wowlan packet handlinginfoEPSS 0.2%
- CVE-2026-93791: Linux kernel iwlwifi mvm out-of-bounds array index in TX handlinginfoEPSS 0.2%
- CVE-2026-93789: Linux kernel iwlwifi integer underflow in firmware parserinfoEPSS 0.2%
- CVE-2026-93283: Linux kernel i3c master use-after-free in device registration error pathinfoEPSS 0.2%
- CVE-2026-93271: Linux kernel ath11k invalid MCS handling in rx rate processinginfoEPSS 0.2%
- CVE-2026-93248: Linux kernel drm/xe GPU driver warning on kernel job timeoutinfoEPSS 0.2%
Most severe Linux kernel vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-93826: Linux kernel HID subsystem use-after-free in hidpp_connect_eventhighCVSS 7.5EPSS 0.2%
- CVE-2026-93283: Linux kernel i3c master use-after-free in device registration error pathinfoEPSS 0.2%
- CVE-2026-93271: Linux kernel ath11k invalid MCS handling in rx rate processinginfoEPSS 0.2%
- CVE-2026-93248: Linux kernel drm/xe GPU driver warning on kernel job timeoutinfoEPSS 0.2%
- CVE-2026-97483: Linux kernel USB core deadlock in root hub control transfersinfoEPSS 0.2%
- CVE-2026-93792: Linux kernel iwlwifi integer underflow in wowlan packet handlinginfoEPSS 0.2%
- CVE-2026-93791: Linux kernel iwlwifi mvm out-of-bounds array index in TX handlinginfoEPSS 0.2%
- CVE-2026-93789: Linux kernel iwlwifi integer underflow in firmware parserinfoEPSS 0.2%
- CVE-2026-97507: Linux kernel dm1105 missing error check in DMA allocationinfoEPSS 0.2%
- CVE-2026-97431: Linux kernel NULL pointer dereference in drm/amd/display DPMSinfoEPSS 0.2%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 23 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/x-linux-kernel.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Linux kernel vulnerabilities", https://junglewise.ai/threats/technologies/x-linux-kernel, 27 September 2026.