Operating Systems & Open Source16 Active Advisories Tracked

Linux Kernel & Distributions Vulnerability & Threat Radar

Kernel privilege escalations, memory corruptions, and remote exploits across Ubuntu, Debian, RHEL, and mainline Linux kernels.

Recommended Protective Controls for Linux Kernel & Distributions Environments

Deploy continuous behavioral telemetry and micro-segmentation boundaries to shield Linux Kernel & Distributions assets.

Evaluate Recommended Defenses →

Recent Disclosures & Advisories

14 Critical Severity
CISA KEV
2d ago

Linux Kernel Race Condition Vulnerability

Linux Kernel contains a race condition vulnerability which allows concurrent writes to the same AF_ALG socket causing data to be unpredictably interleaved and creating inconsistencies in the socket's internal state. This is a critical threat mapped to CVE-2025-39964; security leaders should validate exposure, priori...

CISA KEV
2d ago

Linux Kernel Out-of-Bounds Write Vulnerability

Linux Kernel contains an out-of-bounds write vulnerability in the ebtables SNAT target which allows an ARP sender hardware address rewrite to write directly into a nonlinear socket-buffer fragment backed by a splice-imported file page. This is a critical threat mapped to CVE-2026-53266; security leaders should valid...

CISA KEV
2d ago

Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability

Linux Kernel contains an improper check for unusual or exceptional conditions vulnerability in the TLS receive path which allows a zero-length record retrieved from the rx_list to bypass the intended recvmsg() record-type handling, potentially causing subsequent TLS records to be processed using incorrect zero-copy...

NVD
9d ago

CVE-2026-15419 - In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can

In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to corrupt kernel pool memory, result... This is a low threat mapped to CVE-2026-15419; security leaders should validate exposure, prioritize patching, and verify compensatin...

CISA KEV
10d ago

MikroTik RouterOS Missing Authentication for Critical Function Vulnerability

MikroTik RouterOS contains a missing authenticaion for critical function vulnerability which allows kernel memory disclosure and denial of service in the btest service. This is a critical threat mapped to CVE-2026-67277; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
24d ago

Linux Kernel Unspecified Vulnerability

Linux Kernel contains an unspecified vulnerability that can allow for privilege escalation via IPv6 networking subsystem. This is a critical threat mapped to CVE-2026-53362; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
6/15/2026

LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability

LiteSpeed cPanel plugin contains a UNIX symbolic link (Symlink) following vulnerability that could allow a user with FTP or web shell access on a shared hosting server running CloudLinux/CageFS. This is a critical threat mapped to CVE-2026-54420; security leaders should validate exposure, prioritize patching, and ve...

CISA KEV
6/2/2026

Linux Kernel Improper Authentication Vulnerability

Linux Kernel contains an improper authentication vulnerability which could allow for privilege escalation via the cgroups v1 release_agent feature. This is a critical threat mapped to CVE-2022-0492; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
5/1/2026

Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability

Linux Kernel contains an incorrect resource transfer between spheres vulnerability that could allow for privilege escalation. This is a critical threat mapped to CVE-2026-31431; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
3/20/2026

Apple Multiple Products Classic Buffer Overflow Vulnerability

Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory. This is a critical threat mapped to CVE-2025-43520; security leaders should validate exposure, prioritize patc...

CISA KEV
1/26/2026

Linux Kernel Integer Overflow Vulnerability

Linux Kernel contains an integer overflow vulnerability in the create_elf_tables() function which could allow an unprivileged local user with access to SUID (or otherwise privileged) binary to escalate their privileges on the system. This is a critical threat mapped to CVE-2018-14634; security leaders should validat...

CISA KEV
10/6/2025

Linux Kernel Heap Out-of-Bounds Write Vulnerability

Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space. This is a critical threat mapped to CVE-2021-22555; security leaders should validate exposure, prioritize patching, and verify compensati...

CISA KEV
10/6/2025

Microsoft Windows Remote Code Execution Vulnerability

Microsoft Windows Kernel contains an unspecified vulnerability in the TrueType font parsing engine in win32k.sys in the kernel-mode drivers that allows remote attackers to execute... This is a critical threat mapped to CVE-2011-3402; security leaders should validate exposure, prioritize patching, and verify compensa...

Share Intel:Share on XLinkedIn

Never Miss a Critical Linux Kernel & Distributions Patch

Subscribe to the SecOps Pulse executive threat briefing for early warnings on unpatched vulnerabilities.

Weekly Executive Briefing

Top critical & high-severity threats, every week.

No spam. Unsubscribe anytime. SecOpsPulse may include sponsored security tool recommendations.