Linux Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for Linux products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
28
In CISA KEV
27
Beyond CISA KEV
1
Sensor Observed
0
Virtual Patch Available
0
Linux KEVs Added by Year
Loading...
28 Linux KEVs added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2024-50302
HID: core: zero-initialize the report buffer |
Linux | Confirmed | In CISA | 04 Mar 2025 |
|
CVE-2024-53197
ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices |
Linux | Confirmed | In CISA | 09 Apr 2025 |
|
CVE-2024-53150
ALSA: usb-audio: Fix out of bounds reads when finding clock sources |
Linux | Confirmed | In CISA | 09 Apr 2025 |
Common Vulnerability Classes (CWE)
- CWE-416 — Use After Free 4
- CWE-787 — Out-of-bounds Write 3
- CWE-190 — Integer Overflow or Wraparound 3
- CWE-119 — Improper Restriction of Operations within the Bounds of a Memory Buffer 2
- CWE-362 — Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') 2
- CWE-20 — Improper Input Validation 1
- CWE-1284 — Improper Validation of Specified Quantity in Input 1
- CWE-189 — Numeric Errors 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology