CVE security advisories and vulnerability history for linux by torvalds.
140
Total CVEs
Published
2
In CISA KEV
Exploited in the wild
36
Public exploits
With known exploit
6.7
Avg CVSS
2016–2025
Last updated
Overview
torvalds linux has 140 published CVE records since 2016, of which 2 are in CISA's Known Exploited Vulnerabilities catalog and 36 have a known public exploit. The average CVSS base score across scored CVEs is 6.7.
This page aggregates every publicly disclosed vulnerability (CVE) affecting torvalds linux, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of torvalds linux's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical0
High17
Medium11
Low1
111 additional CVEs have no CVSS severity score.
In CISA’s Known Exploited Vulnerabilities catalog
2
2 of torvalds linux's CVEs are confirmed exploited in the wild.
Public exploits
36
36 of torvalds linux's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every torvalds linux version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about torvalds linux vulnerabilities.
How many CVEs does torvalds linux have?
torvalds linux has 140 published CVE records since 2016.
How many torvalds linux CVEs are in CISA KEV?
Yes — 2 of torvalds linux's CVEs are listed in CISA's Known Exploited Vulnerabilities catalog, confirmed exploited in the wild and carrying a CISA remediation deadline.
Are there public exploits for torvalds linux vulnerabilities?
Yes — 36 of torvalds linux's CVEs have a known public exploit.
Which versions of torvalds linux are affected?
975 distinct torvalds linux versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in torvalds linux CVEs?
torvalds linux's CVEs most often map to these CWE weakness types: CWE-416 (Use After Free), CWE-125 (Out-of-bounds Read), CWE-122 (Heap-based Buffer Overflow), CWE-362 (Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')).
What is the average severity of torvalds linux CVEs?
The average CVSS base score across torvalds linux's scored CVEs is 6.7.