Linux Kernel Security
The latest Linux Kernel Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2026-31660: Linux NFC Driver Flaw Can Crash Systems—Here’s Who Should Patch Now
The Linux kernel’s NFC driver for PN533 and PN532 hardware contains a vulnerability that can cause system crashes, and it’s earned a CVE tracked by Microsoft’s security team. The flaw, assigned...
Microsoft Flags Linux Kernel Crash Bug That Could Hit WSL and Azure Users
Microsoft’s security team recently added a Linux kernel vulnerability to its tracking list, and if you manage Windows devices with WSL or Linux workloads in Azure, you’ll want to look closely. On...
CVE-2026-31606: The Linux USB Gadget Flaw That Could Crash Your Embedded Device, Now in Microsoft’s Advisory
Microsoft’s Security Update Guide has assigned CVE-2026-31606 to a narrow but potentially destabilizing bug in the Linux kernel’s USB HID gadget driver. The flaw, patched upstream, can cause a...
Linux Kernel USB Bug Lets Malicious Devices Leak Memory via NDP32
A newly disclosed vulnerability in the Linux kernel has put USB networking stacks on alert. Tracked as CVE-2026-23447, the flaw resides in the cdc_ncm driver's handling of NDP32 descriptors. It is an...
CVE-2026-31531: Linux Kernel Fixes IPv4 Nexthop Netlink Sizing Bug Affecting Large ECMP Groups
The Linux kernel community has disclosed CVE-2026-31531, a networking vulnerability in the IPv4 nexthop path that can trigger a kernel warning when users query very large nexthop groups through...
CVE-2026-31494: Linux Kernel macb Driver Vulnerable to Out-of-Bounds Write via ethtool Stats
A newly published Linux kernel vulnerability in the Cadence MACB/GEM Ethernet driver is a reminder that even small accounting mistakes in networking code can become memory-safety bugs. CVE-2026-31494...
CVE-2026-31498: Linux Bluetooth L2CAP ERTM Bugs Could Crash Your System
A pair of memory safety flaws in the Linux kernel's Bluetooth subsystem have been assigned CVE-2026-31498, and they're not your typical remote code execution nightmares. Instead, these are...
Linux Kernel Fix Ends ext4 Panic on Corrupted Files, Keeping Systems Alive
On April 22, 2026, the Linux kernel community published a fix for CVE-2026-31451, a vulnerability in the ext4 filesystem that could panic a system when encountering a corrupted file. The patch, which...
CVE-2026-31507: Linux Kernel SMC Splice Panic – Patch Now for Azure and WSL
Linux administrators were met with an urgent patch note this week as a new kernel vulnerability surfaced that can bring down servers with a simple misuse of two classic Unix system commands. The...
Linux ext4 Filesystem Teardown Bug Can Crash Systems—Here’s the Fix
A use-after-free vulnerability in Linux’s ext4 filesystem can trigger during unmount, potentially causing kernel crashes or instability on systems from laptops to cloud servers. Tracked as...
Linux Kernel Squashes ext4 Use-After-Free Bug That Can Crash WSL and VMs
Linux kernel maintainers have released patches for CVE-2026-31446, a use-after-free vulnerability in the ext4 filesystem’s sysfs teardown path that can trigger system crashes during unmount or...
CVE-2026-31449: Ext4 Bounds Check Fix Prevents Slab Out-of-Bounds Reads in Linux Kernel
A newly disclosed vulnerability in the Linux kernel's Ext4 filesystem, tracked as CVE-2026-31449, has been patched to prevent slab out-of-bounds (OOB) reads. The flaw, which carries a moderate...