Linux Kernel Security Intelligence
Know your kernel's
real exposure
Upload a .config and get a CycloneDX VEX report — filtered by kernel version, build configuration, and AI‑powered context analysis. Updated in real time as new CVEs appear.
Model your product once — deployment context, interfaces, hardening — and receive a daily digest of the newly published CVEs that actually affect it, already triaged. No re-scanning, no backlog.
Free tier · no credit card · no invitation needed
Free CVE Database
Browse and search all kernel CVEs instantly — including AI-assessed scores where NVD is still pending. Sign up free to run your first VEX analysis.
Version & Config-Aware VEX
Filter by kernel version and .config — get a CycloneDX VEX of precisely your build's exposure. Analyses update automatically when new CVEs land.
AI-Powered Context Analysis
Model your product's deployment context and interfaces. AI rules out CVEs that don't apply to your device.
See It In Action
Explore real analysis results — no account required.
Kernel .config VEX
The same kernel .config analysed with version and config filtering only. Pure config analysis — every CVE matching an enabled subsystem is reported, without deployment context.
Product Security Assessment
The same config with deployment context, interfaces, and hardening modelled. AI contextual analysis rules out CVEs that don't apply to this device.
High severity, AI-triaged
Latest Linux kernel disclosures
-
CVSS7.0AI
cgroup DyingTask UAFCVE-2026-98163
Any local user can trigger a use-after-free in the cgroup task iterator by reading cgroup.procs while thread group leaders are exiting. The race window is narrow but requires no pr…
-
CVSS9.8NVD
srpt RwCtxs UAFCVE-2026-100075
Systems running the kernel SRP target driver over RDMA (InfiniBand or RoCE) are at risk from an remote attacker on the same fabric who can trigger a use-after-free via crafted SCSI…
-
CVSS9.3AI
ipvs SyncSeq LeakCVE-2026-98078
An attacker who can send traffic to a service behind an IPVS load balancer with sync enabled can trigger disclosure of 24 bytes of stale kernel heap data in sync messages sent to p…
-
CVSS9.1AI
smb ReadRsp OOBCVE-2026-97565
This vulnerability affects Linux systems that mount SMB1 shares (vers=1.0) and communicate with a malicious or compromised SMB server. The server can trigger an out-of-bounds read…
-
CVSS9.1AI
smb DataOffset OOBCVE-2026-97563
Devices that mount SMB1 shares (vers=1.0) are at risk from malicious or compromised SMB servers. A crafted server response can leak kernel heap memory to userspace or crash the ker…
-
CVSS8.8NVD
ksmbd SessionLogoff UAFCVE-2026-98115
An authenticated remote SMB client can trigger a use-after-free in the ksmbd kernel server by exploiting race conditions during session teardown with SMB3 multichannel. The bug all…
-
CVSS8.8NVD
hinic Mailbox OverflowCVE-2026-97957
A heap buffer overflow in the hinic network driver's mailbox handler allows a 16-byte write past the end of a receive buffer when processing a crafted multi-segment mailbox message…
-
CVSS8.8AI
bpf PercpuKptr BypassCVE-2026-98039
A BPF verifier type-check flaw allows storing a non-percpu allocation into a percpu kptr map field. When the value is loaded back, it is incorrectly treated as a percpu cookie, ena…
-
CVSS8.8AI
bpf RegBounds BypassCVE-2026-98151
A local user who can load BPF programs can trigger an inconsistent register-bounds state in the BPF verifier's speculative path during pointer arithmetic. This could potentially be…
Linux Kernel CVE Database
Freely searchable. Sourced from NVD and kernel.org's CVE v5 git feed, AI-enriched within minutes of publication.
| CVE ID | Severity | CVSS | Description | Introduced | Published |
|---|
Plans & Pricing
From free CVE intelligence to full AI-powered security assessments.
Free
Basic
Pro
Enterprise
Price & features agreed with you · billed by invoice against a contract — no credit card
Enterprise is our custom tier — contact sales and we'll agree on price and features for your needs (unlimited products, any kernel version). Unlike Basic and Pro, Enterprise is billed by invoice against a written contract: you get a quote, we agree the terms, and you pay by bank transfer on an invoice carrying your purchase-order number — no credit card anywhere in the process. It's also the route for analyzing kernels on behalf of clients — security consultancies, auditors, managed-service providers — which is a separate field of use under our terms. Talk to sales.
| Feature | Free | Basic | Pro | Enterprise |
|---|---|---|---|---|
| VEX analyses / month | 2 | Unlimited | Unlimited | Unlimited |
| Persistent products | — | 3 | 10 | Unlimited |
| Kernel coverage | Current LTS | Current LTS | All active LTS + stable | Any version |
| CVE database search | ✓ | ✓ | ✓ | ✓ |
| Live CVE feed (AI + Dependency-Track) | Last 60 days | All CVEs | All CVEs | All CVEs |
| API access | Throttled | Throttled | Full speed | Full speed |
| CycloneDX VEX reports | ✓ | ✓ | ✓ | ✓ |
| AI contextual assessments | — | — | ✓ | Priority |
| Security factor analysis | — | — | ✓ | ✓ |
| Dashboard & email alerts | — | ✓ | ✓ | ✓ |
| Auto-push VEX to Dependency-Track | — | — | ✓ | ✓ |
| Team Support | — | — | — | ✓ |
| On Premise | — | — | — | ✓ |