The Linux kernel project published 46 Linux kernel CVEs in the week of 2 to 8 August 2026. Every one is already fixed in a stable release. There is no 0-day and no public exploit code. The only action is to update your kernel to the fixed version for your branch. The minimum safe release per branch is 5.10.264, 5.15.215, 6.1.182, 6.6.150, 6.12.102, 6.18.43, 7.1.7, or mainline 7.2-rc5. The 6.19 and 7.0 series are end of life; move those systems to 7.1.7.

This is a normal-volume week, with 46 CVEs. Most are narrow driver and networking fixes. Which of these Linux kernel CVEs matter for you depends on what your product builds and how it is configured. No CVE this week has a public exploit or a CVSS score in the kernel record, so the order of work is set by how the bug is reached. A few are reachable over the air or over the network, so schedule those first where they apply. This advisory gives the version to install, then explains which CVEs matter for mobile and automotive, embedded and IoT, cloud and datacenter, and medical devices.

The one action: update to the fixed version for your branch

Run uname -r to see your current kernel version. Compare it with the target for your branch in the table below. If your version is lower than the target, update to the target release. Updating to the target release for your branch clears every CVE in this week's set.