Source status: Each accepted Linux stable commit names Gemini CLI or the Gemini-based review agent and explains the concern the model raised.
Summary
The first entry records Gemini CLI diagnosing an out-of-bounds Android Binder condition from an operator prompt. The other fixes document an experimental Gemini 3.1 Pro review agent raising concerns in tracing, wireless-driver, and ext4 patches that contributors then verified.
The cluster demonstrates code review rather than a fully autonomous audit. It is still direct upstream evidence that named AI review workflows surfaced security-relevant bugs accepted by kernel maintainers.
References
- Linux fix: CVE-2026-23194
- Linux fix: CVE-2026-23309
- Linux fix: CVE-2026-31552
- Linux fix: CVE-2026-43067
Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.