Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13046

All 13046 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-68293 mm/huge_memory: fix NULL pointer deference when splitting folio 5.5AIMediumAI2025-12-16
CVE-2025-68292 mm/memfd: fix information leak in hugetlb folios 5.5AIMediumAI2025-12-16
CVE-2025-68291 mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose(). 7.5AIHighAI2025-12-16
CVE-2025-68290 most: usb: fix double free on late probe failure 7.1AIHighAI2025-12-16
CVE-2025-68288 usb: storage: Fix memory leak in USB bulk transport 4.6AIMediumAI2025-12-16
CVE-2025-68289 usb: gadget: f_eem: Fix memory leak in eem_unwrap 5.5AIMediumAI2025-12-16
CVE-2025-68287 usb: dwc3: Fix race condition between concurrent dwc3_remove_requests() call paths 6.7AIMediumAI2025-12-16
CVE-2025-68286 drm/amd/display: Check NULL before accessing 5.5AIMediumAI2025-12-16
CVE-2025-68285 libceph: fix potential use-after-free in have_mon_and_osd_map() 5.5AIMediumAI2025-12-16
CVE-2025-68284 libceph: prevent potential out-of-bounds writes in handle_auth_session_key() 9.8AICriticalAI2025-12-16
CVE-2025-68283 libceph: replace BUG_ON with bounds check for map->max_osd 9.1AICriticalAI2025-12-16
CVE-2025-68282 usb: gadget: udc: fix use-after-free in usb_gadget_state_work 7.0AIHighAI2025-12-16
CVE-2025-68281 ASoC: SDCA: bug fix while parsing mipi-sdca-control-cn-list 5.5AIMediumAI2025-12-16
CVE-2025-68266 bfs: Reconstruct file type when loading from disk 7.1AIHighAI2025-12-16
CVE-2025-68265 nvme: fix admin request_queue lifetime 8.4AIHighAI2025-12-16
CVE-2025-68264 ext4: refresh inline data size before write operations 5.5AIMediumAI2025-12-16
CVE-2025-68263 ksmbd: ipc: fix use-after-free in ipc_msg_send_request 9.8 Critical2025-12-16
CVE-2025-68262 crypto: zstd - fix double-free in per-CPU stream cleanup 7.8AIHighAI2025-12-16
CVE-2025-68261 ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock() 6.0AIMediumAI2025-12-16
CVE-2025-68259 KVM: SVM: Don't skip unrelated instruction if INT3/INTO is replaced 5.5AIMediumAI2025-12-16
CVE-2025-68260 rust_binder: fix race condition on death_list 7.0AIHighAI2025-12-16
CVE-2025-68258 comedi: multiq3: sanitize config options in multiq3_attach() 5.5AIMediumAI2025-12-16
CVE-2025-68257 comedi: check device's attached status in compat ioctls 5.5AIMediumAI2025-12-16
CVE-2025-68256 staging: rtl8723bs: fix out-of-bounds read in rtw_get_ie() parser 7.8AIHighAI2025-12-16
CVE-2025-68255 staging: rtl8723bs: fix stack buffer overflow in OnAssocReq IE parsing 7.8AIHighAI2025-12-16
CVE-2025-68254 staging: rtl8723bs: fix out-of-bounds read in OnBeacon ESR IE parsing 5.5AIMediumAI2025-12-16
CVE-2025-68253 mm: don't spin in add_stack_record when gfp flags don't allow 7.1AIHighAI2025-12-16
CVE-2025-68252 misc: fastrpc: Fix dma_buf object leak in fastrpc_map_lookup 5.5AIMediumAI2025-12-16
CVE-2025-68251 erofs: avoid infinite loops due to corrupted subpage compact indexes 5.5AIMediumAI2025-12-16
CVE-2025-68250 hung_task: fix warnings caused by unaligned lock pointers 7.1AIHighAI2025-12-16

All 13046 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.