Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13402

All 13402 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-68214 timers: Fix NULL function pointer race in timer_shutdown_sync() 4.7AIMediumAI2025-12-16
CVE-2025-68213 idpf: fix possible vport_config NULL pointer deref in remove 5.5AIMediumAI2025-12-16
CVE-2025-68212 fs: Fix uninitialized 'offp' in statmount_string() 7.8 High2025-12-16
CVE-2025-68211 ksm: use range-walk function to jump over holes in scan_get_next_rmap_item 5.5AIMediumAI2025-12-16
CVE-2025-68210 erofs: avoid infinite loop due to incomplete zstd-compressed data 5.5AIMediumAI2025-12-16
CVE-2025-68209 mlx5: Fix default values in create CQ 7.1AIHighAI2025-12-16
CVE-2025-68208 bpf: account for current allocated stack depth in widen_imprecise_scalars() 7.8 High2025-12-16
CVE-2025-68207 drm/xe/guc: Synchronize Dead CT worker with unbind 7.8 High2025-12-16
CVE-2025-68206 netfilter: nft_ct: add seqadj extension for natted connections 7.5 High2025-12-16
CVE-2025-68205 ALSA: hda/hdmi: Fix breakage at probing nvhdmi-mcp driver 5.5AIMediumAI2025-12-16
CVE-2025-68204 pmdomain: arm: scmi: Fix genpd leak on provider registration failure 5.5AIMediumAI2025-12-16
CVE-2025-68202 sched_ext: Fix unsafe locking in the scx_dump_state() 5.5AIMediumAI2025-12-16
CVE-2025-68201 drm/amdgpu: remove two invalid BUG_ON()s 7.1AIHighAI2025-12-16
CVE-2025-68200 bpf: Add bpf_prog_run_data_pointers() 5.5AIMediumAI2025-12-16
CVE-2025-68199 codetag: debug: handle existing CODETAG_EMPTY in mark_objexts_empty for slabobj_ext 7.1AIHighAI2025-12-16
CVE-2025-68198 crash: fix crashkernel resource shrink 5.5AIMediumAI2025-12-16
CVE-2025-68197 bnxt_en: Fix null pointer dereference in bnxt_bs_trace_check_wrap() 5.5AIMediumAI2025-12-16
CVE-2025-68196 drm/amd/display: Cache streams targeting link when performing LT automation 5.5AIMediumAI2025-12-16
CVE-2025-68195 x86/CPU/AMD: Add missing terminator for zen5_rdseed_microcode 7.1 High2025-12-16
CVE-2025-68194 media: imon: make send_packet() more robust 4.3AIMediumAI2025-12-16
CVE-2025-68193 drm/xe/guc: Add devm release action to safely tear down CT 5.5AIMediumAI2025-12-16
CVE-2025-68192 net: usb: qmi_wwan: initialize MAC header offset in qmimux_rx_fixup 9.8 Critical2025-12-16
CVE-2025-68191 udp_tunnel: use netdev_warn() instead of netdev_WARN() 5.5AIMediumAI2025-12-16
CVE-2025-68189 drm/msm: Fix GEM free for imported dma-bufs 7.8 High2025-12-16
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() 5.5AIMediumAI2025-12-16
CVE-2025-68188 tcp: use dst_dev_rcu() in tcp_fastopen_active_disable_ofo_check() 9.8AICriticalAI2025-12-16
CVE-2025-68187 net: mdio: Check regmap pointer returned by device_node_to_regmap() 5.5AIMediumAI2025-12-16
CVE-2025-68186 ring-buffer: Do not warn in ring_buffer_map_get_reader() when reader catches up 5.5AIMediumAI2025-12-16
CVE-2025-68185 nfs4_setup_readdir(): insufficient locking for ->d_parent->d_inode dereferencing 6.3AIMediumAI2025-12-16
CVE-2025-68184 drm/mediatek: Disable AFBC support on Mediatek DRM driver 7.1 High2025-12-16

All 13402 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.