Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13446

All 13446 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumerations (CWE) specifically affecting the Linux operating system and its associated distributions. It serves as a comprehensive historical record of security flaws, configuration errors, and architectural weaknesses documented within the Linux ecosystem. The content covers a broad spectrum of vulnerability types, including buffer overflows, privilege escalation flaws, information disclosures, and input validation errors that have been publicly disclosed or tracked in security databases. The data spans from early public reports to recent advisories, providing a longitudinal view of security trends in open-source kernel and user-space software. Users can leverage this resource to track vendor-specific advisories from major Linux distributions such as Debian, Ubuntu, Red Hat, and SUSE, allowing for better risk assessment and patch management planning. Additionally, the page enables researchers and security professionals to understand the evolution of specific weakness classes over time and analyze the frequency and severity of bugs in critical components. By examining the vulnerability history of specific packages or kernel versions, administrators can identify persistent security patterns and prioritize remediation efforts. This aggregation aims to consolidate scattered security information into a single, accessible reference point for evaluating the security posture of Linux-based environments. The structured presentation facilitates easier comparison across versions and highlights areas requiring immediate attention to mitigate potential exploits. This resource supports both proactive security measures and post-incident analysis by providing clear context around identified defects.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-38403 vsock/vmci: Clear the vmci transport packet properly when initializing it 7.1 -2025-07-25
CVE-2025-38402 idpf: return 0 size for RSS key if not supported 6.8 -2025-07-25
CVE-2025-38401 mtk-sd: Prevent memory corruption from DMA map failure 7.8 High2025-07-25
CVE-2025-38400 nfs: Clean up /proc/net/rpc/nfs when nfs_fs_proc_net_init() fails. 5.5 -2025-07-25
CVE-2025-38399 scsi: target: Fix NULL pointer dereference in core_scsi3_decode_spec_i_port() 7.5 High2025-07-25
CVE-2025-38398 spi: spi-qpic-snand: reallocate BAM transactions 7.8 High2025-07-25
CVE-2025-38397 nvme-multipath: fix suspicious RCU usage warning 9.8 -2025-07-25
CVE-2025-38396 fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass 7.8 High2025-07-25
CVE-2025-38395 regulator: gpio: Fix the out-of-bounds access to drvdata::gpiods 8.4 High2025-07-25
CVE-2025-38394 HID: appletb-kbd: fix memory corruption of input_handler_list 7.8 -2025-07-25
CVE-2025-38393 NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN 7.5 High2025-07-25
CVE-2025-38392 idpf: convert control queue mutex to a spinlock 5.5 -2025-07-25
CVE-2025-38391 usb: typec: altmodes/displayport: do not index invalid pin_assignments 4.6 -2025-07-25
CVE-2025-38390 firmware: arm_ffa: Fix memory leak by freeing notifier callback node 5.5 -2025-07-25
CVE-2025-38389 drm/i915/gt: Fix timeline left held on VMA alloc error 5.5 -2025-07-25
CVE-2025-38388 firmware: arm_ffa: Replace mutex with rwlock to avoid sleep in atomic context 7.1 -2025-07-25
CVE-2025-38387 RDMA/mlx5: Initialize obj_event->obj_sub_list before xa_insert 5.5 -2025-07-25
CVE-2025-38386 ACPICA: Refuse to evaluate a method if arguments are missing 7.8 High2025-07-25
CVE-2025-38385 net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect 6.2 -2025-07-25
CVE-2025-38383 mm/vmalloc: fix data race in show_numa_info() 7.0 -2025-07-25
CVE-2025-38384 mtd: spinand: fix memory leak of ECC engine conf 6.2 -2025-07-25
CVE-2025-38382 btrfs: fix iteration of extrefs during log replay 7.8 High2025-07-25
CVE-2025-38381 Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt() 6.5 -2025-07-25
CVE-2025-38379 smb: client: fix warning when reconnecting channel 7.5 High2025-07-25
CVE-2025-38378 HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe 5.5 -2025-07-25
CVE-2025-38377 rose: fix dangling neighbour pointers in rose_rt_device_down() 8.8 High2025-07-25
CVE-2025-38376 usb: chipidea: udc: disconnect/reconnect from host when do suspend/resume 7.5 -2025-07-25
CVE-2025-38375 virtio-net: ensure the received length does not exceed allocated size 8.4 High2025-07-25
CVE-2025-38374 optee: ffa: fix sleep in atomic context 5.5 -2025-07-25
CVE-2025-38373 IB/mlx5: Fix potential deadlock in MR deregistration 5.5 -2025-07-25

All 13446 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.