Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-40096 drm/sched: Fix potential double free in drm_sched_job_add_resv_dependencies — Linux 7.8 High 2025-10-30
CVE-2025-40095 usb: gadget: f_rndis: Refactor bind path to use __free() — Linux 7.8 High 2025-10-30
CVE-2025-40094 usb: gadget: f_acm: Refactor bind path to use __free() — Linux 7.8 High 2025-10-30
CVE-2025-40093 usb: gadget: f_ecm: Refactor bind path to use __free() — Linux 7.8 High 2025-10-30
CVE-2025-40092 usb: gadget: f_ncm: Refactor bind path to use __free() — Linux 7.8 High 2025-10-30
CVE-2025-40091 ixgbe: fix too early devlink_free() in ixgbe_remove() — Linux 7.1AI High AI 2025-10-30
CVE-2025-40090 ksmbd: fix recursive locking in RPC handle list access — Linux 7.5 High 2025-10-30
CVE-2025-40089 cxl/features: Add check for no entries in cxl_feature_info — Linux 7.1AI High AI 2025-10-30
CVE-2025-40087 NFSD: Define a proc_layoutcommit for the FlexFiles layout type — Linux 7.5 High 2025-10-30
CVE-2025-40088 hfsplus: fix slab-out-of-bounds read in hfsplus_strcasecmp() — Linux 7.1 High 2025-10-30
CVE-2025-40086 drm/xe: Don't allow evicting of BOs in same VM in array of VM binds — Linux 7.1AI High AI 2025-10-30
CVE-2023-7324 scsi: ses: Fix possible addl_desc_ptr out-of-bounds accesses — Linux 8.1 High 2025-10-29
CVE-2025-40085 ALSA: usb-audio: Fix NULL pointer deference in try_to_register_card — Linux 5.5AI Medium AI 2025-10-29
CVE-2025-40084 ksmbd: transport_ipc: validate payload size before reading handle — Linux 7.1 High 2025-10-29
CVE-2025-40083 net/sched: sch_qfq: Fix null-deref in agg_dequeue — Linux 5.5AI Medium AI 2025-10-29
CVE-2025-40082 hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() — Linux 7.1 High 2025-10-28
CVE-2025-40081 perf: arm_spe: Prevent overflow in PERF_IDX2OFF() — Linux 7.8 High 2025-10-28
CVE-2025-40080 nbd: restrict sockets to TCP and UDP — Linux 9.8AI Critical AI 2025-10-28
CVE-2025-40079 riscv, bpf: Sign extend struct ops return values properly — Linux 7.8 High 2025-10-28
CVE-2025-40078 bpf: Explicitly check accesses to bpf_sock_addr — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40077 f2fs: fix to avoid overflow while left shift operation — Linux 7.8AI High AI 2025-10-28
CVE-2025-40076 PCI: rcar-host: Pass proper IRQ domain to generic_handle_domain_irq() — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40075 tcp_metrics: use dst_dev_net_rcu() — Linux 8.1 High 2025-10-28
CVE-2025-40073 drm/msm: Do not validate SSPP when it is not ready — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40074 ipv4: start using dst_dev_rcu() — Linux 9.8 Critical 2025-10-28
CVE-2025-40072 fanotify: Validate the return value of mnt_ns_from_dentry() before dereferencing — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40071 tty: n_gsm: Don't block input queue by waiting MSC — Linux 9.1AI Critical AI 2025-10-28
CVE-2025-40070 pps: fix warning in pps_register_cdev when register device fail — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40068 fs: ntfs3: Fix integer overflow in run_unpack() — Linux 8.4 High 2025-10-28
CVE-2025-40069 drm/msm: Fix obj leak in VM_BIND error path — Linux 7.8 High 2025-10-28

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.