Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-40067 fs/ntfs3: reject index allocation if $BITMAP is empty but blocks exist — Linux 7.8 High 2025-10-28
CVE-2025-40065 RISC-V: KVM: Write hgatp register with valid mode bits — Linux 6.1AI Medium AI 2025-10-28
CVE-2025-40066 wifi: mt76: mt7996: Check phy before init msta_link in mt7996_mac_sta_add_links() — Linux 5.7AI Medium AI 2025-10-28
CVE-2025-40063 crypto: comp - Use same definition of context alloc and free ops — Linux 7.0 High 2025-10-28
CVE-2025-40064 smc: Fix use-after-free in __pnet_find_base_ndev(). — Linux 7.8 High 2025-10-28
CVE-2025-40062 crypto: hisilicon/qm - set NULL to qm->debug.qm_diff_regs — Linux 8.1AI High AI 2025-10-28
CVE-2025-40060 coresight: trbe: Return NULL pointer for allocation failures — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40061 RDMA/rxe: Fix race in do_task() when draining — Linux 7.8 High 2025-10-28
CVE-2025-40059 coresight: Fix incorrect handling for return value of devm_kzalloc — Linux 5.5AI Medium AI 2025-10-28
CVE-2025-40058 iommu/vt-d: Disallow dirty tracking if incoherent page walk — Linux 8.8 High 2025-10-28
CVE-2025-40057 ptp: Add a upper bound on max_vclocks — Linux 7.1AI High AI 2025-10-28
CVE-2025-40055 ocfs2: fix double free in user_cluster_connect() — Linux 7.1AI High AI 2025-10-28
CVE-2025-40056 vhost: vringh: Fix copy_to_iter return value check — Linux 7.1AI High AI 2025-10-28
CVE-2025-40054 f2fs: fix UAF issue in f2fs_merge_page_bio() — Linux 7.8 High 2025-10-28
CVE-2025-40052 smb: client: fix crypto buffers in non-linear memory — Linux 7.1AI High AI 2025-10-28
CVE-2025-40053 net: dlink: handle copy_thresh allocation failure — Linux 7.5 High 2025-10-28
CVE-2025-40050 bpf: Skip scalar adjustment for BPF_NEG if dst is a pointer — Linux 7.1AI High AI 2025-10-28
CVE-2025-40051 vhost: vringh: Modify the return value check — Linux 7.8 High 2025-10-28
CVE-2025-40049 Squashfs: fix uninit-value in squashfs_get_parent — Linux 8.1AI High AI 2025-10-28
CVE-2025-40048 uio_hv_generic: Let userspace take care of interrupt mask — Linux 7.5 High 2025-10-28
CVE-2025-40047 io_uring/waitid: always prune wait queue entry in io_waitid_wait() — Linux 7.8 High 2025-10-28
CVE-2025-40046 io_uring/zcrx: fix overshooting recv limit — Linux 8.6 High 2025-10-28
CVE-2025-40044 fs: udf: fix OOB read in lengthAllocDescs handling — Linux 7.8 High 2025-10-28
CVE-2025-40045 ASoC: codecs: wcd937x: set the comp soundwire port correctly — Linux 7.8 High 2025-10-28
CVE-2025-40043 net: nfc: nci: Add parameter validation for packet data — Linux 8.8 High 2025-10-28
CVE-2025-40042 tracing: Fix race condition in kprobe initialization causing NULL pointer dereference — Linux 4.7AI Medium AI 2025-10-28
CVE-2025-40041 LoongArch: BPF: Sign-extend struct ops return values properly — Linux 7.8 High 2025-10-28
CVE-2025-40040 mm/ksm: fix flag-dropping behavior in ksm_madvise — Linux 7.8 High 2025-10-28
CVE-2025-40039 ksmbd: Fix race condition in RPC handle list access — Linux 8.8 High 2025-10-28
CVE-2025-40038 KVM: SVM: Skip fastpath emulation on VM-Exit if next RIP isn't valid — Linux 7.1 High 2025-10-28

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.