Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-39951 um: virtio_uml: Fix use-after-free after put_device in probe — Linux 7.8 High 2025-10-04
CVE-2025-39950 net/tcp: Fix a NULL pointer dereference when using TCP-AO with TCP_REPAIR — Linux 6.5AI Medium AI 2025-10-04
CVE-2025-39949 qed: Don't collect too many protection override GRC elements — Linux 7.8 High 2025-10-04
CVE-2025-39947 net/mlx5e: Harden uplink netdev access against device unbind — Linux 5.5AI Medium AI 2025-10-04
CVE-2025-39948 ice: fix Rx page leak on multi-buffer frames — Linux 9.8 Critical 2025-10-04
CVE-2025-39946 tls: make sure to abort the stream if headers are bogus — Linux 9.8 Critical 2025-10-04
CVE-2025-39945 cnic: Fix use-after-free bugs in cnic_delete_task — Linux 7.8 High 2025-10-04
CVE-2025-39943 ksmbd: smbdirect: validate data_offset and data_length field of smb_direct_data_transfer — Linux 9.4 Critical 2025-10-04
CVE-2025-39944 octeontx2-pf: Fix use-after-free bugs in otx2_sync_tstamp() — Linux 7.8 High 2025-10-04
CVE-2025-39942 ksmbd: smbdirect: verify remaining_data_length respects max_fragmented_recv_size — Linux 7.5 High 2025-10-04
CVE-2025-39941 zram: fix slot write race condition — Linux 7.8 High 2025-10-04
CVE-2025-39940 dm-stripe: fix a possible integer overflow — Linux 7.8AI High AI 2025-10-04
CVE-2025-39939 iommu/s390: Fix memory corruption when using identity domain — Linux 7.8 High 2025-10-04
CVE-2025-39938 ASoC: qcom: q6apm-lpass-dais: Fix NULL pointer dereference if source graph failed — Linux 6.2AI Medium AI 2025-10-04
CVE-2025-39937 net: rfkill: gpio: Fix crash due to dereferencering uninitialized pointer — Linux 5.5AI Medium AI 2025-10-04
CVE-2025-39936 crypto: ccp - Always pass in an error pointer to __sev_platform_shutdown_locked() — Linux 7.1AI High AI 2025-10-04
CVE-2025-39935 ASoC: codec: sma1307: Fix memory corruption in sma1307_setting_loaded() — Linux 7.8 High 2025-10-04
CVE-2025-39934 drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ — Linux 7.1AI High AI 2025-10-04
CVE-2025-39933 smb: client: let recv_done verify data_offset, data_length and remaining_data_length — Linux 9.4 Critical 2025-10-04
CVE-2025-39932 smb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work) — Linux 9.8 Critical 2025-10-04
CVE-2025-39931 crypto: af_alg - Set merge to zero early in af_alg_sendmsg — Linux 7.8 High 2025-10-04
CVE-2025-39929 smb: client: fix smbdirect_recv_io leak in smbd_negotiate() error path — Linux 7.5 High 2025-10-04
CVE-2023-53532 wifi: ath11k: fix deinitialization of firmware resources — Linux 7.3AI High AI 2025-10-01
CVE-2023-53531 null_blk: fix poll request timeout handling — Linux 7.8 High 2025-10-01
CVE-2023-53530 scsi: qla2xxx: Use raw_smp_processor_id() instead of smp_processor_id() — Linux 7.1AI High AI 2025-10-01
CVE-2023-53528 RDMA/rxe: Fix unsafe drain work queue code — Linux 5.5AI Medium AI 2025-10-01
CVE-2023-53529 wifi: rtw88: Fix memory leak in rtw88_usb — Linux - - AI 2025-10-01
CVE-2023-53527 thunderbolt: Fix memory leak in tb_handle_dp_bandwidth_request() — Linux 5.5AI Medium AI 2025-10-01
CVE-2023-53526 jbd2: check 'jh->b_transaction' before removing it from checkpoint — Linux 7.8 High 2025-10-01
CVE-2023-53525 RDMA/cma: Allow UD qp_type to join multicast only — Linux 6.3AI Medium AI 2025-10-01

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.