Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-39902 mm/slub: avoid accessing metadata when pointer is invalid in object_err() — Linux 7.1 High 2025-10-01
CVE-2025-39901 i40e: remove read access to debugfs files — Linux 7.1AI High AI 2025-10-01
CVE-2025-39900 net_sched: gen_estimator: fix est_timer() vs CONFIG_PREEMPT_RT=y — Linux - - AI 2025-10-01
CVE-2025-39899 mm/userfaultfd: fix kmap_local LIFO ordering for CONFIG_HIGHPTE — Linux 7.7AI High AI 2025-10-01
CVE-2025-39897 net: xilinx: axienet: Add error handling for RX metadata pointer retrieval — Linux 7.5 High 2025-10-01
CVE-2025-39896 accel/ivpu: Prevent recovery work from being queued during device removal — Linux 7.8 High 2025-10-01
CVE-2025-39895 sched: Fix sched_numa_find_nth_cpu() if mask offline — Linux 7.1AI High AI 2025-10-01
CVE-2025-39894 netfilter: br_netfilter: do not check confirmed bit in br_nf_local_in() after confirm — Linux 7.5 High 2025-10-01
CVE-2025-39892 ASoC: soc-core: care NULL dirver name on snd_soc_lookup_component_nolocked() — Linux 5.5AI Medium AI 2025-10-01
CVE-2025-39893 spi: spi-qpic-snand: unregister ECC engine on probe error and device remove — Linux 7.8AI High AI 2025-10-01
CVE-2025-39891 wifi: mwifiex: Initialize the chan_stats array to zero — Linux 5.7AI Medium AI 2025-10-01
CVE-2025-39890 wifi: ath12k: fix memory leak in ath12k_service_ready_ext_event — Linux 5.7AI Medium AI 2025-09-24
CVE-2025-39889 Bluetooth: l2cap: Check encryption key size on incoming connection — Linux 8.1 High 2025-09-24
CVE-2024-58241 Bluetooth: hci_core: Disable works on hci_unregister_dev — Linux 7.8 High 2025-09-24
CVE-2025-39888 fuse: Block access to folio overlimit — Linux 7.8 High 2025-09-23
CVE-2025-39887 tracing/osnoise: Fix null-ptr-deref in bitmap_parselist() — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39886 bpf: Tell memcg to use allow_spinning=false path in bpf_timer_init() — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39885 ocfs2: fix recursive semaphore deadlock in fiemap call — Linux 6.2AI Medium AI 2025-09-23
CVE-2025-39884 btrfs: fix subvolume deletion lockup caused by inodes xarray race — Linux 6.3AI Medium AI 2025-09-23
CVE-2025-39883 mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39882 drm/mediatek: fix potential OF node use-after-free — Linux 8.4 High 2025-09-23
CVE-2025-39881 kernfs: Fix UAF in polling when open file is released — Linux 7.8 High 2025-09-23
CVE-2025-39880 libceph: fix invalid accesses to ceph_connection_v1_info — Linux 9.8 Critical 2025-09-23
CVE-2025-39879 ceph: always call ceph_shift_unused_folios_left() — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39878 ceph: fix crash after fscrypt_encrypt_pagecache_blocks() error — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39876 net: fec: Fix possible NPD in fec_enet_phy_reset_after_clk_enable() — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39877 mm/damon/sysfs: fix use-after-free in state_show() — Linux 7.0AI High AI 2025-09-23
CVE-2025-39875 igb: Fix NULL pointer dereference in ethtool loopback test — Linux 5.5AI Medium AI 2025-09-23
CVE-2025-39874 macsec: sync features on RTM_NEWLINK — Linux - - AI 2025-09-23
CVE-2025-39872 hsr: hold rcu and dev lock for hsr_get_port_ndev — Linux 7.8 High 2025-09-23

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.