Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-38676 iommu/amd: Avoid stack buffer overflow from kernel cmdline — Linux 7.8AI High AI 2025-08-26
CVE-2025-38675 xfrm: state: initialize state_ptrs earlier in xfrm_state_find — Linux 7.8 High 2025-08-22
CVE-2025-38674 Revert "drm/prime: Use dma_buf from GEM object instance" — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38673 Revert "drm/gem-framebuffer: Use dma_buf from GEM object instance" — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38672 Revert "drm/gem-dma: Use dma_buf from GEM object instance" — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38671 i2c: qup: jump out of the loop in case of timeout — Linux 6.2AI Medium AI 2025-08-22
CVE-2025-38670 arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack() — Linux 7.8 High 2025-08-22
CVE-2025-38668 regulator: core: fix NULL dereference on unbind due to stale coupling data — Linux 4.7AI Medium AI 2025-08-22
CVE-2025-38669 Revert "drm/gem-shmem: Use dma_buf from GEM object instance" — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38667 iio: fix potential out-of-bound write — Linux 7.8 High 2025-08-22
CVE-2025-38666 net: appletalk: Fix use-after-free in AARP proxy probe — Linux 8.8AI High AI 2025-08-22
CVE-2025-38665 can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38664 ice: Fix a null pointer dereference in ice_copy_and_init_pkg() — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38663 nilfs2: reject invalid file types when reading inodes — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38662 ASoC: mediatek: mt8365-dai-i2s: pass correct size to mt8365_dai_set_priv — Linux 7.1 High 2025-08-22
CVE-2025-38661 platform/x86: alienware-wmi-wmax: Fix `dmi_system_id` array — Linux 7.1 High 2025-08-22
CVE-2025-38660 [ceph] parse_longname(): strrchr() expects NUL-terminated string — Linux 9.8 Critical 2025-08-22
CVE-2025-38658 nvmet: pci-epf: Do not complete commands twice if nvmet_req_init() fails — Linux 8.8 High 2025-08-22
CVE-2025-38659 gfs2: No more self recovery — Linux 7.8 High 2025-08-22
CVE-2025-38657 wifi: rtw89: mcc: prevent shift wrapping in rtw89_core_mlsr_switch() — Linux 7.3 High 2025-08-22
CVE-2025-38656 wifi: iwlwifi: Fix error code in iwl_op_mode_dvm_start() — Linux 7.8 High 2025-08-22
CVE-2025-38655 pinctrl: canaan: k230: add NULL check in DT parse — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38654 pinctrl: canaan: k230: Fix order of DT parse and pinctrl register — Linux 7.3AI High AI 2025-08-22
CVE-2025-38653 proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al — Linux 7.8 High 2025-08-22
CVE-2025-38652 f2fs: fix to avoid out-of-boundary access in devs.path — Linux 7.3 High 2025-08-22
CVE-2025-38651 landlock: Fix warning from KUnit tests — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38650 hfsplus: remove mutex_lock check in hfsplus_free_extents — Linux 8.1AI High AI 2025-08-22
CVE-2025-38649 arm64: dts: qcom: qcs615: fix a crash issue caused by infinite loop for Coresight — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38648 spi: stm32: Check for cfg availability in stm32_spi_probe — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38647 wifi: rtw89: sar: drop lockdep assertion in rtw89_set_sar_from_acpi — Linux 5.5AI Medium AI 2025-08-22

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.