Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-38646 wifi: rtw89: avoid NULL dereference when RX problematic packet on unsupported 6 GHz band — Linux 5.7AI Medium AI 2025-08-22
CVE-2025-38645 net/mlx5: Check device memory pointer before usage — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38644 wifi: mac80211: reject TDLS operations when station is not associated — Linux 5.7AI Medium AI 2025-08-22
CVE-2025-38643 wifi: cfg80211: Add missing lock in cfg80211_check_and_end_cac() — Linux 8.8 High 2025-08-22
CVE-2025-38642 wifi: mac80211: fix WARN_ON for monitor mode on some devices — Linux 2.6AI Low AI 2025-08-22
CVE-2025-38641 Bluetooth: btusb: Fix potential NULL dereference on kmalloc failure — Linux 6.5AI Medium AI 2025-08-22
CVE-2025-38640 bpf: Disable migration in nf_hook_run_bpf(). — Linux 7.8 High 2025-08-22
CVE-2025-38639 netfilter: xt_nfacct: don't assume acct name is null-terminated — Linux 7.1 High 2025-08-22
CVE-2025-38638 ipv6: add a retry logic in net6_rt_notify() — Linux 7.1AI High AI 2025-08-22
CVE-2025-38636 rv: Use strings in da monitors tracepoints — Linux 7.1AI High AI 2025-08-22
CVE-2025-38635 clk: davinci: Add NULL check in davinci_lpsc_clk_register() — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38634 power: supply: cpcap-charger: Fix null check for power_supply_get_by_name — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38633 clk: spacemit: mark K1 pll1_d8 as critical — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38631 clk: imx95-blk-ctl: Fix synchronous abort — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38632 pinmux: fix race causing mux_owner NULL with active mux_usecount — Linux 4.7AI Medium AI 2025-08-22
CVE-2025-38630 fbdev: imxfb: Check fb_add_videomode to prevent null-ptr-deref — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38629 ALSA: usb: scarlett2: Fix missing NULL check — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38628 vdpa/mlx5: Fix release of uninitialized resources on error path — Linux 7.8AI High AI 2025-08-22
CVE-2025-38627 f2fs: compress: fix UAF of f2fs_inode_info in f2fs_free_dic — Linux 7.8 High 2025-08-22
CVE-2025-38626 f2fs: fix to trigger foreground gc during f2fs_map_blocks() in lfs mode — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38625 vfio/pds: Fix missing detach_ioas op — Linux 4.7AI Medium AI 2025-08-22
CVE-2025-38624 PCI: pnv_php: Clean up allocated IRQs on unplug — Linux 6.5AI Medium AI 2025-08-22
CVE-2025-38623 PCI: pnv_php: Fix surprise plug detection and recovery — Linux 7.5AI High AI 2025-08-22
CVE-2025-38622 net: drop UFO packets in udp_rcv_segment() — Linux 6.2AI Medium AI 2025-08-22
CVE-2025-38621 md: make rdev_addable usable for rcu mode — Linux 5.5AI Medium AI 2025-08-22
CVE-2025-38619 media: ti: j721e-csi2rx: fix list_del corruption — Linux 7.8 High 2025-08-22
CVE-2025-38620 zloop: fix KASAN use-after-free of tag set — Linux 7.1AI High AI 2025-08-22
CVE-2025-38618 vsock: Do not allow binding to VMADDR_PORT_ANY — Linux 7.8 High 2025-08-22
CVE-2025-38617 net/packet: fix a race in packet_set_ring() and packet_notifier() — Linux 7.8 High 2025-08-22
CVE-2025-38616 tls: handle data disappearing from under the TLS ULP — Linux 7.8 High 2025-08-22

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.