Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-38499 clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns — Linux 7.8 High 2025-08-11
CVE-2024-58238 Bluetooth: btnxpuart: Resolve TX timeout error in power save stress test — Linux 7.1 High 2025-08-09
CVE-2022-50233 Bluetooth: eir: Fix using strlen with hdev->{dev_name,short_name} — Linux 7.8 High 2025-08-09
CVE-2025-38498 do_change_type(): refuse to operate on unmounted/not ours mounts — Linux 7.8 High 2025-07-30
CVE-2025-38497 usb: gadget: configfs: Fix OOB read on empty string write — Linux 7.8 - 2025-07-28
CVE-2025-38496 dm-bufio: fix sched in atomic context — Linux 7.1 - 2025-07-28
CVE-2025-38495 HID: core: ensure the allocated report buffer can contain the reserved report ID — Linux 8.8 High 2025-07-28
CVE-2025-38494 HID: core: do not bypass hid_hw_raw_request — Linux 7.8 High 2025-07-28
CVE-2025-38493 tracing/osnoise: Fix crash in timerlat_dump_stack() — Linux 5.5 - 2025-07-28
CVE-2025-38492 netfs: Fix race between cache write completion and ALL_QUEUED being set — Linux 7.0 - 2025-07-28
CVE-2025-38491 mptcp: make fallback action and fallback decision atomic — Linux 8.2 High 2025-07-28
CVE-2025-38490 net: libwx: remove duplicate page_pool_put_full_page() — Linux 9.8 Critical 2025-07-28
CVE-2025-38489 s390/bpf: Fix bpf_arch_text_poke() with new_addr == NULL again — Linux 5.5 - 2025-07-28
CVE-2025-38488 smb: client: fix use-after-free in crypt_message when using async crypto — Linux 9.8 Critical 2025-07-28
CVE-2025-38487 soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled — Linux 5.5 - 2025-07-28
CVE-2025-38486 soundwire: Revert "soundwire: qcom: Add set_channel_map api support" — Linux 7.8 High 2025-07-28
CVE-2025-38485 iio: accel: fxls8962af: Fix use after free in fxls8962af_fifo_flush — Linux 7.8 High 2025-07-28
CVE-2025-38484 iio: backend: fix out-of-bound write — Linux 7.8 High 2025-07-28
CVE-2025-38483 comedi: das16m1: Fix bit shift out of bounds — Linux 7.1 - 2025-07-28
CVE-2025-38482 comedi: das6402: Fix bit shift out of bounds — Linux 7.1 - 2025-07-28
CVE-2025-38481 comedi: Fail COMEDI_INSNLIST ioctl if n_insns is too large — Linux 5.5 - 2025-07-28
CVE-2025-38480 comedi: Fix use of uninitialized data in insn_rw_emulate_bits() — Linux 7.8AI High AI 2025-07-28
CVE-2025-38478 comedi: Fix initialization of data for instructions that write to subdevice — Linux 7.8 High 2025-07-28
CVE-2025-38477 net/sched: sch_qfq: Fix race condition on qfq_aggregate — Linux 7.8 High 2025-07-28
CVE-2025-38476 rpl: Fix use-after-free in rpl_do_srh_inline(). — Linux 9.8 Critical 2025-07-28
CVE-2025-38474 usb: net: sierra: check for no status endpoint — Linux 5.5 - 2025-07-28
CVE-2025-38475 smc: Fix various oops due to inet_sock type confusion. — Linux 7.8 High 2025-07-28
CVE-2025-38473 Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_cb() — Linux 6.5 - 2025-07-28
CVE-2025-38472 netfilter: nf_conntrack: fix crash due to removal of uninitialised entry — Linux 9.8 Critical 2025-07-28
CVE-2025-38471 tls: always refresh the queue when reading sock — Linux 9.8 Critical 2025-07-28

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.