Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 15166

Browse all 15166 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 15026 results / 15166 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-23147 i3c: Add NULL pointer check in i3c_master_queue_ibi() — Linux 5.5AI Medium AI 2025-05-01
CVE-2025-23145 mptcp: fix NULL pointer in can_accept_new_subflow — Linux 7.5 High 2025-05-01
CVE-2025-23146 mfd: ene-kb3930: Fix a potential NULL pointer dereference — Linux 5.5AI Medium AI 2025-05-01
CVE-2025-23144 backlight: led_bl: Hold led_access lock when calling led_sysfs_disable() — Linux 5.5AI Medium AI 2025-05-01
CVE-2025-23142 sctp: detect and prevent references to a freed transport in sendmsg — Linux 7.8 High 2025-05-01
CVE-2025-23143 net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod. — Linux 6.2AI Medium AI 2025-05-01
CVE-2025-23141 KVM: x86: Acquire SRCU in KVM_GET_MP_STATE to protect guest memory accesses — Linux 7.8 High 2025-05-01
CVE-2025-23140 misc: pci_endpoint_test: Avoid issue of interrupts remaining after request_irq error — Linux 5.5AI Medium AI 2025-05-01
CVE-2024-58099 vmxnet3: Fix packet corruption in vmxnet3_xdp_xmit_frame — Linux 8.6 High 2025-04-29
CVE-2025-37838 HSI: ssi_protocol: Fix use after free vulnerability in ssi_protocol Driver Due to Race Condition — Linux 7.8 High 2025-04-18
CVE-2025-40364 io_uring: fix io_req_prep_async with provided buffers — Linux 7.8 High 2025-04-18
CVE-2025-40325 md/raid10: wait barrier before returning discard request with REQ_NOWAIT — Linux 7.1 - 2025-04-18
CVE-2025-40114 iio: light: Add check for array bounds in veml6075_read_int_time_ms — Linux 7.1 - 2025-04-18
CVE-2025-40014 objtool, spi: amd: Fix out-of-bounds stack access in amd_set_spi_freq() — Linux 7.1 - 2025-04-18
CVE-2025-39989 x86/mce: use is_copy_from_user() to determine copy-from-user context — Linux 5.0 - 2025-04-18
CVE-2025-39930 ASoC: simple-card-utils: Don't use __free(device_node) at graph_util_parse_dai() — Linux 8.4 High 2025-04-18
CVE-2025-39778 objtool, nvmet: Fix out-of-bounds stack access in nvmet_ctrl_state_show() — Linux 7.1 - 2025-04-18
CVE-2025-39755 staging: gpib: Fix cb7210 pcmcia Oops — Linux 5.5 - 2025-04-18
CVE-2025-39728 clk: samsung: Fix UBSAN panic in samsung_clk_init() — Linux 4.3 - 2025-04-18
CVE-2025-39735 jfs: fix slab-out-of-bounds read in ea_get() — Linux 7.1 High 2025-04-18
CVE-2025-38637 net_sched: skbprio: Remove overly strict queue assertions — Linux 7.1 - 2025-04-18
CVE-2025-39688 nfsd: allow SC_STATUS_FREEABLE when searching via nfs4_lookup_stateid() — Linux 7.5 High 2025-04-18
CVE-2025-38575 ksmbd: use aead_request_free to match aead_request_alloc — Linux 5.5 - 2025-04-18
CVE-2025-38479 dmaengine: fsl-edma: free irq correctly in remove path — Linux 5.5 - 2025-04-18
CVE-2025-38240 drm/mediatek: dp: drm_err => dev_err in HPD path to avoid NULL ptr — Linux 6.3 - 2025-04-18
CVE-2025-38152 remoteproc: core: Clear table_sz when rproc_shutdown — Linux 7.1 - 2025-04-18
CVE-2025-38104 drm/amdgpu: Replace Mutex with Spinlock for RLCG register access to avoid Priority Inversion in SRIOV — Linux 7.0 - 2025-04-18
CVE-2025-38049 x86/resctrl: Fix allocation of cleanest CLOSID on platforms with no monitors — Linux 7.8 - 2025-04-18
CVE-2025-37893 LoongArch: BPF: Fix off-by-one error in build_prologue() — Linux 7.8 High 2025-04-18
CVE-2025-37925 jfs: reject on-disk inodes of an unsupported type — Linux 7.8 - 2025-04-18

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.