Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 14935

Browse all 14935 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2024-36921 wifi: iwlwifi: mvm: guard against invalid STA ID on removal — Linux 8.8 High 2024-05-30
CVE-2024-36920 scsi: mpi3mr: Avoid memcpy field-spanning write WARNING — Linux 7.1AI High AI 2024-05-30
CVE-2024-36919 scsi: bnx2fc: Remove spin_lock_bh while releasing resources after upload — Linux 7.1AI High AI 2024-05-30
CVE-2024-36918 bpf: Check bloom filter map value size — Linux 7.8 High 2024-05-30
CVE-2024-36917 block: fix overflow in blk_ioctl_discard() — Linux 7.8AI High AI 2024-05-30
CVE-2024-36916 blk-iocost: avoid out of bounds shift — Linux 7.3AI High AI 2024-05-30
CVE-2024-36915 nfc: llcp: fix nfc_llcp_setsockopt() unsafe copies — Linux 7.1 High 2024-05-30
CVE-2024-36914 drm/amd/display: Skip on writeback when it's not applicable — Linux 7.8 High 2024-05-30
CVE-2024-36913 Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails — Linux 9.3 Critical 2024-05-30
CVE-2024-36912 Drivers: hv: vmbus: Track decrypted status in vmbus_gpadl — Linux 9.6 Critical 2024-05-30
CVE-2024-36911 hv_netvsc: Don't free decrypted memory — Linux 9.8 Critical 2024-05-30
CVE-2024-36910 uio_hv_generic: Don't free decrypted memory — Linux 8.4 High 2024-05-30
CVE-2024-36909 Drivers: hv: vmbus: Don't free ring buffers that couldn't be re-encrypted — Linux 9.3 Critical 2024-05-30
CVE-2024-36908 blk-iocost: do not WARN if iocg was already offlined — Linux - - AI 2024-05-30
CVE-2024-36906 ARM: 9381/1: kasan: clear stale stack poison — Linux 7.1AI High AI 2024-05-30
CVE-2024-36905 tcp: defer shutdown(SEND_SHUTDOWN) for TCP_SYN_RECV sockets — Linux 7.5AI High AI 2024-05-30
CVE-2024-36904 tcp: Use refcount_inc_not_zero() in tcp_twsk_unique(). — Linux 7.8 High 2024-05-30
CVE-2024-36903 ipv6: Fix potential uninit-value access in __ip6_make_skb() — Linux 7.5AI High AI 2024-05-30
CVE-2024-36902 ipv6: fib6_rules: avoid possible NULL dereference in fib6_rule_action() — Linux 5.5AI Medium AI 2024-05-30
CVE-2024-36901 ipv6: prevent NULL dereference in ip6_output() — Linux 7.5AI High AI 2024-05-30
CVE-2024-36900 net: hns3: fix kernel crash when devlink reload during initialization — Linux 5.5AI Medium AI 2024-05-30
CVE-2024-36899 gpiolib: cdev: Fix use after free in lineinfo_changed_notify — Linux 7.8AI High AI 2024-05-30
CVE-2024-36898 gpiolib: cdev: fix uninitialised kfifo — Linux 7.1 High 2024-05-30
CVE-2024-36896 USB: core: Fix access violation during port device removal — Linux 5.5AI Medium AI 2024-05-30
CVE-2024-36897 drm/amd/display: Atom Integrated System Info v2_2 for DCN35 — Linux 5.5AI Medium AI 2024-05-30
CVE-2024-36895 usb: gadget: uvc: use correct buffer size when parsing configfs lists — Linux 7.1AI High AI 2024-05-30
CVE-2024-36894 usb: gadget: f_fs: Fix race between aio_cancel() and AIO request complete — Linux 7.8 High 2024-05-30
CVE-2024-36893 usb: typec: tcpm: Check for port partner validity before consuming it — Linux 5.5AI Medium AI 2024-05-30
CVE-2024-36892 mm/slub: avoid zeroing outside-object freepointer for single free — Linux 7.1AI High AI 2024-05-30
CVE-2024-36891 maple_tree: fix mas_empty_area_rev() null pointer dereference — Linux 5.5AI Medium AI 2024-05-30

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.