Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 16673

Browse all 16673 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE ID Title CVSS Severity Published
CVE-2024-26584 net: tls: handle backlogging of crypto requests — Linux 9.8 Critical 2024-02-21
CVE-2024-26582 net: tls: fix use-after-free with partial reads and async decrypt — Linux 9.8 Critical 2024-02-21
CVE-2023-52442 ksmbd: validate session id and tree id in compound request — Linux 9.1 Critical 2024-02-21
CVE-2023-52441 ksmbd: fix out of bounds in init_smb2_rsp_hdr() — Linux 9.1 Critical 2024-02-21
CVE-2023-52440 ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob() — Linux 9.8 Critical 2024-02-21
CVE-2023-52438 binder: fix use-after-free in shinker's callback — Linux 7.8 High 2024-02-20
CVE-2023-52439 uio: Fix use-after-free in uio_open — Linux 7.8 High 2024-02-20
CVE-2023-52436 f2fs: explicitly null-terminate the xattr list — Linux 7.8 High 2024-02-20
CVE-2023-52435 net: prevent mss overflow in skb_segment() — Linux 5.5AI Medium AI 2024-02-20
CVE-2023-52434 smb: client: fix potential OOBs in smb2_parse_contexts() — Linux 8.1 High 2024-02-20
CVE-2023-52433 netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction — Linux 7.8 High 2024-02-20
CVE-2024-26581 netfilter: nft_set_rbtree: skip end interval element from gc — Linux 7.8 High 2024-02-20
CVE-2024-24864 Race condition vulnerability in Linux kernel media/dvb-core in dvbdmx_write() — Linux kernel CWE-362 5.3 Medium 2024-02-05
CVE-2024-24857 Race condition vulnerability in Linux kernel bluetooth in conn_info_{min,max}_age_set() — Linux kernel CWE-362 4.6 Medium 2024-02-05
CVE-2024-24858 Race condition vulnerability in Linux kernel net/bluetooth in {conn,adv}_{min,max}_interval_set() — Linux kernel CWE-362 4.6 Medium 2024-02-05
CVE-2024-24859 Race condition vulnerability in Linux kernel bluetooth sniff_{min,max}_interval_set() — Linux kernel CWE-362 4.6 Medium 2024-02-05
CVE-2024-24860 Race condition vulnerability in Linux kernel bluetooth driver in {min,max}_key_size_set() — Linux kernel CWE-362 4.6 Medium 2024-02-05
CVE-2024-24861 Race condition vulnerability in Linux kernel media/xc4000 xc4000_get_frequency() — Linux kernel CWE-362 3.3 Low 2024-02-05
CVE-2024-24855 Race condition vulnerability in Linux kernel scsi device driver lpfc_unregister_fcf_rescan() — Linux kernel CWE-362 5.0 Medium 2024-02-05
CVE-2024-23196 Race condition vulnerability in Linux kernel sound/hda snd_hdac_regmap_sync — Linux kernel CWE-362 5.3 Medium 2024-02-05
CVE-2024-22386 Race condition vulnerability in Linux kernel drm/exynos exynos_drm_crtc_atomic_disable — Linux kernel CWE-362 5.3 Medium 2024-02-05
CVE-2024-1086 Use-after-free in Linux kernel's netfilter: nf_tables component — Kernel CWE-416 7.8 High 2024-01-31
CVE-2024-1085 Use-after-free in Linux kernel's netfilter: nf_tables component — Kernel CWE-416 7.8 High 2024-01-31
CVE-2024-21803 Possible UAF in bt_accept_poll in Linux kernel — Linux kernel CWE-416 3.5 Low 2024-01-30
CVE-2023-46838 Linux: netback processing of zero-length transmit fragment — Linux 7.5 - 2024-01-29
CVE-2024-22099 NULL pointer deference in rfcomm_check_security in Linux kernel — Linux kernel CWE-476 6.3 Medium 2024-01-25
CVE-2024-23307 Integer overflow in raid5_cache_count in Linux kernel — Linux kernel CWE-190 4.4 Medium 2024-01-25
CVE-2024-0775 Kernel: use-after-free while changing the mount option in __ext4_remount leading — kernel CWE-416 6.7 Medium 2024-01-22
CVE-2024-0565 Kernel: cifs filesystem decryption improper input validation remote code execution vulnerability in function receive_encrypted_standard of client — kernel CWE-191 6.8 Medium 2024-01-15
CVE-2023-34324 Possible deadlock in Linux kernel event handling — Linux 5.5 - 2024-01-05

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.