Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13517

Browse all 13517 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-39911 i40e: fix IRQ freeing in i40e_vsi_request_irq_msix error path — Linux 7.1AIHighAI2025-10-01
CVE-2025-39910 mm/vmalloc, mm/kasan: respect gfp mask in kasan_populate_vmalloc() — Linux 7.1AIHighAI2025-10-01
CVE-2025-39909 mm/damon/lru_sort: avoid divide-by-zero in damon_lru_sort_apply_parameters() — Linux 5.5AIMediumAI2025-10-01
CVE-2025-39908 net: dev_ioctl: take ops lock in hwtstamp lower paths — Linux 7.8 High2025-10-01
CVE-2025-39907 mtd: rawnand: stm32_fmc2: avoid overlapping mappings on ECC buffer — Linux--AI2025-10-01
CVE-2025-39906 drm/amd/display: remove oem i2c adapter on finish — Linux 7.8 High2025-10-01
CVE-2025-39905 net: phylink: add lock for serializing concurrent pl->phydev writes with resolver — Linux 8.8AIHighAI2025-10-01
CVE-2025-39904 arm64: kexec: initialize kexec_buf struct in load_other_segments() — Linux 8.1AIHighAI2025-10-01
CVE-2025-39903 of_numa: fix uninitialized memory nodes causing kernel panic — Linux 5.5AIMediumAI2025-10-01
CVE-2025-39902 mm/slub: avoid accessing metadata when pointer is invalid in object_err() — Linux 7.1 High2025-10-01
CVE-2025-39901 i40e: remove read access to debugfs files — Linux 7.1AIHighAI2025-10-01
CVE-2025-39900 net_sched: gen_estimator: fix est_timer() vs CONFIG_PREEMPT_RT=y — Linux--AI2025-10-01
CVE-2025-39899 mm/userfaultfd: fix kmap_local LIFO ordering for CONFIG_HIGHPTE — Linux 7.7AIHighAI2025-10-01
CVE-2025-39897 net: xilinx: axienet: Add error handling for RX metadata pointer retrieval — Linux 7.5 High2025-10-01
CVE-2025-39896 accel/ivpu: Prevent recovery work from being queued during device removal — Linux 7.8 High2025-10-01
CVE-2025-39895 sched: Fix sched_numa_find_nth_cpu() if mask offline — Linux 7.1AIHighAI2025-10-01
CVE-2025-39894 netfilter: br_netfilter: do not check confirmed bit in br_nf_local_in() after confirm — Linux 7.5 High2025-10-01
CVE-2025-39892 ASoC: soc-core: care NULL dirver name on snd_soc_lookup_component_nolocked() — Linux 5.5AIMediumAI2025-10-01
CVE-2025-39893 spi: spi-qpic-snand: unregister ECC engine on probe error and device remove — Linux 7.8AIHighAI2025-10-01
CVE-2025-39891 wifi: mwifiex: Initialize the chan_stats array to zero — Linux 5.7AIMediumAI2025-10-01
CVE-2025-39890 wifi: ath12k: fix memory leak in ath12k_service_ready_ext_event — Linux 5.7AIMediumAI2025-09-24
CVE-2025-39889 Bluetooth: l2cap: Check encryption key size on incoming connection — Linux 8.1 High2025-09-24
CVE-2024-58241 Bluetooth: hci_core: Disable works on hci_unregister_dev — Linux 6.2AIMediumAI2025-09-24
CVE-2025-39888 fuse: Block access to folio overlimit — Linux 7.8 High2025-09-23
CVE-2025-39887 tracing/osnoise: Fix null-ptr-deref in bitmap_parselist() — Linux 5.5AIMediumAI2025-09-23
CVE-2025-39886 bpf: Tell memcg to use allow_spinning=false path in bpf_timer_init() — Linux 5.5AIMediumAI2025-09-23
CVE-2025-39885 ocfs2: fix recursive semaphore deadlock in fiemap call — Linux 6.2AIMediumAI2025-09-23
CVE-2025-39884 btrfs: fix subvolume deletion lockup caused by inodes xarray race — Linux 6.3AIMediumAI2025-09-23
CVE-2025-39883 mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory — Linux 5.5AIMediumAI2025-09-23
CVE-2025-39882 drm/mediatek: fix potential OF node use-after-free — Linux 8.4 High2025-09-23

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.