Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13564

Browse all 13564 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-38728 smb3: fix for slab out of bounds on mount to ksmbd — Linux 9.1 Critical2025-09-04
CVE-2025-38727 netlink: avoid infinite retry looping in netlink_unicast() — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38726 net: ftgmac100: fix potential NULL pointer access in ftgmac100_phy_disconnect — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38725 net: usb: asix_devices: add phy_mask for ax88772 mdio bus — Linux 7.8AIHighAI2025-09-04
CVE-2025-38724 nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() — Linux 9.8 Critical2025-09-04
CVE-2025-38723 LoongArch: BPF: Fix jump offset calculation in tailcall — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38722 habanalabs: fix UAF in export_dmabuf() — Linux 7.8 High2025-09-04
CVE-2025-38721 netfilter: ctnetlink: fix refcount leak on table dump — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38720 net: hibmcge: fix rtnl deadlock issue — Linux 8.1AIHighAI2025-09-04
CVE-2025-38719 net: hibmcge: fix the division by zero issue — Linux 6.2AIMediumAI2025-09-04
CVE-2025-38718 sctp: linearize cloned gso packets in sctp_rcv — Linux 7.8 High2025-09-04
CVE-2025-38717 net: kcm: Fix race condition in kcm_unattach() — Linux 7.8 High2025-09-04
CVE-2025-38716 hfs: fix general protection fault in hfs_find_init() — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38715 hfs: fix slab-out-of-bounds in hfs_bnode_read() — Linux 7.8 High2025-09-04
CVE-2025-38714 hfsplus: fix slab-out-of-bounds in hfsplus_bnode_read() — Linux 7.8 High2025-09-04
CVE-2025-38713 hfsplus: fix slab-out-of-bounds read in hfsplus_uni2asc() — Linux 7.1 High2025-09-04
CVE-2025-38712 hfsplus: don't use BUG_ON() in hfsplus_create_attributes_file() — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38711 smb/server: avoid deadlock when linking with ReplaceIfExists — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38710 gfs2: Validate i_depth for exhash directories — Linux 7.8 High2025-09-04
CVE-2025-38709 loop: Avoid updating block size under exclusive owner — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38708 drbd: add missing kref_get in handle_write_conflicts — Linux 9.8 Critical2025-09-04
CVE-2025-38707 fs/ntfs3: Add sanity check for file name — Linux 7.1 High2025-09-04
CVE-2025-38706 ASoC: core: Check for rtd == NULL in snd_soc_remove_pcm_runtime() — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38705 drm/amd/pm: fix null pointer access — Linux 5.5AIMediumAI2025-09-04
CVE-2025-38704 rcu/nocb: Fix possible invalid rdp's->nocb_cb_kthread pointer access — Linux 7.1AIHighAI2025-09-04
CVE-2025-38703 drm/xe: Make dma-fences compliant with the safe access rules — Linux 7.8 High2025-09-04
CVE-2025-38702 fbdev: fix potential buffer overflow in do_register_framebuffer() — Linux 7.1AIHighAI2025-09-04
CVE-2025-38701 ext4: do not BUG when INLINE_DATA_FL lacks system.data xattr — Linux 7.1AIHighAI2025-09-04
CVE-2025-38700 scsi: libiscsi: Initialize iscsi_conn->dd_data only if memory is allocated — Linux 6.2AIMediumAI2025-09-04
CVE-2025-38698 jfs: Regular file corruption check — Linux 7.7AIHighAI2025-09-04

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.