Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13538

Browse all 13538 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-38529 comedi: aio_iiro_16: Fix bit shift out of bounds — Linux 7.1AIHighAI2025-08-16
CVE-2025-38528 bpf: Reject %p% format string in bprintf-like helpers — Linux 7.1 High2025-08-16
CVE-2025-38527 smb: client: fix use-after-free in cifs_oplock_break — Linux 9.8 Critical2025-08-16
CVE-2025-38526 ice: add NULL check in eswitch lag check — Linux 7.5 High2025-08-16
CVE-2025-38525 rxrpc: Fix irq-disabled in local_bh_enable() — Linux 7.5 High2025-08-16
CVE-2025-38524 rxrpc: Fix recv-recv race of completed call — Linux 7.5 High2025-08-16
CVE-2025-38523 cifs: Fix the smbd_response slab to allow usercopy — Linux 7.5 High2025-08-16
CVE-2025-38522 sched/ext: Prevent update_locked_rq() calls with NULL rq — Linux 6.5AIMediumAI2025-08-16
CVE-2025-38521 drm/imagination: Fix kernel crash when hard resetting the GPU — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38520 drm/amdkfd: Don't call mmput from MMU notifier callback — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38519 mm/damon: fix divide by zero in damon_get_intervals_score() — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38518 x86/CPU/AMD: Disable INVLPGB on Zen2 — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38517 lib/alloc_tag: do not acquire non-existent lock in alloc_tag_top_users() — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38516 pinctrl: qcom: msm: mark certain pins as invalid for interrupts — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38515 drm/sched: Increment job count before swapping tail spsc queue — Linux 4.7AIMediumAI2025-08-16
CVE-2025-38514 rxrpc: Fix oops due to non-existence of prealloc backlog struct — Linux 7.5 High2025-08-16
CVE-2025-38513 wifi: zd1211rw: Fix potential NULL pointer dereference in zd_mac_tx_to_dev() — Linux 5.7AIMediumAI2025-08-16
CVE-2025-38512 wifi: prevent A-MSDU attacks in mesh networks — Linux 8.8 High2025-08-16
CVE-2025-38511 drm/xe/pf: Clear all LMTT pages on alloc — Linux 8.8 High2025-08-16
CVE-2025-38510 kasan: remove kasan_find_vm_area() to prevent possible deadlock — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38508 x86/sev: Use TSC_FACTOR for Secure TSC frequency calculation — Linux 7.3 High2025-08-16
CVE-2025-38509 wifi: mac80211: reject VHT opmode for unsupported channel widths — Linux 5.7AIMediumAI2025-08-16
CVE-2025-38507 HID: nintendo: avoid bluetooth suspend/resume stalls — Linux 6.5AIMediumAI2025-08-16
CVE-2025-38506 KVM: Allow CPU to reschedule while setting per-page memory attributes — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38505 wifi: mwifiex: discard erroneous disassoc frames on STA interface — Linux 7.1 High2025-08-16
CVE-2025-38504 io_uring/zcrx: fix pp destruction warnings — Linux 7.1AIHighAI2025-08-16
CVE-2025-38503 btrfs: fix assertion when building free space tree — Linux 5.5AIMediumAI2025-08-16
CVE-2025-38502 bpf: Fix oob access in cgroup local storage — Linux 7.8 High2025-08-16
CVE-2025-38501 ksmbd: limit repeated connections from clients with the same IP — Linux 7.5 High2025-08-16
CVE-2025-38500 xfrm: interface: fix use-after-free after changing collect_md xfrm interface — Linux 7.8 High2025-08-12

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.