Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13564

Browse all 13564 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-38403 vsock/vmci: Clear the vmci transport packet properly when initializing it — Linux 7.1 -2025-07-25
CVE-2025-38402 idpf: return 0 size for RSS key if not supported — Linux 6.8 -2025-07-25
CVE-2025-38401 mtk-sd: Prevent memory corruption from DMA map failure — Linux 7.8 High2025-07-25
CVE-2025-38400 nfs: Clean up /proc/net/rpc/nfs when nfs_fs_proc_net_init() fails. — Linux 5.5 -2025-07-25
CVE-2025-38399 scsi: target: Fix NULL pointer dereference in core_scsi3_decode_spec_i_port() — Linux 7.5 High2025-07-25
CVE-2025-38398 spi: spi-qpic-snand: reallocate BAM transactions — Linux 7.8 High2025-07-25
CVE-2025-38397 nvme-multipath: fix suspicious RCU usage warning — Linux 9.8 -2025-07-25
CVE-2025-38396 fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass — Linux 7.8 High2025-07-25
CVE-2025-38395 regulator: gpio: Fix the out-of-bounds access to drvdata::gpiods — Linux 8.4 High2025-07-25
CVE-2025-38394 HID: appletb-kbd: fix memory corruption of input_handler_list — Linux 7.8 -2025-07-25
CVE-2025-38393 NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN — Linux 7.5 High2025-07-25
CVE-2025-38392 idpf: convert control queue mutex to a spinlock — Linux 5.5 -2025-07-25
CVE-2025-38391 usb: typec: altmodes/displayport: do not index invalid pin_assignments — Linux 4.6 -2025-07-25
CVE-2025-38390 firmware: arm_ffa: Fix memory leak by freeing notifier callback node — Linux 5.5 -2025-07-25
CVE-2025-38389 drm/i915/gt: Fix timeline left held on VMA alloc error — Linux 5.5 -2025-07-25
CVE-2025-38388 firmware: arm_ffa: Replace mutex with rwlock to avoid sleep in atomic context — Linux 7.1 -2025-07-25
CVE-2025-38387 RDMA/mlx5: Initialize obj_event->obj_sub_list before xa_insert — Linux 5.5 -2025-07-25
CVE-2025-38386 ACPICA: Refuse to evaluate a method if arguments are missing — Linux 7.8 High2025-07-25
CVE-2025-38385 net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect — Linux 6.2 -2025-07-25
CVE-2025-38383 mm/vmalloc: fix data race in show_numa_info() — Linux 7.0 -2025-07-25
CVE-2025-38384 mtd: spinand: fix memory leak of ECC engine conf — Linux 6.2 -2025-07-25
CVE-2025-38382 btrfs: fix iteration of extrefs during log replay — Linux 7.8 High2025-07-25
CVE-2025-38381 Input: cs40l50-vibra - fix potential NULL dereference in cs40l50_upload_owt() — Linux 6.5 -2025-07-25
CVE-2025-38379 smb: client: fix warning when reconnecting channel — Linux 7.5 High2025-07-25
CVE-2025-38378 HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe — Linux 5.5 -2025-07-25
CVE-2025-38377 rose: fix dangling neighbour pointers in rose_rt_device_down() — Linux 8.8 High2025-07-25
CVE-2025-38376 usb: chipidea: udc: disconnect/reconnect from host when do suspend/resume — Linux 7.5 -2025-07-25
CVE-2025-38375 virtio-net: ensure the received length does not exceed allocated size — Linux 8.4 High2025-07-25
CVE-2025-38374 optee: ffa: fix sleep in atomic context — Linux 5.5 -2025-07-25
CVE-2025-38373 IB/mlx5: Fix potential deadlock in MR deregistration — Linux 5.5 -2025-07-25

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.