Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13911

Browse all 13911 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-37912 ice: Check VF VSI Pointer Value in ice_vc_add_fdir_fltr() — Linux 6.6AIMediumAI2025-05-20
CVE-2025-37911 bnxt_en: Fix out-of-bound memcpy() during ethtool -w — Linux 7.8 High2025-05-20
CVE-2025-37910 ptp: ocp: Fix NULL dereference in Adva board SMA sysfs operations — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37909 net: lan743x: Fix memleak issue when GSO enabled — Linux 4.7AIMediumAI2025-05-20
CVE-2025-37908 mm, slab: clean up slab->obj_exts always — Linux 7.8 High2025-05-20
CVE-2025-37907 accel/ivpu: Fix locking order in ivpu_job_submit — Linux 7.1AIHighAI2025-05-20
CVE-2025-37906 ublk: fix race between io_uring_cmd_complete_in_task and ublk_cancel_cmd — Linux 7.8 High2025-05-20
CVE-2025-37905 firmware: arm_scmi: Balance device refcount when destroying devices — Linux 7.1AIHighAI2025-05-20
CVE-2025-37904 btrfs: fix the inode leak in btrfs_iget() — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37903 drm/amd/display: Fix slab-use-after-free in hdcp — Linux 7.8 High2025-05-20
CVE-2025-37901 irqchip/qcom-mpm: Prevent crash when trying to handle non-wake GPIOs — Linux 7.8 High2025-05-20
CVE-2025-37899 ksmbd: fix use-after-free in session logoff — Linux 8.8 High2025-05-20
CVE-2025-37900 iommu: Fix two issues in iommu_copy_struct_from_user() — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37898 powerpc64/ftrace: fix module loading without patchable function entries — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37896 spi: spi-mem: Add fix to avoid divide error — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37897 wifi: plfxlc: Remove erroneous assert in plfxlc_mac_release — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37895 bnxt_en: Fix error handling path in bnxt_init_chip() — Linux 5.5AIMediumAI2025-05-20
CVE-2025-37894 net: use sock_gen_put() when sk_state is TCP_TIME_WAIT — Linux 9.8 Critical2025-05-20
CVE-2025-37892 mtd: inftlcore: Add error check for inftl_read_oob() — Linux 7.1AIHighAI2025-05-20
CVE-2025-37891 ALSA: ump: Fix buffer overflow at UMP SysEx message conversion — Linux 7.8 High2025-05-19
CVE-2025-37890 net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc — Linux 7.8 High2025-05-16
CVE-2023-53146 media: dw2102: Fix null-ptr-deref in dw2102_i2c_transfer() — Linux 7.1AIHighAI2025-05-14
CVE-2023-53145 Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition — Linux 6.7AIMediumAI2025-05-10
CVE-2025-37889 ASoC: ops: Consistently treat platform_max as control value — Linux 5.5AIMediumAI2025-05-09
CVE-2025-37888 net/mlx5: Fix null-ptr-deref in mlx5_create_{inner_,}ttc_table() — Linux 5.5AIMediumAI2025-05-09
CVE-2025-37886 pds_core: make wait_context part of q_info — Linux 7.8 High2025-05-09
CVE-2025-37887 pds_core: handle unsupported PDS_CORE_CMD_FW_CONTROL result — Linux 7.1 High2025-05-09
CVE-2025-37885 KVM: x86: Reset IRTE to host control if *new* route isn't postable — Linux 8.8 High2025-05-09
CVE-2025-37883 s390/sclp: Add check for get_zeroed_page() — Linux 5.5AIMediumAI2025-05-09
CVE-2025-37884 bpf: Fix deadlock between rcu_tasks_trace and event_mutex. — Linux 5.5AIMediumAI2025-05-09

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.