Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11142

Browse all 11142 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPublished
CVE-2025-38679 media: venus: Fix OOB read due to missing payload bound check — Linux 7.1AIHighAI2025-09-04
CVE-2025-38678 netfilter: nf_tables: reject duplicate device on updates — Linux 7.1AIHighAI2025-09-03
CVE-2025-38677 f2fs: fix to avoid out-of-boundary access in dnode page — Linux--2025-08-30
CVE-2024-58240 tls: separate no-async decryption request handling from async — Linux 6.3AIMediumAI2025-08-28
CVE-2025-38676 iommu/amd: Avoid stack buffer overflow from kernel cmdline — Linux 7.8AIHighAI2025-08-26
CVE-2025-38675 xfrm: state: initialize state_ptrs earlier in xfrm_state_find — Linux 7.1AIHighAI2025-08-22
CVE-2025-38674 Revert "drm/prime: Use dma_buf from GEM object instance" — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38673 Revert "drm/gem-framebuffer: Use dma_buf from GEM object instance" — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38672 Revert "drm/gem-dma: Use dma_buf from GEM object instance" — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38671 i2c: qup: jump out of the loop in case of timeout — Linux 6.2AIMediumAI2025-08-22
CVE-2025-38670 arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack() — Linux 6.1AIMediumAI2025-08-22
CVE-2025-38668 regulator: core: fix NULL dereference on unbind due to stale coupling data — Linux 4.7AIMediumAI2025-08-22
CVE-2025-38669 Revert "drm/gem-shmem: Use dma_buf from GEM object instance" — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38667 iio: fix potential out-of-bound write — Linux 7.8AIHighAI2025-08-22
CVE-2025-38666 net: appletalk: Fix use-after-free in AARP proxy probe — Linux 8.8AIHighAI2025-08-22
CVE-2025-38665 can: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38664 ice: Fix a null pointer dereference in ice_copy_and_init_pkg() — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38663 nilfs2: reject invalid file types when reading inodes — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38662 ASoC: mediatek: mt8365-dai-i2s: pass correct size to mt8365_dai_set_priv — Linux 6.5AIMediumAI2025-08-22
CVE-2025-38661 platform/x86: alienware-wmi-wmax: Fix `dmi_system_id` array — Linux 7.8AIHighAI2025-08-22
CVE-2025-38660 [ceph] parse_longname(): strrchr() expects NUL-terminated string — Linux 7.7AIHighAI2025-08-22
CVE-2025-38658 nvmet: pci-epf: Do not complete commands twice if nvmet_req_init() fails — Linux 7.8AIHighAI2025-08-22
CVE-2025-38659 gfs2: No more self recovery — Linux--AI2025-08-22
CVE-2025-38657 wifi: rtw89: mcc: prevent shift wrapping in rtw89_core_mlsr_switch() — Linux 6.7AIMediumAI2025-08-22
CVE-2025-38656 wifi: iwlwifi: Fix error code in iwl_op_mode_dvm_start() — Linux 7.3AIHighAI2025-08-22
CVE-2025-38655 pinctrl: canaan: k230: add NULL check in DT parse — Linux 5.5AIMediumAI2025-08-22
CVE-2025-38654 pinctrl: canaan: k230: Fix order of DT parse and pinctrl register — Linux 7.3AIHighAI2025-08-22
CVE-2025-38653 proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al — Linux 7.1AIHighAI2025-08-22
CVE-2025-38652 f2fs: fix to avoid out-of-boundary access in devs.path — Linux 7.1AIHighAI2025-08-22
CVE-2025-38651 landlock: Fix warning from KUnit tests — Linux 5.5AIMediumAI2025-08-22

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.