Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

linux — Vulnerabilities & Security Advisories 13517

Browse all 13517 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-40168 smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). — Linux 8.1 High2025-11-12
CVE-2025-40167 ext4: detect invalid INLINE_DATA + EXTENTS flag combination — Linux 7.8 High2025-11-12
CVE-2025-40166 drm/xe/guc: Check GuC running state before deregistering exec queue — Linux 7.8 High2025-11-12
CVE-2025-40165 media: nxp: imx8-isi: m2m: Fix streaming cleanup on release — Linux 7.8 High2025-11-12
CVE-2025-40163 sched/deadline: Stop dl_server before CPU goes offline — Linux 5.5 -2025-11-12
CVE-2025-40162 ASoC: amd/sdw_utils: avoid NULL deref when devm_kasprintf() fails — Linux 5.5 -2025-11-12
CVE-2025-40164 usbnet: Fix using smp_processor_id() in preemptible code warnings — Linux 7.1 -2025-11-12
CVE-2025-40161 mailbox: zynqmp-ipi: Fix SGI cleanup on unbind — Linux 5.5 -2025-11-12
CVE-2025-40160 xen/events: Return -EEXIST for bound VIRQs — Linux 5.5 -2025-11-12
CVE-2025-40159 xsk: Harden userspace-supplied xdp_desc validation — Linux 7.8 High2025-11-12
CVE-2025-40158 ipv6: use RCU in ip6_output() — Linux 8.1 High2025-11-12
CVE-2025-40156 PM / devfreq: mtk-cci: Fix potential error pointer dereference in probe() — Linux 5.5 -2025-11-12
CVE-2025-40155 iommu/vt-d: debugfs: Fix legacy mode page table dump logic — Linux 7.3 High2025-11-12
CVE-2025-40157 EDAC/i10nm: Skip DIMM enumeration on a disabled memory controller — Linux 7.1 -2025-11-12
CVE-2025-40153 mm: hugetlb: avoid soft lockup when mprotect to large memory area — Linux 5.5 -2025-11-12
CVE-2025-40151 LoongArch: BPF: No support of struct argument in trampoline programs — Linux 7.8 High2025-11-12
CVE-2025-40152 drm/msm: Fix bootup splat with separate_gpu_drm modparam — Linux 7.1 -2025-11-12
CVE-2025-40154 ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping — Linux 7.8 -2025-11-12
CVE-2025-40150 f2fs: fix to avoid migrating empty section — Linux 5.5 -2025-11-12
CVE-2025-40149 tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). — Linux 7.8 High2025-11-12
CVE-2025-40148 drm/amd/display: Add NULL pointer checks in dc_stream cursor attribute functions — Linux 5.5 -2025-11-12
CVE-2025-40147 blk-throttle: fix access race during throttle policy activation — Linux 4.7 -2025-11-12
CVE-2025-40145 PCI/pwrctrl: Fix double cleanup on devm_add_action_or_reset() failure — Linux 7.8 -2025-11-12
CVE-2025-40146 blk-mq: fix potential deadlock while nr_requests grown — Linux 5.5 -2025-11-12
CVE-2025-40140 net: usb: Remove disruptive netif_wake_queue in rtl8150_set_multicast — Linux 8.8 High2025-11-12
CVE-2025-40143 bpf: dont report verifier bug for missing bpf_scc_visit on speculative path — Linux 7.8 -2025-11-12
CVE-2025-40141 Bluetooth: ISO: Fix possible UAF on iso_conn_free — Linux 8.0 High2025-11-12
CVE-2025-40142 ALSA: pcm: Disable bottom softirqs as part of spin_lock_irq() on PREEMPT_RT — Linux 5.5 -2025-11-12
CVE-2025-40139 smc: Use __sk_dst_get() and dst_dev_rcu() in in smc_clc_prfx_set(). — Linux 7.8 High2025-11-12
CVE-2025-40137 f2fs: fix to truncate first page in error path of f2fs_truncate() — Linux 5.5 -2025-11-12

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.