Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

linux — Vulnerabilities & Security Advisories 13912

Browse all 13912 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-21952 HID: corsair-void: Update power supply values with a unified work handler — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21950 drivers: virt: acrn: hsm: Use kzalloc to avoid info leak in pmcmd_ioctl — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21951 bus: mhi: host: pci_generic: Use pci_try_reset_function() to avoid deadlock — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21948 HID: appleir: Fix potential NULL dereference at raw event handle — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21949 LoongArch: Set hugetlb mmap base address aligned with pmd size — Linux 7.8 High2025-04-01
CVE-2025-21946 ksmbd: fix out-of-bounds in parse_sec_desc() — Linux 8.8 High2025-04-01
CVE-2025-21947 ksmbd: fix type confusion via race condition when using ipc_msg_send_request — Linux 8.1 High2025-04-01
CVE-2025-21944 ksmbd: fix bug on trap in smb2_lock — Linux 7.1AIHighAI2025-04-01
CVE-2025-21945 ksmbd: fix use-after-free in smb2_lock — Linux 8.8 High2025-04-01
CVE-2025-21943 gpio: aggregator: protect driver attr handlers against module unload — Linux 7.0AIHighAI2025-04-01
CVE-2025-21942 btrfs: zoned: fix extent range end unlock in cow_file_range() — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21940 drm/amdkfd: Fix NULL Pointer Dereference in KFD queue — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21941 drm/amd/display: Fix null check for pipe_ctx->plane_state in resource_build_scaling_params — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21938 mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_append_new_local_addr — Linux 7.5 High2025-04-01
CVE-2025-21939 drm/xe/hmm: Don't dereference struct page pointers without notifier lock — Linux 7.8 High2025-04-01
CVE-2025-21936 Bluetooth: Add check for mgmt_alloc_skb() in mgmt_device_connected() — Linux 6.5AIMediumAI2025-04-01
CVE-2025-21937 Bluetooth: Add check for mgmt_alloc_skb() in mgmt_remote_name() — Linux 6.5AIMediumAI2025-04-01
CVE-2025-21935 rapidio: add check for rio_add_net() in rio_scan_alloc_net() — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21934 rapidio: fix an API misues when rio_add_net() fails — Linux 7.8 High2025-04-01
CVE-2025-21933 arm: pgtable: fix NULL pointer dereference issue — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21932 mm: abort vma_modify() on merge out of memory failure — Linux 7.0 High2025-04-01
CVE-2025-21931 hwpoison, memory_hotplug: lock folio before unmap hwpoisoned folio — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21930 wifi: iwlwifi: mvm: don't try to talk to a dead firmware — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21929 HID: intel-ish-hid: Fix use-after-free issue in hid_ishtp_cl_remove() — Linux 7.1AIHighAI2025-04-01
CVE-2025-21928 HID: intel-ish-hid: Fix use-after-free issue in ishtp_hid_remove() — Linux 7.1AIHighAI2025-04-01
CVE-2025-21927 nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() — Linux 9.8 Critical2025-04-01
CVE-2025-21926 net: gso: fix ownership in __udp_gso_segment — Linux 7.8 High2025-04-01
CVE-2025-21925 llc: do not use skb_get() before dev_queue_xmit() — Linux 5.5AIMediumAI2025-04-01
CVE-2025-21924 net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error — Linux 7.8 High2025-04-01
CVE-2025-21922 ppp: Fix KMSAN uninit-value warning with bpf — Linux 7.1AIHighAI2025-04-01

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.