Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

linux — Vulnerabilities & Security Advisories 14647

Browse all 14647 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-21801 net: ravb: Fix missing rtnl lock in suspend/resume path — Linux 7.8 High2025-02-27
CVE-2025-21800 net/mlx5: HWS, fix definer's HWS_SET32 macro for negative offset — Linux 6.5 -2025-02-27
CVE-2025-21799 net: ethernet: ti: am65-cpsw: fix freeing IRQ in am65_cpsw_nuss_remove_tx_chns() — Linux 7.8 -2025-02-27
CVE-2025-21798 firewire: test: Fix potential null dereference in firewire kunit test — Linux 6.2 -2025-02-27
CVE-2024-58042 rhashtable: Fix potential deadlock by moving schedule_work outside lock — Linux 5.5 -2025-02-27
CVE-2024-58022 mailbox: th1520: Fix a NULL vs IS_ERR() bug — Linux 5.5 -2025-02-27
CVE-2024-58034 memory: tegra20-emc: fix an OF node reference bug in tegra_emc_find_node_by_ram_code() — Linux 7.8 High2025-02-27
CVE-2025-21797 HID: corsair-void: Add missing delayed work cancel for headset status — Linux 7.8 -2025-02-27
CVE-2025-21796 nfsd: clear acl_access/acl_default after releasing them — Linux 9.8 Critical2025-02-27
CVE-2025-21795 NFSD: fix hang in nfsd4_shutdown_callback — Linux 7.5 High2025-02-27
CVE-2025-21794 HID: hid-thrustmaster: fix stack-out-of-bounds read in usb_check_int_endpoints() — Linux 7.1 -2025-02-27
CVE-2025-21793 spi: sn-f-ospi: Fix division by zero — Linux 5.5 -2025-02-27
CVE-2025-21792 ax25: Fix refcount leak caused by setting SO_BINDTODEVICE sockopt — Linux 7.8 High2025-02-27
CVE-2025-21791 vrf: use RCU protection in l3mdev_l3_out() — Linux 7.8 High2025-02-27
CVE-2025-21790 vxlan: check vxlan_vnigroup_init() return value — Linux 5.5 -2025-02-27
CVE-2025-21789 LoongArch: csum: Fix OoB access in IP checksum code for negative lengths — Linux 7.3 High2025-02-27
CVE-2025-21788 net: ethernet: ti: am65-cpsw: fix memleak in certain XDP cases — Linux 7.5 High2025-02-27
CVE-2025-21787 team: better TEAM_OPTION_TYPE_STRING validation — Linux 5.5 -2025-02-27
CVE-2025-21786 workqueue: Put the pwq after detaching the rescuer from the pool — Linux 7.8 High2025-02-27
CVE-2025-21785 arm64: cacheinfo: Avoid out-of-bounds write to cacheinfo array — Linux 7.8 High2025-02-27
CVE-2025-21783 gpiolib: Fix crash on error in gpiochip_get_ngpios() — Linux 6.5 -2025-02-27
CVE-2025-21784 drm/amdgpu: bail out when failed to load fw in psp_init_cap_microcode() — Linux 7.8 -2025-02-27
CVE-2025-21782 orangefs: fix a oob in orangefs_debug_write — Linux 7.1 -2025-02-27
CVE-2025-21780 drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() — Linux 7.8 High2025-02-27
CVE-2025-21781 batman-adv: fix panic during interface removal — Linux 5.5 -2025-02-27
CVE-2025-21778 tracing: Do not allow mmap() of persistent ring buffer — Linux 7.8 High2025-02-27
CVE-2025-21779 KVM: x86: Reject Hyper-V's SEND_IPI hypercalls if local APIC isn't in-kernel — Linux 7.8 -2025-02-27
CVE-2025-21776 USB: hub: Ignore non-compliant devices with too many configs or interfaces — Linux 9.1 -2025-02-27
CVE-2025-21777 ring-buffer: Validate the persistent meta data subbuf array — Linux 6.1 -2025-02-27
CVE-2025-21775 can: ctucanfd: handle skb allocation failure — Linux 6.2 -2025-02-27

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.