Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12059

All 12059 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2022-50583 md/raid0, raid10: Don't set discard sectors for request queue 5.5AIMediumAI2025-12-08
CVE-2025-40326 NFSD: Define actions for the new time_deleg FATTR4 attributes 7.5AIHighAI2025-12-08
CVE-2025-40324 NFSD: Fix crash in nfsd4_read_release() 5.5AIMediumAI2025-12-08
CVE-2025-40323 fbcon: Set fb_display[i]->mode to NULL when the mode is released 7.1AIHighAI2025-12-08
CVE-2025-40322 fbdev: bitblit: bound-check glyph index in bit_putcs* 7.7 -2025-12-08
CVE-2025-40321 wifi: brcmfmac: fix crash while sending Action Frames in standalone AP Mode 5.7AIMediumAI2025-12-08
CVE-2025-40320 smb: client: fix potential cfid UAF in smb2_query_info_compound 7.7AIHighAI2025-12-08
CVE-2025-40319 bpf: Sync pending IRQ work before freeing ring buffer 7.0AIHighAI2025-12-08
CVE-2025-40318 Bluetooth: hci_sync: fix race in hci_cmd_sync_dequeue_once 7.5 -2025-12-08
CVE-2025-40317 regmap: slimbus: fix bus_context pointer in regmap init calls 3.3 -2025-12-08
CVE-2025-40316 drm/mediatek: Fix device use-after-free on unbind 7.1AIHighAI2025-12-08
CVE-2025-40315 usb: gadget: f_fs: Fix epfile null pointer access after ep enable. 4.7AIMediumAI2025-12-08
CVE-2025-40314 usb: cdns3: gadget: Use-after-free during failed initialization and exit of cdnsp gadget 7.8AIHighAI2025-12-08
CVE-2025-40313 ntfs3: pretend $Extend records as regular files 7.8AIHighAI2025-12-08
CVE-2025-40312 jfs: Verify inode mode when loading from disk 7.8AIHighAI2025-12-08
CVE-2025-40311 accel/habanalabs: support mapping cb with vmalloc-backed coherent memory 4.7AIMediumAI2025-12-08
CVE-2025-40310 amd/amdkfd: resolve a race in amdgpu_amdkfd_device_fini_sw 4.7AIMediumAI2025-12-08
CVE-2025-40309 Bluetooth: SCO: Fix UAF on sco_conn_free 8.4AIHighAI2025-12-08
CVE-2025-40308 Bluetooth: bcsp: receive data only if registered 6.2AIMediumAI2025-12-08
CVE-2025-40307 exfat: validate cluster allocation bits of the allocation bitmap 7.7AIHighAI2025-12-08
CVE-2025-40306 orangefs: fix xattr related buffer overflow... 5.5AIMediumAI2025-12-08
CVE-2025-40305 9p/trans_fd: p9_fd_request: kick rx thread if EPOLLIN 5.5 -2025-12-08
CVE-2025-40304 fbdev: Add bounds checking in bit_putcs to fix vmalloc-out-of-bounds 8.4AIHighAI2025-12-08
CVE-2025-40303 btrfs: ensure no dirty metadata is written back for an fs with errors 5.5AIMediumAI2025-12-08
CVE-2025-40302 media: videobuf2: forbid remove_bufs when legacy fileio is active 7.8 -2025-12-08
CVE-2025-40301 Bluetooth: hci_event: validate skb length for unknown CC opcode --2025-12-08
CVE-2025-40299 gve: Implement gettimex64 with -EOPNOTSUPP 5.5AIMediumAI2025-12-08
CVE-2025-40298 gve: Implement settime64 with -EOPNOTSUPP 7.1AIHighAI2025-12-08
CVE-2025-40297 net: bridge: fix use-after-free due to MST port state bypass 7.0AIHighAI2025-12-08
CVE-2025-40296 platform/x86: int3472: Fix double free of GPIO device during unregister 5.5AIMediumAI2025-12-08

All 12059 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.