Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12059

All 12059 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-40295 fscrypt: fix left shift underflow when inode->i_blkbits > PAGE_SHIFT 7.1AIHighAI2025-12-08
CVE-2025-40294 Bluetooth: MGMT: Fix OOB access in parse_adv_monitor_pattern() 8.1 -2025-12-08
CVE-2025-40293 iommufd: Don't overflow during division for dirty tracking 5.5AIMediumAI2025-12-08
CVE-2025-40292 virtio-net: fix received length check in big packets 4.7 -2025-12-08
CVE-2025-40291 io_uring: fix regbuf vector size truncation 7.8AIHighAI2025-12-08
CVE-2025-40290 xsk: avoid data corruption on cq descriptor number 5.5AIMediumAI2025-12-08
CVE-2025-40289 drm/amdgpu: hide VRAM sysfs attributes on GPUs without VRAM 5.5 -2025-12-06
CVE-2025-40288 drm/amdgpu: Fix NULL pointer dereference in VRAM logic for APU devices 5.5 -2025-12-06
CVE-2025-40287 exfat: fix improper check of dentry.stream.valid_size 6.2 -2025-12-06
CVE-2025-40286 smb/server: fix possible memory leak in smb2_read() 6.5 -2025-12-06
CVE-2025-40285 smb/server: fix possible refcount leak in smb2_sess_setup() 5.5 -2025-12-06
CVE-2025-40284 Bluetooth: MGMT: cancel mesh send timer when hdev removed 6.5 -2025-12-06
CVE-2025-40283 Bluetooth: btusb: reorder cleanup in btusb_disconnect to avoid UAF 8.0 -2025-12-06
CVE-2025-40282 Bluetooth: 6lowpan: reset link-local header on ipv6 recv path 6.5 -2025-12-06
CVE-2025-40281 sctp: prevent possible shift-out-of-bounds in sctp_transport_update_rto 7.1 -2025-12-06
CVE-2025-40280 tipc: Fix use-after-free in tipc_mon_reinit_self(). 7.8 -2025-12-06
CVE-2025-40279 net: sched: act_connmark: initialize struct tc_ife to fix kernel leak 5.5 -2025-12-06
CVE-2025-40278 net: sched: act_ife: initialize struct tc_ife to fix KMSAN kernel-infoleak 8.8 -2025-12-06
CVE-2025-40277 drm/vmwgfx: Validate command header size against SVGA_CMD_MAX_DATASIZE 7.8 -2025-12-06
CVE-2025-40276 drm/panthor: Flush shmem writes before mapping buffers CPU-uncached 7.8 -2025-12-06
CVE-2025-40275 ALSA: usb-audio: Fix NULL pointer dereference in snd_usb_mixer_controls_badd 7.1 -2025-12-06
CVE-2025-40274 KVM: guest_memfd: Remove bindings on memslot deletion when gmem is dying 7.1 -2025-12-06
CVE-2025-40273 NFSD: free copynotify stateid in nfs4_free_ol_stateid() 6.5 -2025-12-06
CVE-2025-40272 mm/secretmem: fix use-after-free race in fault handler 4.7 -2025-12-06
CVE-2025-40271 fs/proc: fix uaf in proc_readdir_de() 7.1 -2025-12-06
CVE-2025-40270 mm, swap: fix potential UAF issue for VMA readahead 6.6 -2025-12-06
CVE-2025-40269 ALSA: usb-audio: Fix potential overflow of PCM transfer buffer 8.4 -2025-12-06
CVE-2025-40268 cifs: client: fix memory leak in smb3_fs_context_parse_param 5.5 -2025-12-06
CVE-2025-40267 io_uring/rw: ensure allocated iovec gets cleared for early failure 5.5 -2025-12-06
CVE-2025-40265 vfat: fix missing sb_min_blocksize() return value checks 6.5AIMediumAI2025-12-04

All 12059 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.