Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12059

All 12059 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-40203 listmount: don't call path_put() under namespace semaphore 6.6 -2025-11-12
CVE-2025-40205 btrfs: avoid potential out-of-bounds in btrfs_encode_fh() 7.1 -2025-11-12
CVE-2025-40204 sctp: Fix MAC comparison to be constant-time 5.3 -2025-11-12
CVE-2025-40202 ipmi: Rework user message limit handling 7.1 -2025-11-12
CVE-2025-40200 Squashfs: reject negative file sizes in squashfs_read_inode() 5.5 -2025-11-12
CVE-2025-40199 page_pool: Fix PP_MAGIC_MASK to avoid crashing on some 32-bit arches 5.5 -2025-11-12
CVE-2025-40201 kernel/sys.c: fix the racy usage of task_lock(tsk->group_leader) in sys_prlimit64() paths 7.8 -2025-11-12
CVE-2025-40196 fs: quota: create dedicated workqueue for quota_release_work 5.5 -2025-11-12
CVE-2025-40198 ext4: avoid potential buffer over-read in parse_apply_sb_mount_options() 7.1 -2025-11-12
CVE-2025-40197 media: mc: Clear minor number before put device 7.8 -2025-11-12
CVE-2025-40195 mount: handle NULL values in mnt_ns_release() 5.5 -2025-11-12
CVE-2025-40193 xtensa: simdisk: add input size check in proc_write_simdisk 5.5 -2025-11-12
CVE-2025-40194 cpufreq: intel_pstate: Fix object lifecycle issue in update_qos_request() 6.3 -2025-11-12
CVE-2025-40189 net: usb: lan78xx: Fix lost EEPROM read timeout error(-ETIMEDOUT) in lan78xx_read_raw_eeprom 7.1 -2025-11-12
CVE-2025-40191 drm/amdkfd: Fix kfd process ref leaking when userptr unmapping 5.5 -2025-11-12
CVE-2025-40190 ext4: guard against EA inode refcount underflow in xattr update 6.6 -2025-11-12
CVE-2025-40192 Revert "ipmi: fix msg stack when IPMI is disconnected" 5.5 -2025-11-12
CVE-2025-40187 net/sctp: fix a null dereference in sctp_disposition sctp_sf_do_5_1D_ce() 6.5 -2025-11-12
CVE-2025-40188 pwm: berlin: Fix wrong register in suspend/resume 5.5 -2025-11-12
CVE-2025-40185 ice: ice_adapter: release xa entry on adapter allocation failure 5.5 -2025-11-12
CVE-2025-40186 tcp: Don't call reqsk_fastopen_remove() in tcp_conn_request(). 6.5 -2025-11-12
CVE-2025-40184 KVM: arm64: Fix debug checking for np-guests using huge mappings 5.5 -2025-11-12
CVE-2025-40183 bpf: Fix metadata_dst leak __bpf_redirect_neigh_v{4,6} 7.5 -2025-11-12
CVE-2025-40182 crypto: skcipher - Fix reqsize handling 5.5 -2025-11-12
CVE-2025-40181 x86/kvm: Force legacy PCI hole to UC when overriding MTRRs for TDX/SNP 7.8 -2025-11-12
CVE-2025-40179 ext4: verify orphan file size is not too big 5.5 -2025-11-12
CVE-2025-40180 mailbox: zynqmp-ipi: Fix out-of-bounds access in mailbox cleanup loop 7.1 -2025-11-12
CVE-2025-40178 pid: Add a judgment for ns null in pid_nr_ns 5.5 -2025-11-12
CVE-2025-40177 accel/qaic: Fix bootlog initialization ordering 6.3 -2025-11-12
CVE-2025-40174 x86/mm: Fix SMP ordering in switch_mm_irqs_off() 7.1 -2025-11-12

All 12059 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.