Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12059

All 12059 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-40175 idpf: cleanup remaining SKBs in PTP flows 7.1 -2025-11-12
CVE-2025-40176 tls: wait for pending async decryptions if tls_strp_msg_hold fails 7.8 -2025-11-12
CVE-2025-40173 net/ip6_tunnel: Prevent perpetual tunnel growth 6.2 -2025-11-12
CVE-2025-40172 accel/qaic: Treat remaining == 0 as error in find_and_map_user_pages() 5.5 -2025-11-12
CVE-2025-40171 nvmet-fc: move lsop put work to nvmet_fc_ls_req_op 5.5 -2025-11-12
CVE-2025-40169 bpf: Reject negative offsets for ALU ops 7.8 -2025-11-12
CVE-2025-40170 net: use dst_dev_rcu() in sk_setup_caps() 5.5 -2025-11-12
CVE-2025-40168 smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). 7.1 -2025-11-12
CVE-2025-40167 ext4: detect invalid INLINE_DATA + EXTENTS flag combination 5.5 -2025-11-12
CVE-2025-40166 drm/xe/guc: Check GuC running state before deregistering exec queue 5.5 -2025-11-12
CVE-2025-40165 media: nxp: imx8-isi: m2m: Fix streaming cleanup on release 5.5 -2025-11-12
CVE-2025-40163 sched/deadline: Stop dl_server before CPU goes offline 5.5 -2025-11-12
CVE-2025-40162 ASoC: amd/sdw_utils: avoid NULL deref when devm_kasprintf() fails 5.5 -2025-11-12
CVE-2025-40164 usbnet: Fix using smp_processor_id() in preemptible code warnings 7.1 -2025-11-12
CVE-2025-40161 mailbox: zynqmp-ipi: Fix SGI cleanup on unbind 5.5 -2025-11-12
CVE-2025-40160 xen/events: Return -EEXIST for bound VIRQs 5.5 -2025-11-12
CVE-2025-40159 xsk: Harden userspace-supplied xdp_desc validation 8.4 -2025-11-12
CVE-2025-40158 ipv6: use RCU in ip6_output() 7.1 -2025-11-12
CVE-2025-40156 PM / devfreq: mtk-cci: Fix potential error pointer dereference in probe() 5.5 -2025-11-12
CVE-2025-40155 iommu/vt-d: debugfs: Fix legacy mode page table dump logic 5.5 -2025-11-12
CVE-2025-40157 EDAC/i10nm: Skip DIMM enumeration on a disabled memory controller 7.1 -2025-11-12
CVE-2025-40153 mm: hugetlb: avoid soft lockup when mprotect to large memory area 5.5 -2025-11-12
CVE-2025-40151 LoongArch: BPF: No support of struct argument in trampoline programs 5.5 -2025-11-12
CVE-2025-40152 drm/msm: Fix bootup splat with separate_gpu_drm modparam 7.1 -2025-11-12
CVE-2025-40154 ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping 7.8 -2025-11-12
CVE-2025-40150 f2fs: fix to avoid migrating empty section 5.5 -2025-11-12
CVE-2025-40149 tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). 8.1 -2025-11-12
CVE-2025-40148 drm/amd/display: Add NULL pointer checks in dc_stream cursor attribute functions 5.5 -2025-11-12
CVE-2025-40147 blk-throttle: fix access race during throttle policy activation 4.7 -2025-11-12
CVE-2025-40145 PCI/pwrctrl: Fix double cleanup on devm_add_action_or_reset() failure 7.8 -2025-11-12

All 12059 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.