Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-39687 iio: light: as73211: Ensure buffer holes are zeroed 7.1AIHighAI2025-09-05
CVE-2025-39686 comedi: Make insn_rw_emulate_bits() do insn->n samples 7.1AIHighAI2025-09-05
CVE-2025-39685 comedi: pcl726: Prevent invalid irq number 7.1AIHighAI2025-09-05
CVE-2025-39684 comedi: Fix use of uninitialized memory in do_insn_ioctl() and do_insnlist_ioctl() 7.1AIHighAI2025-09-05
CVE-2025-39683 tracing: Limit access to parser->buffer when trace_get_user failed 5.5AIMediumAI2025-09-05
CVE-2025-39682 tls: fix handling of zero-length records on the rx_list 9.1AICriticalAI2025-09-05
CVE-2025-39681 x86/cpu/hygon: Add missing resctrl_cpu_detect() in bsp_init helper 6.2AIMediumAI2025-09-05
CVE-2025-39680 i2c: rtl9300: Fix out-of-bounds bug in rtl9300_i2c_smbus_xfer 5.5AIMediumAI2025-09-05
CVE-2025-39679 drm/nouveau/nvif: Fix potential memory leak in nvif_vmm_ctor(). --AI2025-09-05
CVE-2025-39678 platform/x86/amd/hsmp: Ensure sock->metric_tbl_addr is non-NULL 5.5AIMediumAI2025-09-05
CVE-2025-39677 net/sched: Fix backlog accounting in qdisc_dequeue_internal 5.5AIMediumAI2025-09-05
CVE-2025-39676 scsi: qla4xxx: Prevent a potential error pointer dereference 6.5AIMediumAI2025-09-05
CVE-2025-39675 drm/amd/display: Add null pointer check in mod_hdcp_hdcp1_create_session() 5.5AIMediumAI2025-09-05
CVE-2025-39674 scsi: ufs: ufs-qcom: Fix ESI null pointer dereference 5.5AIMediumAI2025-09-05
CVE-2025-39673 ppp: fix race conditions in ppp_fill_forward_path 4.7AIMediumAI2025-09-05
CVE-2025-38737 cifs: Fix oops due to uninitialised variable 5.5AIMediumAI2025-09-05
CVE-2025-38736 net: usb: asix_devices: Fix PHY address mask in MDIO bus initialization 7.1AIHighAI2025-09-05
CVE-2025-38735 gve: prevent ethtool ops after shutdown 5.5AIMediumAI2025-09-05
CVE-2025-38734 net/smc: fix UAF on smcsk after smc_listen_out() 7.1AIHighAI2025-09-05
CVE-2025-38733 s390/mm: Do not map lowcore with identity mapping 5.5AIMediumAI2025-09-05
CVE-2025-38732 netfilter: nf_reject: don't leak dst refcount for loopback packets 5.5AIMediumAI2025-09-05
CVE-2025-38731 drm/xe: Fix vm_bind_ioctl double free bug 7.8AIHighAI2025-09-05
CVE-2025-38730 io_uring/net: commit partial buffers on retry 7.4AIHighAI2025-09-04
CVE-2025-38729 ALSA: usb-audio: Validate UAC3 power domain descriptors, too 8.4AIHighAI2025-09-04
CVE-2025-38728 smb3: fix for slab out of bounds on mount to ksmbd 6.3AIMediumAI2025-09-04
CVE-2025-38727 netlink: avoid infinite retry looping in netlink_unicast() 5.5AIMediumAI2025-09-04
CVE-2025-38726 net: ftgmac100: fix potential NULL pointer access in ftgmac100_phy_disconnect 5.5AIMediumAI2025-09-04
CVE-2025-38725 net: usb: asix_devices: add phy_mask for ax88772 mdio bus 7.8AIHighAI2025-09-04
CVE-2025-38724 nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() 7.1AIHighAI2025-09-04
CVE-2025-38723 LoongArch: BPF: Fix jump offset calculation in tailcall 5.5AIMediumAI2025-09-04

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.