Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-38489 s390/bpf: Fix bpf_arch_text_poke() with new_addr == NULL again 5.5 -2025-07-28
CVE-2025-38488 smb: client: fix use-after-free in crypt_message when using async crypto 7.7 -2025-07-28
CVE-2025-38487 soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled 5.5 -2025-07-28
CVE-2025-38486 soundwire: Revert "soundwire: qcom: Add set_channel_map api support" 5.5 -2025-07-28
CVE-2025-38485 iio: accel: fxls8962af: Fix use after free in fxls8962af_fifo_flush 4.7 -2025-07-28
CVE-2025-38484 iio: backend: fix out-of-bound write 7.1AIHighAI2025-07-28
CVE-2025-38483 comedi: das16m1: Fix bit shift out of bounds 7.1 -2025-07-28
CVE-2025-38482 comedi: das6402: Fix bit shift out of bounds 7.1 -2025-07-28
CVE-2025-38481 comedi: Fail COMEDI_INSNLIST ioctl if n_insns is too large 5.5 -2025-07-28
CVE-2025-38480 comedi: Fix use of uninitialized data in insn_rw_emulate_bits() 7.8AIHighAI2025-07-28
CVE-2025-38478 comedi: Fix initialization of data for instructions that write to subdevice 7.1 -2025-07-28
CVE-2025-38477 net/sched: sch_qfq: Fix race condition on qfq_aggregate 7.5 -2025-07-28
CVE-2025-38476 rpl: Fix use-after-free in rpl_do_srh_inline(). 7.8 -2025-07-28
CVE-2025-38474 usb: net: sierra: check for no status endpoint 5.5 -2025-07-28
CVE-2025-38475 smc: Fix various oops due to inet_sock type confusion. 8.1 -2025-07-28
CVE-2025-38473 Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_cb() 6.5 -2025-07-28
CVE-2025-38472 netfilter: nf_conntrack: fix crash due to removal of uninitialised entry 5.5 -2025-07-28
CVE-2025-38471 tls: always refresh the queue when reading sock 9.8 -2025-07-28
CVE-2025-38470 net: vlan: fix VLAN 0 refcount imbalance of toggling filtering during runtime 7.1 -2025-07-28
CVE-2025-38469 KVM: x86/xen: Fix cleanup logic in emulation of Xen schedop poll hypercalls 7.1 -2025-07-28
CVE-2025-38468 net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree 5.5 -2025-07-28
CVE-2025-38467 drm/exynos: exynos7_drm_decon: add vblank check in IRQ handling 5.5 -2025-07-25
CVE-2025-38466 perf: Revert to requiring CAP_SYS_ADMIN for uprobes 5.5 -2025-07-25
CVE-2025-38465 netlink: Fix wraparounds of sk->sk_rmem_alloc. 7.1 -2025-07-25
CVE-2025-38464 tipc: Fix use-after-free in tipc_conn_close(). 7.1 -2025-07-25
CVE-2025-38463 tcp: Correct signedness in skb remaining space calculation 8.1 -2025-07-25
CVE-2025-38462 vsock: Fix transport_{g2h,h2g} TOCTOU 4.7 -2025-07-25
CVE-2025-38461 vsock: Fix transport_* TOCTOU 4.7 -2025-07-25
CVE-2025-38460 atm: clip: Fix potential null-ptr-deref in to_atmarpd(). 6.2 -2025-07-25
CVE-2025-38459 atm: clip: Fix infinite recursive call of clip_push(). 6.2 -2025-07-25

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.