Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-38186 bnxt_en: Fix double invocation of bnxt_ulp_stop()/bnxt_ulp_start() 7.8 -2025-07-04
CVE-2025-38184 tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer 7.5 -2025-07-04
CVE-2025-38182 ublk: santizize the arguments from userspace when adding a device 5.5 -2025-07-04
CVE-2025-38183 net: lan743x: fix potential out-of-bounds write in lan743x_ptp_io_event_clock_get() 4.7 -2025-07-04
CVE-2025-38181 calipso: Fix null-ptr-deref in calipso_req_{set,del}attr(). 5.5 -2025-07-04
CVE-2025-38180 net: atm: fix /proc/net/atm/lec handling 8.1 -2025-07-04
CVE-2025-38179 smb: client: fix max_sge overflow in smb_extract_folioq_to_rdma() 7.8 -2025-07-04
CVE-2025-38177 sch_hfsc: make hfsc_qlen_notify() idempotent --2025-07-04
CVE-2025-38176 binder: fix use-after-free in binderfs_evict_inode() 7.8 -2025-07-04
CVE-2025-38175 binder: fix yet another UAF in binder_devices 7.8 -2025-07-04
CVE-2025-38174 thunderbolt: Do not double dequeue a configuration request 6.2 -2025-07-04
CVE-2025-38173 crypto: marvell/cesa - Handle zero-length skcipher requests 8.1AIHighAI2025-07-03
CVE-2025-38172 erofs: avoid using multiple devices with different type 5.5AIMediumAI2025-07-03
CVE-2025-38171 power: supply: max77705: Fix workqueue error handling in probe 5.5AIMediumAI2025-07-03
CVE-2025-38170 arm64/fpsimd: Discard stale CPU state when handling SME traps 4.7AIMediumAI2025-07-03
CVE-2025-38169 arm64/fpsimd: Avoid clobbering kernel FPSIMD state with SMSTOP 10.0AICriticalAI2025-07-03
CVE-2025-38168 perf: arm-ni: Unregister PMUs on probe failure 5.5AIMediumAI2025-07-03
CVE-2025-38167 fs/ntfs3: handle hdr_first_de() return value 5.5AIMediumAI2025-07-03
CVE-2025-38165 bpf, sockmap: Fix panic when calling skb_linearize 5.5AIMediumAI2025-07-03
CVE-2025-38166 bpf: fix ktls panic with sockmap 5.5AIMediumAI2025-07-03
CVE-2025-38164 f2fs: zone: fix to avoid inconsistence in between SIT and SSA 7.1AIHighAI2025-07-03
CVE-2025-38162 netfilter: nft_set_pipapo: prevent overflow in lookup table allocation 7.8AIHighAI2025-07-03
CVE-2025-38163 f2fs: fix to do sanity check on sbi->total_valid_block_count 5.5AIMediumAI2025-07-03
CVE-2025-38161 RDMA/mlx5: Fix error flow upon firmware failure for RQ destruction 7.1AIHighAI2025-07-03
CVE-2025-38160 clk: bcm: rpi: Add NULL check in raspberrypi_clk_register() 5.5AIMediumAI2025-07-03
CVE-2025-38159 wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds 5.5AIMediumAI2025-07-03
CVE-2025-38158 hisi_acc_vfio_pci: fix XQE dma address error 7.1AIHighAI2025-07-03
CVE-2025-38157 wifi: ath9k_htc: Abort software beacon handling if disabled 6.1AIMediumAI2025-07-03
CVE-2025-38156 wifi: mt76: mt7996: Fix null-ptr-deref in mt7996_mmio_wed_init() 5.7AIMediumAI2025-07-03
CVE-2025-38155 wifi: mt76: mt7915: Fix null-ptr-deref in mt7915_mmio_wed_init() 5.7AIMediumAI2025-07-03

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.