Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-40114 iio: light: Add check for array bounds in veml6075_read_int_time_ms 7.1 -2025-04-18
CVE-2025-40014 objtool, spi: amd: Fix out-of-bounds stack access in amd_set_spi_freq() 7.1 -2025-04-18
CVE-2025-39989 x86/mce: use is_copy_from_user() to determine copy-from-user context 5.0 -2025-04-18
CVE-2025-39930 ASoC: simple-card-utils: Don't use __free(device_node) at graph_util_parse_dai() 7.8 -2025-04-18
CVE-2025-39778 objtool, nvmet: Fix out-of-bounds stack access in nvmet_ctrl_state_show() 7.1 -2025-04-18
CVE-2025-39755 staging: gpib: Fix cb7210 pcmcia Oops 5.5 -2025-04-18
CVE-2025-39728 clk: samsung: Fix UBSAN panic in samsung_clk_init() 4.3 -2025-04-18
CVE-2025-39735 jfs: fix slab-out-of-bounds read in ea_get() 8.1 -2025-04-18
CVE-2025-38637 net_sched: skbprio: Remove overly strict queue assertions 7.1 -2025-04-18
CVE-2025-39688 nfsd: allow SC_STATUS_FREEABLE when searching via nfs4_lookup_stateid() 8.0 -2025-04-18
CVE-2025-38575 ksmbd: use aead_request_free to match aead_request_alloc 5.5 -2025-04-18
CVE-2025-38479 dmaengine: fsl-edma: free irq correctly in remove path 5.5 -2025-04-18
CVE-2025-38240 drm/mediatek: dp: drm_err => dev_err in HPD path to avoid NULL ptr 6.3 -2025-04-18
CVE-2025-38152 remoteproc: core: Clear table_sz when rproc_shutdown 7.1 -2025-04-18
CVE-2025-38104 drm/amdgpu: Replace Mutex with Spinlock for RLCG register access to avoid Priority Inversion in SRIOV 7.0 -2025-04-18
CVE-2025-38049 x86/resctrl: Fix allocation of cleanest CLOSID on platforms with no monitors 7.8 -2025-04-18
CVE-2025-37893 LoongArch: BPF: Fix off-by-one error in build_prologue() 5.5 -2025-04-18
CVE-2025-37925 jfs: reject on-disk inodes of an unsupported type 7.8 -2025-04-18
CVE-2025-37860 sfc: fix NULL dereferences in ef100_process_design_param() 5.5 -2025-04-18
CVE-2025-37785 ext4: fix OOB read when checking dotdot dir 7.1 -2025-04-18
CVE-2021-47671 can: etas_es58x: es58x_rx_err_msg(): fix memory leak in error path 5.5AIMediumAI2025-04-17
CVE-2021-47670 can: peak_usb: fix use after free bugs 7.1AIHighAI2025-04-17
CVE-2021-47669 can: vxcan: vxcan_xmit: fix use after free bug 5.5AIMediumAI2025-04-17
CVE-2021-47668 can: dev: can_restart: fix use after free bug 5.5AIMediumAI2025-04-17
CVE-2020-36789 can: dev: can_get_echo_skb(): prevent call to kfree_skb() in hard IRQ context 5.5AIMediumAI2025-04-17
CVE-2025-23138 watch_queue: fix pipe accounting mismatch 7.1AIHighAI2025-04-16
CVE-2025-23137 cpufreq/amd-pstate: Add missing NULL ptr check in amd_pstate_update 7.1AIHighAI2025-04-16
CVE-2025-23135 RISC-V: KVM: Teardown riscv specific bits after kvm_exit 7.1AIHighAI2025-04-16
CVE-2025-23136 thermal: int340x: Add NULL check for adev 5.5AIMediumAI2025-04-16
CVE-2025-23134 ALSA: timer: Don't take register_mutex with copy_from/to_user() 4.7AIMediumAI2025-04-16

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.