Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-21959 netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() 6.3AIMediumAI2025-04-01
CVE-2025-21958 Revert "openvswitch: switch to per-action label counting in conntrack" --AI2025-04-01
CVE-2025-21957 scsi: qla1280: Fix kernel oops when debug level > 2 5.5 -2025-04-01
CVE-2025-21955 ksmbd: prevent connection release during oplock break notification 7.1AIHighAI2025-04-01
CVE-2025-21956 drm/amd/display: Assign normalized_pix_clk when color depth = 14 7.8AIHighAI2025-04-01
CVE-2025-21954 netmem: prevent TX of unreadable skbs 9.1AICriticalAI2025-04-01
CVE-2025-21953 net: mana: cleanup mana struct after debugfs_remove() 7.3AIHighAI2025-04-01
CVE-2025-21952 HID: corsair-void: Update power supply values with a unified work handler 5.5AIMediumAI2025-04-01
CVE-2025-21950 drivers: virt: acrn: hsm: Use kzalloc to avoid info leak in pmcmd_ioctl 5.5AIMediumAI2025-04-01
CVE-2025-21951 bus: mhi: host: pci_generic: Use pci_try_reset_function() to avoid deadlock 5.5AIMediumAI2025-04-01
CVE-2025-21948 HID: appleir: Fix potential NULL dereference at raw event handle 5.5AIMediumAI2025-04-01
CVE-2025-21949 LoongArch: Set hugetlb mmap base address aligned with pmd size 5.5AIMediumAI2025-04-01
CVE-2025-21946 ksmbd: fix out-of-bounds in parse_sec_desc() 7.5AIHighAI2025-04-01
CVE-2025-21947 ksmbd: fix type confusion via race condition when using ipc_msg_send_request 8.1 High2025-04-01
CVE-2025-21944 ksmbd: fix bug on trap in smb2_lock 7.1AIHighAI2025-04-01
CVE-2025-21945 ksmbd: fix use-after-free in smb2_lock 7.8AIHighAI2025-04-01
CVE-2025-21943 gpio: aggregator: protect driver attr handlers against module unload 7.0AIHighAI2025-04-01
CVE-2025-21942 btrfs: zoned: fix extent range end unlock in cow_file_range() 5.5AIMediumAI2025-04-01
CVE-2025-21940 drm/amdkfd: Fix NULL Pointer Dereference in KFD queue 5.5AIMediumAI2025-04-01
CVE-2025-21941 drm/amd/display: Fix null check for pipe_ctx->plane_state in resource_build_scaling_params 5.5AIMediumAI2025-04-01
CVE-2025-21938 mptcp: fix 'scheduling while atomic' in mptcp_pm_nl_append_new_local_addr 7.7 -2025-04-01
CVE-2025-21939 drm/xe/hmm: Don't dereference struct page pointers without notifier lock 7.8AIHighAI2025-04-01
CVE-2025-21936 Bluetooth: Add check for mgmt_alloc_skb() in mgmt_device_connected() 6.5AIMediumAI2025-04-01
CVE-2025-21937 Bluetooth: Add check for mgmt_alloc_skb() in mgmt_remote_name() 6.5AIMediumAI2025-04-01
CVE-2025-21935 rapidio: add check for rio_add_net() in rio_scan_alloc_net() 5.5AIMediumAI2025-04-01
CVE-2025-21934 rapidio: fix an API misues when rio_add_net() fails 5.5AIMediumAI2025-04-01
CVE-2025-21933 arm: pgtable: fix NULL pointer dereference issue 5.5AIMediumAI2025-04-01
CVE-2025-21932 mm: abort vma_modify() on merge out of memory failure 5.5AIMediumAI2025-04-01
CVE-2025-21931 hwpoison, memory_hotplug: lock folio before unmap hwpoisoned folio 5.5AIMediumAI2025-04-01
CVE-2025-21930 wifi: iwlwifi: mvm: don't try to talk to a dead firmware 5.5AIMediumAI2025-04-01

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.