Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-21770 iommu: Fix potential memory leak in iopf_queue_remove_device() 5.5 -2025-02-27
CVE-2025-21769 ptp: vmclock: Add .owner to vmclock_miscdev_fops 5.5 -2025-02-27
CVE-2025-21768 net: ipv6: fix dst ref loops in rpl, seg6 and ioam6 lwtunnels 5.5 -2025-02-27
CVE-2025-21766 ipv4: use RCU protection in __ip_rt_update_pmtu() 5.5 -2025-02-27
CVE-2025-21767 clocksource: Use migrate_disable() to avoid calling get_random_u32() in atomic context 6.3 -2025-02-27
CVE-2025-21764 ndisc: use RCU protection in ndisc_alloc_skb() 7.8 -2025-02-27
CVE-2025-21765 ipv6: use RCU protection in ip6_default_advmss() 5.5 -2025-02-27
CVE-2025-21763 neighbour: use RCU protection in __neigh_notify() 7.8 -2025-02-27
CVE-2025-21762 arp: use RCU protection in arp_xmit() 7.8 -2025-02-27
CVE-2025-21761 openvswitch: use RCU protection in ovs_vport_cmd_fill_info() 7.8 -2025-02-27
CVE-2025-21759 ipv6: mcast: extend RCU protection in igmp6_send() 6.3 -2025-02-27
CVE-2025-21760 ndisc: extend RCU protection in ndisc_send_skb() 7.8 -2025-02-27
CVE-2025-21756 vsock: Keep the binding until socket destruction 7.8 High2025-02-27
CVE-2025-21758 ipv6: mcast: add RCU protection to mld_newpack() 7.1 -2025-02-27
CVE-2024-58021 HID: winwing: Add NULL check in winwing_init_led() 5.5 -2025-02-27
CVE-2024-58020 HID: multitouch: Add NULL check in mt_input_configured 6.2 -2025-02-27
CVE-2024-57852 firmware: qcom: scm: smc: Handle missing SCM device 6.2 -2025-02-27
CVE-2024-57834 media: vidtv: Fix a null-ptr-deref in vidtv_mux_stop_thread 4.7 -2025-02-27
CVE-2024-54458 scsi: ufs: bsg: Set bsg_queue to NULL after removal 7.1 -2025-02-27
CVE-2024-54456 NFS: Fix potential buffer overflowin nfs_sysfs_link_rpc_client() 7.8 -2025-02-27
CVE-2024-52560 fs/ntfs3: Mark inode as bad as soon as error detected in mi_enum_attr() 3.3 -2025-02-27
CVE-2024-52559 drm/msm/gem: prevent integer overflow in msm_ioctl_gem_submit() 8.8 -2025-02-27
CVE-2024-52557 drm: zynqmp_dp: Fix integer overflow in zynqmp_dp_rate_get() 7.8 -2025-02-27
CVE-2024-49570 drm/xe/tracing: Fix a potential TP_printk UAF 7.8 -2025-02-27
CVE-2025-21754 btrfs: fix assertion failure when splitting ordered extent after transaction abort 5.5 -2025-02-27
CVE-2025-21753 btrfs: fix use-after-free when attempting to join an aborted transaction 7.8 -2025-02-27
CVE-2025-21752 btrfs: don't use btrfs_set_item_key_safe on RAID stripe-extents 7.1 -2025-02-27
CVE-2025-21751 net/mlx5: HWS, change error flow on matcher disconnect 5.5 -2025-02-27
CVE-2025-21750 wifi: brcmfmac: Check the return value of of_property_read_string_index() 6.2 -2025-02-27
CVE-2025-21749 net: rose: lock the socket in rose_bind() 7.1 -2025-02-27

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.