Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-21649 net: hns3: fix kernel crash when 1588 is sent on HIP08 devices 6.5 -2025-01-19
CVE-2025-21648 netfilter: conntrack: clamp maximum hashtable size to INT_MAX 5.5 -2025-01-19
CVE-2025-21647 sched: sch_cake: add bounds checks to host bulk flow fairness counts 7.8 -2025-01-19
CVE-2025-21646 afs: Fix the maximum cell name length --2025-01-19
CVE-2025-21645 platform/x86/amd/pmc: Only disable IRQ1 wakeup where i8042 actually enabled it 5.5 -2025-01-19
CVE-2025-21644 drm/xe: Fix tlb invalidation when wedging 7.1 -2025-01-19
CVE-2025-21643 netfs: Fix kernel async DIO 5.5 -2025-01-19
CVE-2025-21642 mptcp: sysctl: sched: avoid using current->nsproxy 7.0 -2025-01-19
CVE-2025-21641 mptcp: sysctl: blackhole timeout: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21640 sctp: sysctl: cookie_hmac_alg: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21639 sctp: sysctl: rto_min/max: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21638 sctp: sysctl: auth_enable: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21637 sctp: sysctl: udp_port: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21636 sctp: sysctl: plpmtud_probe_interval: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21635 rds: sysctl: rds_tcp_{rcv,snd}buf: avoid using current->nsproxy 5.5 -2025-01-19
CVE-2025-21634 cgroup/cpuset: remove kernfs active break 6.5 -2025-01-19
CVE-2025-21632 x86/fpu: Ensure shadow stack is active before "getting" registers 8.8 -2025-01-19
CVE-2025-21631 block, bfq: fix waker_bfqq UAF after bfq_split_bfqq() 7.8 -2025-01-19
CVE-2024-57857 RDMA/siw: Remove direct link to net_device 7.1 -2025-01-15
CVE-2024-57844 drm/xe: Fix fault on fd close after unbind 7.1 -2025-01-15
CVE-2024-57841 net: fix memory leak in tcp_conn_request() 5.5 -2025-01-15
CVE-2024-57802 netrom: check buffer length before accessing it 7.8 -2025-01-15
CVE-2024-57801 net/mlx5e: Skip restore TC rules for vport rep without loaded flag 7.1 -2025-01-15
CVE-2024-57795 RDMA/rxe: Remove the direct link to net_device 7.1 -2025-01-15
CVE-2024-54031 netfilter: nft_set_hash: unaligned atomic read on struct nft_set_ext --2025-01-15
CVE-2024-53681 nvmet: Don't overflow subsysnqn 7.8 -2025-01-15
CVE-2024-36476 RDMA/rtrs: Ensure 'ib_sge list' is accessible 5.5 -2025-01-15
CVE-2024-39282 net: wwan: t7xx: Fix FSM command timeout issue 5.5 -2025-01-15
CVE-2025-21629 net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets 7.5 -2025-01-15
CVE-2024-57903 net: restrict SO_REUSEPORT to inet sockets 6.5 -2025-01-15

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.