Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2024-41019 fs/ntfs3: Validate ff offset 7.1AIHighAI2024-07-29
CVE-2024-41018 fs/ntfs3: Add a check for attr_names and oatbl 7.1AIHighAI2024-07-29
CVE-2024-41017 jfs: don't walk off the end of ealist 7.1AIHighAI2024-07-29
CVE-2024-41016 ocfs2: strict bound check before memcmp in ocfs2_xattr_find_entry() 7.8AIHighAI2024-07-29
CVE-2024-41015 ocfs2: add bounds checking to ocfs2_check_dir_entry() 7.8AIHighAI2024-07-29
CVE-2024-41014 xfs: add bounds checking to xlog_recover_process_data 7.7AIHighAI2024-07-29
CVE-2024-41013 xfs: don't walk off the end of a directory data block 7.7AIHighAI2024-07-29
CVE-2024-41091 tun: add missing verification for short frame 6.8 -2024-07-29
CVE-2024-41090 tap: add missing verification for short frame 6.8 -2024-07-29
CVE-2024-41012 filelock: Remove locks reliably when fcntl/close race is detected 4.7 -2024-07-23
CVE-2024-41011 drm/amdkfd: don't allow mapping the MMIO HDP page with large pages 7.1 -2024-07-18
CVE-2024-41010 bpf: Fix too early release of tcx_entry 7.8 -2024-07-17
CVE-2024-41009 bpf: Fix overrunning reservations in ringbuf 5.5 -2024-07-17
CVE-2022-48866 HID: hid-thrustmaster: fix OOB read in thrustmaster_interrupts 7.1AIHighAI2024-07-16
CVE-2022-48865 tipc: fix kernel panic when enabling bearer 5.5 -2024-07-16
CVE-2022-48864 vdpa/mlx5: add validation for VIRTIO_NET_CTRL_MQ_VQ_PAIRS_SET command 5.5 -2024-07-16
CVE-2022-48863 mISDN: Fix memory leak in dsp_pipeline_build() 6.5AIMediumAI2024-07-16
CVE-2022-48862 vhost: fix hung thread due to erroneous iotlb entries 6.2 -2024-07-16
CVE-2022-48861 vdpa: fix use-after-free on vp_vdpa_remove 7.8 -2024-07-16
CVE-2022-48859 net: marvell: prestera: Add missing of_node_put() in prestera_switch_set_base_mac_addr 7.1 -2024-07-16
CVE-2022-48860 ethernet: Fix error handling in xemaclite_of_probe 7.1 -2024-07-16
CVE-2022-48858 net/mlx5: Fix a race on command flush flow 6.3 -2024-07-16
CVE-2022-48856 gianfar: ethtool: Fix refcount leak in gfar_get_ts_info 7.1 -2024-07-16
CVE-2022-48857 NFC: port100: fix use-after-free in port100_send_complete 7.8 -2024-07-16
CVE-2022-48855 sctp: fix kernel-infoleak for SCTP sockets --2024-07-16
CVE-2022-48854 net: arc_emac: Fix use after free in arc_mdio_probe() 7.8 -2024-07-16
CVE-2022-48853 Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" 6.5 -2024-07-16
CVE-2022-48852 drm/vc4: hdmi: Unregister codec device on unbind 5.5 -2024-07-16
CVE-2022-48851 staging: gdm724x: fix use after free in gdm_lte_rx() 7.8 -2024-07-16
CVE-2022-48850 net-sysfs: add check for netdevice being present to speed_show 5.5 -2024-07-16

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.