Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12060

All 12060 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2024-38780 dma-buf/sw-sync: don't enable IRQ from sync_print_obj() 7.8 -2024-06-21
CVE-2024-38662 bpf: Allow delete from sockmap/sockhash only if update is allowed 7.1 -2024-06-21
CVE-2024-38659 enic: Validate length of nl attributes in enic_set_vf_port 5.5 -2024-06-21
CVE-2024-38637 greybus: lights: check return of get_channel_from_mode 5.5 -2024-06-21
CVE-2024-38636 f2fs: multidev: fix to recognize valid zero block address 5.5 -2024-06-21
CVE-2024-38634 serial: max3100: Lock port->lock when calling uart_handle_cts_change() 5.5 -2024-06-21
CVE-2024-38635 soundwire: cadence: fix invalid PDI offset 7.1 -2024-06-21
CVE-2024-38633 serial: max3100: Update uart_driver_registered on driver removal 4.7 -2024-06-21
CVE-2024-38631 iio: adc: PAC1934: fix accessing out of bounds array index 6.1 -2024-06-21
CVE-2024-38632 vfio/pci: fix potential memory leak in vfio_intx_enable() 2.5 -2024-06-21
CVE-2024-38630 watchdog: cpu5wdt.c: Fix use-after-free bug caused by cpu5wdt_trigger 7.8 -2024-06-21
CVE-2024-38628 usb: gadget: u_audio: Fix race condition use of controls after free during gadget unbind. 7.0 -2024-06-21
CVE-2024-38629 dmaengine: idxd: Avoid unnecessary destruction of file_ida 5.5 -2024-06-21
CVE-2024-38627 stm class: Fix a double free in stm_register_device() 7.8 -2024-06-21
CVE-2024-38626 fuse: clear FR_SENT when re-adding requests into pending list 7.1 -2024-06-21
CVE-2024-38625 fs/ntfs3: Check 'folio' pointer for NULL 5.5 -2024-06-21
CVE-2024-38624 fs/ntfs3: Use 64 bit variable to avoid 32 bit overflow 7.8 -2024-06-21
CVE-2024-38622 drm/msm/dpu: Add callback function pointer check before its call 7.8 -2024-06-21
CVE-2024-38623 fs/ntfs3: Use variable length array instead of fixed size 5.5 -2024-06-21
CVE-2024-38621 media: stk1160: fix bounds checking in stk1160_copy_video() 7.7 -2024-06-21
CVE-2024-38390 drm/msm/a6xx: Avoid a nullptr dereference when speedbin setting fails 5.5 -2024-06-21
CVE-2024-38388 ALSA: hda/cs_dsp_ctl: Use private_free for control cleanup 7.8 -2024-06-21
CVE-2024-38381 nfc: nci: Fix uninit-value in nci_rx_work 7.5 -2024-06-21
CVE-2024-37356 tcp: Fix shift-out-of-bounds in dctcp_update_alpha(). 8.1 -2024-06-21
CVE-2024-36484 net: relax socket state check at accept time. 7.1 -2024-06-21
CVE-2024-36489 tls: fix missing memory barrier in tls_init 5.5 -2024-06-21
CVE-2024-36478 null_blk: fix null-ptr-dereference while configuring 'power' and 'submit_queues' 5.5 -2024-06-21
CVE-2024-36281 net/mlx5: Use mlx5_ipsec_rx_status_destroy to correctly delete status rules 7.1 -2024-06-21
CVE-2024-36286 netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 7.8 -2024-06-21
CVE-2024-36270 netfilter: tproxy: bail out if IP has been disabled on the device 7.5 -2024-06-21

All 12060 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.