Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Linux — Vulnerabilities & Security Advisories 12058

All 12058 CVE vulnerabilities found in Linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2026-23001 macvlan: fix possible UAF in macvlan_forward_source() 7.8 High2026-01-25
CVE-2026-23000 net/mlx5e: Fix crash on profile change rollback failure 5.5 -2026-01-25
CVE-2026-22999 net/sched: sch_qfq: do not free existing class in qfq_change_class() 7.8 High2026-01-25
CVE-2026-22998 nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec 7.5 High2026-01-25
CVE-2026-22997 net: can: j1939: j1939_xtp_rx_rts_session_active(): deactivate session upon receiving the second rts 7.5 High2026-01-25
CVE-2026-22996 net/mlx5e: Don't store mlx5e_priv in mlx5e_dev devlink priv 7.1 -2026-01-25
CVE-2025-71163 dmaengine: idxd: fix device leaks on compat bind and unbind 5.5 -2026-01-25
CVE-2025-71162 dmaengine: tegra-adma: Fix use-after-free 6.3 -2026-01-25
CVE-2026-22995 ublk: fix use-after-free in ublk_partition_scan_work 7.0 -2026-01-23
CVE-2026-22994 bpf: Fix reference count leak in bpf_prog_test_run_xdp() 7.1 -2026-01-23
CVE-2026-22993 idpf: Fix RSS LUT NULL ptr issue after soft reset 8.1 -2026-01-23
CVE-2026-22992 libceph: return the handler error from mon_handle_auth_done() 7.5 High2026-01-23
CVE-2026-22991 libceph: make free_choose_arg_map() resilient to partial allocation 7.5 High2026-01-23
CVE-2026-22989 nfsd: check that server is running in unlock_filesystem 6.5 -2026-01-23
CVE-2026-22990 libceph: replace overzealous BUG_ON in osdmap_apply_incremental() 7.5 High2026-01-23
CVE-2026-22988 arp: do not assume dev_hard_header() does not change skb->head 7.8 High2026-01-23
CVE-2026-22987 net/sched: act_api: avoid dereferencing ERR_PTR in tcf_idrinfo_destroy 6.5 -2026-01-23
CVE-2026-22986 gpiolib: fix race condition for gdev->srcu 6.3 -2026-01-23
CVE-2026-22985 idpf: Fix RSS LUT NULL pointer crash on early ethtool operations 5.5 -2026-01-23
CVE-2026-22984 libceph: prevent potential out-of-bounds reads in handle_auth_done() 9.8 Critical2026-01-23
CVE-2026-22982 net: mscc: ocelot: Fix crash when adding interface under a lag 5.5 -2026-01-23
CVE-2026-22983 net: do not write to msg_get_inq in callee 7.8 -2026-01-23
CVE-2026-22981 idpf: detach and close netdevs while handling a reset 7.1 -2026-01-23
CVE-2026-22980 nfsd: provide locking for v4_end_grace 7.8 High2026-01-23
CVE-2026-22979 net: fix memory leak in skb_segment_list for GRO packets 6.2 -2026-01-23
CVE-2026-22978 wifi: avoid kernel-infoleak from struct iw_point 5.7 -2026-01-23
CVE-2025-71160 netfilter: nf_tables: avoid chain re-validation if possible 5.5 -2026-01-23
CVE-2025-71161 dm-verity: disable recursive forward error correction 5.5 -2026-01-23
CVE-2025-71159 btrfs: fix use-after-free warning in btrfs_get_or_create_delayed_node() 7.1 -2026-01-23
CVE-2025-71158 gpio: mpsse: ensure worker is torn down 6.2 -2026-01-23

All 12058 known CVE vulnerabilities affecting Linux with full Chinese analysis, references, and POCs where available.