Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11628

All 11628 CVE vulnerabilities found in linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2026-23016 inet: frags: drop fraglist conntrack references 6.1AIMediumAI2026-01-31
CVE-2026-23015 gpio: mpsse: fix reference leak in gpio_mpsse_probe() error paths 5.5AIMediumAI2026-01-31
CVE-2025-71184 btrfs: fix NULL dereference on root when tracing inode eviction 5.5AIMediumAI2026-01-31
CVE-2025-71183 btrfs: always detect conflicting inodes when logging inode refs 7.1AIHighAI2026-01-31
CVE-2025-71182 can: j1939: make j1939_session_activate() fail if device is no longer registered 5.5AIMediumAI2026-01-31
CVE-2025-71181 rust_binder: remove spin_lock() in rust_shrink_free_page() 5.5AIMediumAI2026-01-31
CVE-2025-71180 counter: interrupt-cnt: Drop IRQF_NO_THREAD flag 5.5AIMediumAI2026-01-31
CVE-2026-23014 perf: Ensure swevent hrtimer is properly destroyed 7.8 High2026-01-28
CVE-2026-23013 net: octeon_ep_vf: fix free_irq dev_id mismatch in IRQ rollback 7.0 High2026-01-25
CVE-2026-23012 mm/damon/core: remove call_control in inactive contexts 5.5 -2026-01-25
CVE-2026-23011 ipv4: ip_gre: make ipgre_header() robust 5.5 -2026-01-25
CVE-2026-23010 ipv6: Fix use-after-free in inet6_addr_del(). 7.8 High2026-01-25
CVE-2026-23009 xhci: sideband: don't dereference freed ring when removing sideband endpoint 5.5 -2026-01-25
CVE-2026-23008 drm/vmwgfx: Fix KMS with 3D on HW version 10 5.5 -2026-01-25
CVE-2026-23007 block: zero non-PI portion of auto integrity buffer 6.1 -2026-01-25
CVE-2026-23006 ASoC: tlv320adcx140: fix null pointer 5.5 -2026-01-25
CVE-2026-23005 x86/fpu: Clear XSTATE_BV[i] in guest XSAVE state whenever XFD[i]=1 5.5 -2026-01-25
CVE-2026-23004 dst: fix races in rt6_uncached_list_del() and rt_del_uncached_list() 7.8 High2026-01-25
CVE-2026-23003 ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl_rcv() 7.5 High2026-01-25
CVE-2026-23002 lib/buildid: use __kernel_read() for sleepable context 7.1 -2026-01-25
CVE-2026-23001 macvlan: fix possible UAF in macvlan_forward_source() 7.8 High2026-01-25
CVE-2026-23000 net/mlx5e: Fix crash on profile change rollback failure 5.5 -2026-01-25
CVE-2026-22999 net/sched: sch_qfq: do not free existing class in qfq_change_class() 7.8 High2026-01-25
CVE-2026-22998 nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec 7.5 High2026-01-25
CVE-2026-22997 net: can: j1939: j1939_xtp_rx_rts_session_active(): deactivate session upon receiving the second rts 7.5 High2026-01-25
CVE-2026-22996 net/mlx5e: Don't store mlx5e_priv in mlx5e_dev devlink priv 7.1 -2026-01-25
CVE-2025-71163 dmaengine: idxd: fix device leaks on compat bind and unbind 5.5 -2026-01-25
CVE-2025-71162 dmaengine: tegra-adma: Fix use-after-free 6.3 -2026-01-25
CVE-2026-22995 ublk: fix use-after-free in ublk_partition_scan_work 7.0 -2026-01-23
CVE-2026-22994 bpf: Fix reference count leak in bpf_prog_test_run_xdp() 7.1 -2026-01-23

All 11628 known CVE vulnerabilities affecting linux with full Chinese analysis, references, and POCs where available.