Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

linux — Vulnerabilities & Security Advisories 12150

All 12150 CVE vulnerabilities found in linux, with AI-generated Chinese analysis, references, and POCs.

This page serves as the vulnerability aggregation resource for the Linux operating system, focusing on common weakness types and associated security tags. It collects a comprehensive catalog of security vulnerabilities affecting Linux distributions, kernel versions, and major open-source components bundled within the Linux ecosystem. The data spans from early historical reports in the mid-1990s to the present day, ensuring a longitudinal view of the threat landscape. Visitors can utilize this resource to track vendor-specific advisories from major Linux maintainers such as Red Hat, Debian, Ubuntu, and SUSE. Users can also deepen their understanding of specific weakness classes, such as buffer overflows, race conditions, and privilege escalation vectors, by observing how they manifest across different kernel releases and subsystems. Furthermore, the platform allows users to look up a specific product’s vulnerability history, providing context on the remediation speed and frequency of updates for various Linux-based tools and services. This structured approach aids security professionals in assessing risk exposure, patching priorities, and long-term stability trends within the Linux environment without relying on fragmented or outdated information sources.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2024-38780 dma-buf/sw-sync: don't enable IRQ from sync_print_obj() 7.8 -2024-06-21
CVE-2024-38662 bpf: Allow delete from sockmap/sockhash only if update is allowed 7.1 -2024-06-21
CVE-2024-38659 enic: Validate length of nl attributes in enic_set_vf_port 5.5 -2024-06-21
CVE-2024-38637 greybus: lights: check return of get_channel_from_mode 5.5 -2024-06-21
CVE-2024-38636 f2fs: multidev: fix to recognize valid zero block address 5.5 -2024-06-21
CVE-2024-38634 serial: max3100: Lock port->lock when calling uart_handle_cts_change() 5.5 -2024-06-21
CVE-2024-38635 soundwire: cadence: fix invalid PDI offset 7.1 -2024-06-21
CVE-2024-38633 serial: max3100: Update uart_driver_registered on driver removal 4.7 -2024-06-21
CVE-2024-38631 iio: adc: PAC1934: fix accessing out of bounds array index 6.1 -2024-06-21
CVE-2024-38632 vfio/pci: fix potential memory leak in vfio_intx_enable() 2.5 -2024-06-21
CVE-2024-38630 watchdog: cpu5wdt.c: Fix use-after-free bug caused by cpu5wdt_trigger 7.8 -2024-06-21
CVE-2024-38628 usb: gadget: u_audio: Fix race condition use of controls after free during gadget unbind. 7.0 -2024-06-21
CVE-2024-38629 dmaengine: idxd: Avoid unnecessary destruction of file_ida 5.5 -2024-06-21
CVE-2024-38627 stm class: Fix a double free in stm_register_device() 7.8 -2024-06-21
CVE-2024-38626 fuse: clear FR_SENT when re-adding requests into pending list 7.1 -2024-06-21
CVE-2024-38625 fs/ntfs3: Check 'folio' pointer for NULL 5.5 -2024-06-21
CVE-2024-38624 fs/ntfs3: Use 64 bit variable to avoid 32 bit overflow 7.8 -2024-06-21
CVE-2024-38622 drm/msm/dpu: Add callback function pointer check before its call 7.8 -2024-06-21
CVE-2024-38623 fs/ntfs3: Use variable length array instead of fixed size 5.5 -2024-06-21
CVE-2024-38621 media: stk1160: fix bounds checking in stk1160_copy_video() 7.7 -2024-06-21
CVE-2024-38390 drm/msm/a6xx: Avoid a nullptr dereference when speedbin setting fails 5.5 -2024-06-21
CVE-2024-38388 ALSA: hda/cs_dsp_ctl: Use private_free for control cleanup 7.8 -2024-06-21
CVE-2024-38381 nfc: nci: Fix uninit-value in nci_rx_work 7.5 -2024-06-21
CVE-2024-37356 tcp: Fix shift-out-of-bounds in dctcp_update_alpha(). 8.1 -2024-06-21
CVE-2024-36484 net: relax socket state check at accept time. 7.1 -2024-06-21
CVE-2024-36489 tls: fix missing memory barrier in tls_init 5.5 -2024-06-21
CVE-2024-36478 null_blk: fix null-ptr-dereference while configuring 'power' and 'submit_queues' 5.5 -2024-06-21
CVE-2024-36281 net/mlx5: Use mlx5_ipsec_rx_status_destroy to correctly delete status rules 7.1 -2024-06-21
CVE-2024-36286 netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 7.8 -2024-06-21
CVE-2024-36270 netfilter: tproxy: bail out if IP has been disabled on the device 7.5 -2024-06-21

All 12150 known CVE vulnerabilities affecting linux with full Chinese analysis, references, and POCs where available.