Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11628

All 11628 CVE vulnerabilities found in linux, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerability data for the Linux operating system, focusing on common weakness classifications such as memory corruption, privilege escalation, and input validation errors. It collects security issues affecting kernel modules, core utilities, and subsystem components across various distributions and upstream sources. The database covers reports from early 2010 to the present, ensuring historical context for long-term support and maintenance cycles. Users can track vendor-specific advisories from major distributions like Debian, Red Hat, and Canonical to understand patching timelines and severity assessments. The resource also allows for a deeper understanding of specific weakness classes by analyzing how they manifest in Linux environments, including technical details and mitigation strategies. Additionally, visitors can look up a product's vulnerability history by examining trends and recurrence patterns for specific components or subsystems. This aggregated view simplifies the process of monitoring security posture by consolidating disparate sources into a single, searchable interface. The information is structured to help security professionals, developers, and system administrators assess risk more effectively. By providing a centralized access point, this page reduces the effort required to cross-reference multiple vendor bulletins and security advisories. The goal is to enhance situational awareness and facilitate informed decision-making regarding system updates and configuration hardening.

Vendor: n/a

CVE IDTitleCVSSSeverityPublished
CVE-2025-40284 Bluetooth: MGMT: cancel mesh send timer when hdev removed 6.5 -2025-12-06
CVE-2025-40283 Bluetooth: btusb: reorder cleanup in btusb_disconnect to avoid UAF 8.0 -2025-12-06
CVE-2025-40282 Bluetooth: 6lowpan: reset link-local header on ipv6 recv path 6.5 -2025-12-06
CVE-2025-40281 sctp: prevent possible shift-out-of-bounds in sctp_transport_update_rto 7.1 -2025-12-06
CVE-2025-40280 tipc: Fix use-after-free in tipc_mon_reinit_self(). 7.8 -2025-12-06
CVE-2025-40279 net: sched: act_connmark: initialize struct tc_ife to fix kernel leak 5.5 -2025-12-06
CVE-2025-40278 net: sched: act_ife: initialize struct tc_ife to fix KMSAN kernel-infoleak 8.8 -2025-12-06
CVE-2025-40277 drm/vmwgfx: Validate command header size against SVGA_CMD_MAX_DATASIZE 7.8 -2025-12-06
CVE-2025-40276 drm/panthor: Flush shmem writes before mapping buffers CPU-uncached 7.8 -2025-12-06
CVE-2025-40275 ALSA: usb-audio: Fix NULL pointer dereference in snd_usb_mixer_controls_badd 7.1 -2025-12-06
CVE-2025-40274 KVM: guest_memfd: Remove bindings on memslot deletion when gmem is dying 7.1 -2025-12-06
CVE-2025-40273 NFSD: free copynotify stateid in nfs4_free_ol_stateid() 6.5 -2025-12-06
CVE-2025-40272 mm/secretmem: fix use-after-free race in fault handler 4.7 -2025-12-06
CVE-2025-40271 fs/proc: fix uaf in proc_readdir_de() 7.1 -2025-12-06
CVE-2025-40270 mm, swap: fix potential UAF issue for VMA readahead 6.6 -2025-12-06
CVE-2025-40269 ALSA: usb-audio: Fix potential overflow of PCM transfer buffer 8.4 -2025-12-06
CVE-2025-40268 cifs: client: fix memory leak in smb3_fs_context_parse_param 5.5 -2025-12-06
CVE-2025-40267 io_uring/rw: ensure allocated iovec gets cleared for early failure 5.5 -2025-12-06
CVE-2025-40265 vfat: fix missing sb_min_blocksize() return value checks 6.5AIMediumAI2025-12-04
CVE-2025-40266 KVM: arm64: Check the untrusted offset in FF-A memory share 7.8AIHighAI2025-12-04
CVE-2025-40264 be2net: pass wrb_params in case of OS2BMC 5.5AIMediumAI2025-12-04
CVE-2025-40263 Input: cros_ec_keyb - fix an invalid memory access 5.5AIMediumAI2025-12-04
CVE-2025-40262 Input: imx_sc_key - fix memory corruption on unload 7.8AIHighAI2025-12-04
CVE-2025-40260 sched_ext: Fix scx_enable() crash on helper kthread creation failure 5.5AIMediumAI2025-12-04
CVE-2025-40261 nvme: nvme-fc: Ensure ->ioerr_work is cancelled in nvme_fc_delete_ctrl() 6.5AIMediumAI2025-12-04
CVE-2025-40259 scsi: sg: Do not sleep in atomic context 5.5AIMediumAI2025-12-04
CVE-2025-40258 mptcp: fix race condition in mptcp_schedule_work() 6.3AIMediumAI2025-12-04
CVE-2025-40257 mptcp: fix a race in mptcp_pm_del_add_timer() 7.0AIHighAI2025-12-04
CVE-2025-40256 xfrm: also call xfrm_state_delete_tunnel at destroy time for states that were never added 7.1AIHighAI2025-12-04
CVE-2025-40255 net: core: prevent NULL deref in generic_hwtstamp_ioctl_lower() 5.5AIMediumAI2025-12-04

All 11628 known CVE vulnerabilities affecting linux with full Chinese analysis, references, and POCs where available.