Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Linux — Vulnerabilities & Security Advisories 13511

Browse all 13511 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-21890 idpf: fix checksums set in idpf_rx_rsc() — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21889 perf/core: Add RCU read lock protection to perf_iterate_ctx() — Linux 7.1AIHighAI2025-03-27
CVE-2025-21888 RDMA/mlx5: Fix a WARN during dereg_mr for DM type — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21887 ovl: fix UAF in ovl_dentry_update_reval by moving dput() in ovl_link_up — Linux 7.8AIHighAI2025-03-27
CVE-2025-21886 RDMA/mlx5: Fix implicit ODP hang on parent deregistration — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21885 RDMA/bnxt_re: Fix the page details for the srq created by kernel consumers — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21883 ice: Fix deinitializing VF in error path — Linux 7.0AIHighAI2025-03-27
CVE-2025-21884 net: better track kernel sockets lifetime — Linux 7.1AIHighAI2025-03-27
CVE-2025-21882 net/mlx5: Fix vport QoS cleanup on error — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21880 drm/xe/userptr: fix EFAULT handling — Linux 8.4AIHighAI2025-03-27
CVE-2025-21881 uprobes: Reject the shared zeropage in uprobe_write_opcode() — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21879 btrfs: fix use-after-free on inode when scanning root during em shrinking — Linux 7.8AIHighAI2025-03-27
CVE-2025-21878 i2c: npcm: disable interrupt enable bit before devm_request_irq — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21876 iommu/vt-d: Fix suspicious RCU usage — Linux 7.1AIHighAI2025-03-27
CVE-2025-21877 usbnet: gl620a: fix endpoint checking in genelink_bind() — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21875 mptcp: always handle address removal under msk socket lock — Linux 7.1AIHighAI2025-03-27
CVE-2025-21873 scsi: ufs: core: bsg: Fix crash when arpmb command fails — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21874 dm-integrity: Avoid divide by zero in table status in Inline mode — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21872 efi: Don't map the entire mokvar table to determine its size — Linux 5.5AIMediumAI2025-03-27
CVE-2024-58091 drm/fbdev-dma: Add shadow buffering for deferred I/O — Linux 8.4AIHighAI2025-03-27
CVE-2024-58090 sched/core: Prevent rescheduling when interrupts are disabled — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21871 tee: optee: Fix supplicant wait loop — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21870 ASoC: SOF: ipc4-topology: Harden loops for looking up ALH copiers — Linux 5.5AIMediumAI2025-03-27
CVE-2025-21869 powerpc/code-patching: Disable KASAN report during patching via temporary mm — Linux 7.8AIHighAI2025-03-27
CVE-2025-21868 net: allow small head cache usage with large MAX_SKB_FRAGS values — Linux 7.1AIHighAI2025-03-27
CVE-2025-21867 bpf, test_run: Fix use-after-free issue in eth_skb_pkt_type() — Linux 6.5AIMediumAI2025-03-27
CVE-2023-52927 netfilter: allow exp not to be removed in nf_ct_find_expectation — Linux--2025-03-14
CVE-2025-21866 powerpc/code-patching: Fix KASAN hit by not flagging text patching area as VM_ALLOC — Linux 7.8 -2025-03-12
CVE-2025-21865 gtp: Suppress list corruption splat in gtp_net_exit_batch_rtnl(). — Linux 5.5 -2025-03-12
CVE-2025-21863 io_uring: prevent opcode speculation — Linux 7.1 -2025-03-12

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.