Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Linux — Vulnerabilities & Security Advisories 11743

Browse all 11743 CVE security advisories affecting Linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

Found 11613 results / 11743Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-68818 scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path" — Linux 7.8AIHighAI2026-01-13
CVE-2025-68817 ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency — Linux 7.0AIHighAI2026-01-13
CVE-2025-68815 net/sched: ets: Remove drr class from the active list if it changes to strict — Linux 7.1AIHighAI2026-01-13
CVE-2025-68816 net/mlx5: fw_tracer, Validate format string parameters — Linux 7.8AIHighAI2026-01-13
CVE-2025-68814 io_uring: fix filename leak in __io_openat_prep() — Linux 5.5AIMediumAI2026-01-13
CVE-2025-68813 ipvs: fix ipv4 null-ptr-deref in route error path — Linux 5.5AIMediumAI2026-01-13
CVE-2025-68811 svcrdma: use rc_pageoff for memcpy byte offset — Linux 7.7AIHighAI2026-01-13
CVE-2025-68810 KVM: Disallow toggling KVM_MEM_GUEST_MEMFD on an existing memslot — Linux 7.1AIHighAI2026-01-13
CVE-2025-68809 ksmbd: vfs: fix race on m_flags in vfs_cache — Linux 7.0AIHighAI2026-01-13
CVE-2025-68808 media: vidtv: initialize local pointers upon transfer of memory ownership — Linux 7.8AIHighAI2026-01-13
CVE-2025-68807 block: fix race between wbt_enable_default and IO submission — Linux 4.7AIMediumAI2026-01-13
CVE-2025-68806 ksmbd: fix buffer validation by including null terminator size in EA length — Linux 7.8AIHighAI2026-01-13
CVE-2025-68805 fuse: fix io-uring list corruption for terminated non-committed requests — Linux 7.8AIHighAI2026-01-13
CVE-2025-68804 platform/chrome: cros_ec_ishtp: Fix UAF after unbinding driver — Linux 8.1AIHighAI2026-01-13
CVE-2025-68803 NFSD: NFSv4 file creation neglects setting ACL — Linux 6.5AIMediumAI2026-01-13
CVE-2025-68802 drm/xe: Limit num_syncs to prevent oversized allocations — Linux 5.5AIMediumAI2026-01-13
CVE-2025-68800 mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats — Linux 7.8AIHighAI2026-01-13
CVE-2025-68801 mlxsw: spectrum_router: Fix neighbour use-after-free — Linux 7.8AIHighAI2026-01-13
CVE-2025-68799 caif: fix integer underflow in cffrml_receive() — Linux 7.7AIHighAI2026-01-13
CVE-2025-68798 perf/x86/amd: Check event before enable to avoid GPF — Linux 4.7AIMediumAI2026-01-13
CVE-2025-68797 char: applicom: fix NULL pointer dereference in ac_ioctl — Linux 5.5AIMediumAI2026-01-13
CVE-2025-68796 f2fs: fix to avoid updating zero-sized extent in extent cache — Linux 7.8AIHighAI2026-01-13
CVE-2025-68794 iomap: adjust read range correctly for non-block-aligned positions — Linux 5.5AIMediumAI2026-01-13
CVE-2025-68795 ethtool: Avoid overflowing userspace buffer on stats query — Linux 7.8AIHighAI2026-01-13
CVE-2025-68793 drm/amdgpu: fix a job->pasid access race in gpu recovery — Linux 7.0AIHighAI2026-01-13
CVE-2025-68791 fuse: missing copy_finish in fuse-over-io-uring argument copies — Linux 3.3AILowAI2026-01-13
CVE-2025-68792 tpm2-sessions: Fix out of range indexing in name_size — Linux 8.4AIHighAI2026-01-13
CVE-2025-68790 net/mlx5: Fix double unregister of HCA_PORTS component — Linux 7.8AIHighAI2026-01-13
CVE-2025-68788 fsnotify: do not generate ACCESS/MODIFY events on child for special files — Linux 3.3AILowAI2026-01-13
CVE-2025-68786 ksmbd: skip lock-range check on equal size to avoid size==0 underflow — Linux 7.8AIHighAI2026-01-13

This page lists every published CVE security advisory associated with Linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.