Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

linux — Vulnerabilities & Security Advisories 12265

Browse all 12265 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-68223 drm/radeon: delete radeon_fence_process in is_signaled, no deadlock — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68222 pinctrl: s32cc: fix uninitialized memory in s32_pinctrl_desc — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68221 mptcp: fix address removal logic in mptcp_pm_nl_rm_addr — Linux 7.1AIHighAI2025-12-16
CVE-2025-68220 net: ethernet: ti: netcp: Standardize knav_dma_open_channel to return NULL on error — Linux 7.5AIHighAI2025-12-16
CVE-2025-68219 cifs: fix memory leak in smb3_fs_context_parse_param error path — Linux 7.1AIHighAI2025-12-16
CVE-2025-68218 nvme-multipath: fix lockdep WARN due to partition scan work — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68217 Input: pegasus-notetaker - fix potential out-of-bounds access — Linux 4.2AIMediumAI2025-12-16
CVE-2025-68216 LoongArch: BPF: Disable trampoline for kernel module function trace — Linux 6.2AIMediumAI2025-12-16
CVE-2025-68215 ice: fix PTP cleanup on driver removal in error path — Linux 7.1AIHighAI2025-12-16
CVE-2025-68214 timers: Fix NULL function pointer race in timer_shutdown_sync() — Linux 4.7AIMediumAI2025-12-16
CVE-2025-68213 idpf: fix possible vport_config NULL pointer deref in remove — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68212 fs: Fix uninitialized 'offp' in statmount_string() — Linux 7.1AIHighAI2025-12-16
CVE-2025-68211 ksm: use range-walk function to jump over holes in scan_get_next_rmap_item — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68210 erofs: avoid infinite loop due to incomplete zstd-compressed data — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68209 mlx5: Fix default values in create CQ — Linux 7.1AIHighAI2025-12-16
CVE-2025-68208 bpf: account for current allocated stack depth in widen_imprecise_scalars() — Linux 7.1AIHighAI2025-12-16
CVE-2025-68207 drm/xe/guc: Synchronize Dead CT worker with unbind — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68206 netfilter: nft_ct: add seqadj extension for natted connections — Linux 9.1AICriticalAI2025-12-16
CVE-2025-68205 ALSA: hda/hdmi: Fix breakage at probing nvhdmi-mcp driver — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68204 pmdomain: arm: scmi: Fix genpd leak on provider registration failure — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68202 sched_ext: Fix unsafe locking in the scx_dump_state() — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68201 drm/amdgpu: remove two invalid BUG_ON()s — Linux 7.1AIHighAI2025-12-16
CVE-2025-68200 bpf: Add bpf_prog_run_data_pointers() — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68199 codetag: debug: handle existing CODETAG_EMPTY in mark_objexts_empty for slabobj_ext — Linux 7.1AIHighAI2025-12-16
CVE-2025-68198 crash: fix crashkernel resource shrink — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68197 bnxt_en: Fix null pointer dereference in bnxt_bs_trace_check_wrap() — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68196 drm/amd/display: Cache streams targeting link when performing LT automation — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68195 x86/CPU/AMD: Add missing terminator for zen5_rdseed_microcode — Linux 7.1AIHighAI2025-12-16
CVE-2025-68194 media: imon: make send_packet() more robust — Linux 4.3AIMediumAI2025-12-16
CVE-2025-68193 drm/xe/guc: Add devm release action to safely tear down CT — Linux 5.5AIMediumAI2025-12-16

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.