Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-23233 f2fs: fix to avoid mapping wrong physical block for swapfile — Linux 7.1AIHighAI2026-03-04
CVE-2026-23232 Revert "f2fs: block cache/dio write during f2fs_enable_checkpoint()" — Linux 5.5AIMediumAI2026-03-04
CVE-2025-71238 scsi: qla2xxx: Fix bsg_done() causing double free — Linux 5.5AIMediumAI2026-03-04
CVE-2026-23231 netfilter: nf_tables: fix use-after-free in nf_tables_addchain() — Linux 7.8 High2026-03-04
CVE-2026-23230 smb: client: split cached_fid bitfields to avoid shared-byte RMW races — Linux 8.8 High2026-02-18
CVE-2026-23229 crypto: virtio - Add spinlock protection with virtqueue notification — Linux 5.5AIMediumAI2026-02-18
CVE-2026-23228 smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() — Linux 8.1AIHighAI2026-02-18
CVE-2026-23227 drm/exynos: vidi: use ctx->lock to protect struct vidi_context member variables related to memory alloc/free — Linux 7.8 High2026-02-18
CVE-2026-23226 ksmbd: add chann_lock to protect ksmbd_chann_list xarray — Linux 8.8 High2026-02-18
CVE-2026-23225 sched/mmcid: Don't assume CID is CPU owned on mode switch — Linux 7.8 High2026-02-18
CVE-2026-23223 xfs: fix UAF in xchk_btree_check_block_owner — Linux 7.1AIHighAI2026-02-18
CVE-2026-23224 erofs: fix UAF issue for file-backed mounts w/ directio option — Linux 7.8 High2026-02-18
CVE-2026-23222 crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly — Linux 7.8 High2026-02-18
CVE-2026-23221 bus: fsl-mc: fix use-after-free in driver_override_show() — Linux 7.8AIHighAI2026-02-18
CVE-2026-23220 ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths — Linux 5.5AIMediumAI2026-02-18
CVE-2025-71237 nilfs2: Fix potential block overflow that cause system hang — Linux 5.5AIMediumAI2026-02-18
CVE-2025-71236 scsi: qla2xxx: Validate sp before freeing associated memory — Linux 5.5AIMediumAI2026-02-18
CVE-2025-71235 scsi: qla2xxx: Delay module unload while fabric scan in progress — Linux 5.5AIMediumAI2026-02-18
CVE-2025-71234 wifi: rtl8xxxu: fix slab-out-of-bounds in rtl8xxxu_sta_add — Linux 7.1AIHighAI2026-02-18
CVE-2025-71233 PCI: endpoint: Avoid creating sub-groups asynchronously — Linux 5.5AIMediumAI2026-02-18
CVE-2025-71232 scsi: qla2xxx: Free sp in error path to fix system crash — Linux 5.5AIMediumAI2026-02-18
CVE-2025-71231 crypto: iaa - Fix out-of-bounds index in find_empty_iaa_compression_mode — Linux 8.8AIHighAI2026-02-18
CVE-2025-71230 hfs: ensure sb->s_fs_info is always cleaned up — Linux 7.1AIHighAI2026-02-18
CVE-2025-71229 wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon() — Linux 5.7AIMediumAI2026-02-18
CVE-2026-23219 mm/slab: Add alloc_tagging_slab_free_hook for memcg_alloc_abort_single — Linux 5.5AIMediumAI2026-02-18
CVE-2026-23218 gpio: loongson-64bit: Fix incorrect NULL check after devm_kcalloc() — Linux 5.5AIMediumAI2026-02-18
CVE-2026-23217 riscv: trace: fix snapshot deadlock with sbi ecall — Linux 5.5AIMediumAI2026-02-18
CVE-2026-23216 scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() — Linux 7.8AIHighAI2026-02-18
CVE-2026-23215 x86/vmware: Fix hypercall clobbers — Linux 5.5AIMediumAI2026-02-18
CVE-2026-23214 btrfs: reject new transactions if the fs is fully read-only — Linux 4.6AIMediumAI2026-02-18

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.