Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11727

Browse all 11727 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-71102 scs: fix a wrong parameter in __scs_magic — Linux 6.1AIMediumAI2026-01-14
CVE-2025-71101 platform/x86: hp-bioscfg: Fix out-of-bounds array access in ACPI package parsing — Linux 7.8AIHighAI2026-01-13
CVE-2025-71100 wifi: rtlwifi: 8192cu: fix tid out of range in rtl92cu_tx_fill_desc() — Linux 7.1AIHighAI2026-01-13
CVE-2025-71099 drm/xe/oa: Fix potential UAF in xe_oa_add_config_ioctl() — Linux 7.4AIHighAI2026-01-13
CVE-2025-71098 ip6_gre: make ip6gre_header() robust — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71097 ipv4: Fix reference count leak when using error routes with nexthop objects — Linux 6.2AIMediumAI2026-01-13
CVE-2025-71096 RDMA/core: Check for the presence of LS_NLA_TYPE_DGID correctly — Linux 7.1AIHighAI2026-01-13
CVE-2025-71094 net: usb: asix: validate PHY address before use — Linux 4.6AIMediumAI2026-01-13
CVE-2025-71095 net: stmmac: fix the crash issue for zero copy XDP_TX action — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71093 e1000: fix OOB in e1000_tbi_should_accept() — Linux 7.7AIHighAI2026-01-13
CVE-2025-71092 RDMA/bnxt_re: Fix OOB write in bnxt_re_copy_err_stats() — Linux 7.1AIHighAI2026-01-13
CVE-2025-71090 nfsd: fix nfsd_file reference leak in nfsd4_add_rdaccess_to_wrdeleg() — Linux 7.8AIHighAI2026-01-13
CVE-2025-71091 team: fix check for port enabled in team_queue_override_port_prio_changed() — Linux 7.1AIHighAI2026-01-13
CVE-2025-71089 iommu: disable SVA when CONFIG_X86 is set — Linux 7.8 High2026-01-13
CVE-2025-71088 mptcp: fallback earlier on simult connection — Linux 5.3AIMediumAI2026-01-13
CVE-2025-71087 iavf: fix off-by-one issues in iavf_config_rss_reg() — Linux 7.1AIHighAI2026-01-13
CVE-2025-71086 net: rose: fix invalid array index in rose_kill_by_device() — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71084 RDMA/cm: Fix leaking the multicast GID table reference — Linux 6.1AIMediumAI2026-01-13
CVE-2025-71085 ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71083 drm/ttm: Avoid NULL pointer deref for evicted BOs — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71081 ASoC: stm32: sai: fix OF node leak on probe — Linux 7.1AIHighAI2026-01-13
CVE-2025-71082 Bluetooth: btusb: revert use of devm_kzalloc in btusb — Linux 6.5AIMediumAI2026-01-13
CVE-2025-71080 ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT — Linux 6.3AIMediumAI2026-01-13
CVE-2025-71079 net: nfc: fix deadlock between nfc_unregister_device and rfkill_fop_write — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71078 powerpc/64s/slb: Fix SLB multihit issue during SLB preload — Linux 7.1AIHighAI2026-01-13
CVE-2025-71077 tpm: Cap the number of PCR banks — Linux 3.3AILowAI2026-01-13
CVE-2025-71076 drm/xe/oa: Limit num_syncs to prevent oversized allocations — Linux 5.5AIMediumAI2026-01-13
CVE-2025-71075 scsi: aic94xx: fix use-after-free in device removal path — Linux 7.8AIHighAI2026-01-13
CVE-2025-71073 Input: lkkbd - disable pending work before freeing device — Linux 7.1AIHighAI2026-01-13
CVE-2025-71074 functionfs: fix the open/removal races — Linux 7.1AIHighAI2026-01-13

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.