Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11743

Browse all 11743 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-68345 ALSA: hda: cs35l41: Fix NULL pointer dereference in cs35l41_hda_read_acpi() — Linux 5.5AIMediumAI2025-12-24
CVE-2025-68344 ALSA: wavefront: Fix integer overflow in sample size validation — Linux 7.8AIHighAI2025-12-24
CVE-2025-68343 can: gs_usb: gs_usb_receive_bulk_callback(): check actual_length before accessing header — Linux 7.8AIHighAI2025-12-23
CVE-2025-68342 can: gs_usb: gs_usb_receive_bulk_callback(): check actual_length before accessing data — Linux--AI2025-12-23
CVE-2025-68341 veth: reduce XDP no_direct return section to fix race — Linux 6.3AIMediumAI2025-12-23
CVE-2025-68340 team: Move team device type change at the end of team_port_add — Linux 7.1AIHighAI2025-12-23
CVE-2025-68339 atm/fore200e: Fix possible data race in fore200e_open() — Linux 6.3AIMediumAI2025-12-23
CVE-2025-68338 net: dsa: microchip: Don't free uninitialized ksz_irq — Linux 7.8AIHighAI2025-12-23
CVE-2025-68337 jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted — Linux 7.8AIHighAI2025-12-22
CVE-2025-68336 locking/spinlock/debug: Fix data-race in do_raw_write_lock — Linux 4.7AIMediumAI2025-12-22
CVE-2025-68335 comedi: pcl818: fix null-ptr-deref in pcl818_ai_cancel() — Linux 7.8AIHighAI2025-12-22
CVE-2025-68334 platform/x86/amd/pmc: Add support for Van Gogh SoC — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68333 sched_ext: Fix possible deadlock in the deferred_irq_workfn() — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68332 comedi: c6xdigio: Fix invalid PNP driver unregistration — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68331 usb: uas: fix urb unmapping issue when the uas device is remove during ongoing data transfer — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68330 iio: accel: bmc150: Fix irq assumption regression — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68329 tracing: Fix WARN_ON in tracing_buffers_mmap_close for split VMAs — Linux 7.1AIHighAI2025-12-22
CVE-2025-68328 firmware: stratix10-svc: fix bug in saving controller data — Linux 7.7AIHighAI2025-12-22
CVE-2025-68327 usb: renesas_usbhs: Fix synchronous external abort on unbind — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68326 drm/xe/guc: Fix stack_depot usage — Linux 5.5AIMediumAI2025-12-22
CVE-2025-68325 net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop — Linux--AI2025-12-18
CVE-2025-68324 scsi: imm: Fix use-after-free bug caused by unfinished delayed work — Linux 7.8AIHighAI2025-12-18
CVE-2025-68323 usb: typec: ucsi: fix use-after-free caused by uec->work — Linux 7.8AIHighAI2025-12-18
CVE-2025-68322 parisc: Avoid crash due to unaligned access in unwinder — Linux 6.2AIMediumAI2025-12-16
CVE-2025-68321 page_pool: always add GFP_NOWARN for ATOMIC allocations — Linux 6.5AIMediumAI2025-12-16
CVE-2025-68320 lan966x: Fix sleeping in atomic context — Linux 9.1AICriticalAI2025-12-16
CVE-2025-68319 netconsole: Acquire su_mutex before navigating configs hierarchy — Linux 7.0AIHighAI2025-12-16
CVE-2025-68318 clk: thead: th1520-ap: set all AXI clocks to CLK_IS_CRITICAL — Linux 6.2AIMediumAI2025-12-16
CVE-2025-68317 io_uring/zctx: check chained notif contexts — Linux 8.8AIHighAI2025-12-16
CVE-2025-68315 f2fs: fix to detect potential corrupted nid in free_nid_list — Linux 7.8AIHighAI2025-12-16

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.