Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11743

Browse all 11743 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-68241 ipv4: route: Prevent rt_bind_exception() from rebinding stale fnhe — Linux 6.3AIMediumAI2025-12-16
CVE-2025-68240 nilfs2: avoid having an active sc_timer before freeing sci — Linux 7.8AIHighAI2025-12-16
CVE-2025-68239 binfmt_misc: restore write access before closing files opened by open_exec() — Linux 7.1AIHighAI2025-12-16
CVE-2025-68238 mtd: rawnand: cadence: fix DMA device NULL pointer dereference — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68237 mtdchar: fix integer overflow in read/write ioctls — Linux 7.8AIHighAI2025-12-16
CVE-2025-68236 scsi: ufs: ufs-qcom: Fix UFS OCP issue during UFS power down (PC=3) — Linux 7.1AIHighAI2025-12-16
CVE-2025-68235 nouveau/firmware: Add missing kfree() of nvkm_falcon_fw::boot — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68234 io_uring/cmd_net: fix wrong argument types for skb_queue_splice() — Linux 7.1AIHighAI2025-12-16
CVE-2025-68233 drm/tegra: Add call to put_pid() — Linux 7.1AIHighAI2025-12-16
CVE-2025-68232 veth: more robust handing of race to avoid txq getting stuck — Linux 4.7AIMediumAI2025-12-16
CVE-2025-68231 mm/mempool: fix poisoning order>0 pages with HIGHMEM — Linux 7.8AIHighAI2025-12-16
CVE-2025-68230 drm/amdgpu: fix gpu page fault after hibernation on PF passthrough — Linux 7.8AIHighAI2025-12-16
CVE-2025-68229 scsi: target: tcm_loop: Fix segfault in tcm_loop_tpg_address_show() — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68228 drm/plane: Fix create_in_format_blob() return value — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68227 mptcp: Fix proto fallback detection with BPF — Linux 8.8AIHighAI2025-12-16
CVE-2025-68226 smb: client: fix incomplete backport in cfids_invalidation_worker() — Linux 7.8AIHighAI2025-12-16
CVE-2025-68225 lib/test_kho: check if KHO is enabled — Linux 7.1AIHighAI2025-12-16
CVE-2025-68223 drm/radeon: delete radeon_fence_process in is_signaled, no deadlock — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68222 pinctrl: s32cc: fix uninitialized memory in s32_pinctrl_desc — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68221 mptcp: fix address removal logic in mptcp_pm_nl_rm_addr — Linux 7.1AIHighAI2025-12-16
CVE-2025-68220 net: ethernet: ti: netcp: Standardize knav_dma_open_channel to return NULL on error — Linux 7.5AIHighAI2025-12-16
CVE-2025-68219 cifs: fix memory leak in smb3_fs_context_parse_param error path — Linux 7.1AIHighAI2025-12-16
CVE-2025-68218 nvme-multipath: fix lockdep WARN due to partition scan work — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68217 Input: pegasus-notetaker - fix potential out-of-bounds access — Linux 4.2AIMediumAI2025-12-16
CVE-2025-68216 LoongArch: BPF: Disable trampoline for kernel module function trace — Linux 6.2AIMediumAI2025-12-16
CVE-2025-68215 ice: fix PTP cleanup on driver removal in error path — Linux 7.1AIHighAI2025-12-16
CVE-2025-68214 timers: Fix NULL function pointer race in timer_shutdown_sync() — Linux 4.7AIMediumAI2025-12-16
CVE-2025-68213 idpf: fix possible vport_config NULL pointer deref in remove — Linux 5.5AIMediumAI2025-12-16
CVE-2025-68212 fs: Fix uninitialized 'offp' in statmount_string() — Linux 7.1AIHighAI2025-12-16
CVE-2025-68211 ksm: use range-walk function to jump over holes in scan_get_next_rmap_item — Linux 5.5AIMediumAI2025-12-16

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.