CNNVD-202507-1454 Information

CNNVD ID

CNNVD-202507-1454

CVE-2025-38328

  • CNNVD Published: 2025-07-10

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于jffs2中未检查jffs2_prealloc_raw_node_refs结果,可能导致空指针取消引用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the failure to check the results of jffs2 prealloc raw node refs2 in jffs2, which may lead to the cancellation of the reference to the empty pointer.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

LinuxServer.io

Published

2025-07-10

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/38d767fb4a7766ec2058f97787e4c6e8d10343d6 https://git.kernel.org/stable/c/042fa922c84b5080401bcd8897d4ac4919d15075 https://git.kernel.org/stable/c/2b6d96503255a3ed676cd70f8368870c6d6a25c6 https://git.kernel.org/stable/c/7e860296d7808de1db175c1eda29f94a2955dcc4 https://git.kernel.org/stable/c/d1b81776f337a9b997f797c70ac0a26d838a2168 https://git.kernel.org/stable/c/d96e6451a8d0fe62492d4cc942d695772293c05a https://git.kernel.org/stable/c/cd42ddddd70abc7127c12b96c8c85dbd080ea56f https://git.kernel.org/stable/c/f41c625328777f9ad572901ba0b0065bb9c9c1da https://nvd.nist.gov/vuln/detail/CVE-2025-38328 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-11-07-2025-47688

Patch

https://www.kernel.org/

Share on: