CNNVD-202507-2859 Information

CNNVD ID

CNNVD-202507-2859

CVE-2025-38352

  • CNNVD Published: 2025-07-22

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于posix-cpu-timers和posix_cpu_timer_del之间存在竞争条件,可能导致任务被错误回收。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the existence of competitive conditions between posix-cpu-timers and posix cpu timer del, which may lead to an erroneous recovery of tasks.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-07-22

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/460188bc042a3f40f72d34b9f7fc6ee66b0b757b https://git.kernel.org/stable/c/2c72fe18cc5f9f1750f5bc148cf1c94c29e106ff https://git.kernel.org/stable/c/c076635b3a42771ace7d276de8dc3bc76ee2ba1b https://git.kernel.org/stable/c/764a7a5dfda23f69919441f2eac2a83e7db6e5bb https://git.kernel.org/stable/c/c29d5318708e67ac13c1b6fc1007d179fb65b4d7 https://git.kernel.org/stable/c/f90fff1e152dedf52b932240ebbd670d83330eca https://git.kernel.org/stable/c/78a4b8e3795b31dae58762bc091bb0f4f74a2200 https://git.kernel.org/stable/c/2f3daa04a9328220de46f0d5c919a6c0073a9f0b https://vigilance.fr/vulnerability/Linux-kernel-memory-corruption-via-posix-cpu-timers-47782 https://nvd.nist.gov/vuln/detail/CVE-2025-38352

Patch

https://www.kernel.org/

Share on: