CNNVD-202507-3445 Information

CNNVD ID

CNNVD-202507-3445

CVE-2025-38489

  • CNNVD Published: 2025-07-28

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于bpf_arch_text_poke函数中new_addr等于NULL时的处理不当。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the inappropriate handling of new addr in the bpf arch text poke function when equivalent to NULL.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-07-28

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/d5629d1af0600f8cc7c9245e8d832a66358ef889 https://git.kernel.org/stable/c/a4f9c7846b1ac428921ce9676b1b8c80ed60093c https://git.kernel.org/stable/c/6a5abf8cf182f577c7ae6c62f14debc9754ec986 https://git.kernel.org/stable/c/0c7b20f7785cfdd59403333612c90b458b12307c https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-29-07-2025-47805 https://access.redhat.com/security/cve/cve-2025-38489

Patch

https://www.kernel.org/

Share on: