CNNVD-202507-434 Information

CNNVD ID

CNNVD-202507-434

CVE-2025-38224

  • CNNVD Published: 2025-07-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于kvaser_pciefd驱动中echo_skb_max处理逻辑不当,可能导致数组越界访问。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the poor logic of the echo skb max in the Kvaser pciefd driver, which could lead to several cross-border visits.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

LinuxServer.io

Published

2025-07-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/54ec8b08216f3be2cc98b33633d3c8ea79749895 https://git.kernel.org/stable/c/a6550c9aa11e2f57f9cdaa6249cdd44d446be874 https://git.kernel.org/stable/c/d8a054b6e6824a8b52c3977ebd38c9583a63efac https://access.redhat.com/security/cve/cve-2025-38224

Patch

https://www.kernel.org/

Share on: