CNNVD-202508-2116 Information

CNNVD ID

CNNVD-202508-2116

CVE-2025-38554

  • CNNVD Published: 2025-08-19

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于vma->mm释放后vma->vm_refcnt被丢弃,可能导致释放后重用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the abandonment of vma->vm refcnt after its release, which may lead to its reuse.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-08-19

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/6e88fe54721dee17d3496bc998f0c7d243896348 https://git.kernel.org/stable/c/9bbffee67ffd16360179327b57f3b1245579ef08 https://git.kernel.org/stable/c/1bcd236a2536a451e385f8d6d2bb589689ec812f https://nvd.nist.gov/vuln/detail/CVE-2025-38554 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-20-08-2025-48030

Patch

https://www.kernel.org/

Share on: