CNNVD-202508-2138 Information

CNNVD ID

CNNVD-202508-2138

CVE-2025-38572

  • CNNVD Published: 2025-08-19

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ipv6_gso_segment函数中未拒绝恶意数据包,可能导致传输头溢出。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the failure to reject malicious data packages in the ipv6 gso segment function, which may lead to a spill over the transfer head.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-08-19

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/ef05007b403dcc21e701cb1f30d4572ac0a9da20 https://git.kernel.org/stable/c/573b8250fc2554761db3bc2bbdbab23789d52d4e https://git.kernel.org/stable/c/ee851768e4b8371ce151fd446d24bf3ae2d18789 https://git.kernel.org/stable/c/de322cdf600fc9433845a9e944d1ca6b31cfb67e https://git.kernel.org/stable/c/d45cf1e7d7180256e17c9ce88e32e8061a7887fe https://git.kernel.org/stable/c/5dc60b2a00ed7629214ac0c48e43f40af2078703 https://git.kernel.org/stable/c/5489e7fc6f8be3062f8cb7e49406de4bfd94db67 https://git.kernel.org/stable/c/3f638e0b28bde7c3354a0df938ab3a96739455d1 https://git.kernel.org/stable/c/09ff062b89d8e48165247d677d1ca23d6d607e9b https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-20-08-2025-48030 https://nvd.nist.gov/vuln/detail/CVE-2025-38572

Patch

https://www.kernel.org/

Share on: