CNNVD-202508-2139 Information

CNNVD ID

CNNVD-202508-2139

CVE-2025-38574

  • CNNVD Published: 2025-08-19

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于pptp_xmit函数中未确保最小skb长度,可能导致未初始化数据读取。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the failure to ensure a minimum skb length in the pptp xmit function, which may lead to uninitialized data reading.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-08-19

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/504cc4ab91073d2ac7404ad146139f86ecee7193 https://git.kernel.org/stable/c/ea99b88b1999ebcb24d5d3a6b7910030f40d3bba https://git.kernel.org/stable/c/de9c4861fb42f0cd72da844c3c34f692d5895b7b https://git.kernel.org/stable/c/b7dcda76fd0615c0599c89f36873a6cd48e02dbb https://git.kernel.org/stable/c/5005d24377378a20e5c0e53052fc4ebdcdcbc611 https://git.kernel.org/stable/c/1a04db0fd75cb6034fc27a56b67b3b8b9022a98c https://git.kernel.org/stable/c/97b8c5d322c5c0038cac4bc56fdbe237d0be426f https://git.kernel.org/stable/c/5de7513f38f3c19c0610294ee478242bea356f8c https://git.kernel.org/stable/c/26672f1679b143aa34fca0b6046b7fd0c184770d https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-20-08-2025-48030 https://nvd.nist.gov/vuln/detail/CVE-2025-38574

Patch

https://www.kernel.org/

Share on: