CNNVD-202508-2155 Information

CNNVD ID

CNNVD-202508-2155

CVE-2025-38590

  • CNNVD Published: 2025-08-19

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于net/mlx5e模块在未找到xfrm状态时未移除skb secpath。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the fact that the net/mlx5e module did not remove skb secpath when xfrm was not found.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-08-19

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/6d19c44b5c6dd72f9a357d0399604ec16a77de3c https://git.kernel.org/stable/c/781a0bbf377443ef06f3248221f06cb555935530 https://git.kernel.org/stable/c/3a5782431d84716b66302b07ff1b32fea1023bd5 https://git.kernel.org/stable/c/314f568b84b01f6eac1e4313ca47f9ade4349443 https://git.kernel.org/stable/c/137b12a4900eb6971b889839eab6036f72cbb217 https://nvd.nist.gov/vuln/detail/CVE-2025-38590 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-20-08-2025-48030

Patch

https://www.kernel.org/

Share on: