CNNVD-202508-2777 Information

CNNVD ID

CNNVD-202508-2777

CVE-2025-38639

  • CNNVD Published: 2025-08-22

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于xt_nfacct假设acct名称以空字符结尾,可能导致越界读取。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole that originates from xt nfact assuming that accct’s name ends in empty characters and may lead to cross-border reading.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-08-22

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/e18939176e657a3a20bfbed357b8c55a9f82aba3 https://git.kernel.org/stable/c/e021a1eee196887536a6630c5492c23a4c78d452 https://git.kernel.org/stable/c/df13c9c6ce1d55c31d1bd49db65a7fbbd86aab13 https://git.kernel.org/stable/c/bf58e667af7d96c8eb9411f926a0a0955f41ce21 https://git.kernel.org/stable/c/b10cfa2de13d28ddd03210eb234422b7ec92725a https://git.kernel.org/stable/c/7c1ae471da69c09242834e956218ea6a42dd405a https://git.kernel.org/stable/c/66d41268ede1e1b6e71ba28be923397ff0b2b9c3 https://git.kernel.org/stable/c/58007fc7b94fb2702000045ff401eb7f5bde7828 https://git.kernel.org/stable/c/58004aa21e79addaf41667bfe65e93ec51653f18 https://nvd.nist.gov/vuln/detail/CVE-2025-38639 https://access.redhat.com/security/cve/cve-2025-38639

Patch

https://www.kernel.org/

Share on: