CNNVD-202508-3677 Information

CNNVD ID

CNNVD-202508-3677

CVE-2025-38677

  • CNNVD Published: 2025-08-30

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于f2fs文件系统中dnode页面的越界访问。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from cross-border access to the dnode page in the f2fs file system.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-08-30

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/f1d5093d9fe9f3c74c123741c88666cc853b79c5 https://git.kernel.org/stable/c/ee4d13f5407cbdf1216cc258f45492075713889a https://git.kernel.org/stable/c/a650654365c57407413e9b1f6ff4d539bf2e99ca https://git.kernel.org/stable/c/92ef491b506a0f4dd971a3a76f86f2d8f5370180 https://git.kernel.org/stable/c/901f62efd6e855f93d8b1175540f29f4dc45ba55 https://git.kernel.org/stable/c/888aa660144bcb6ec07839da756ee46bfcf7fc53 https://git.kernel.org/stable/c/77de19b6867f2740cdcb6c9c7e50d522b47847a4 https://git.kernel.org/stable/c/6b7784ea07e6aa044f74b39d6b5af5e28746fc81 https://nvd.nist.gov/vuln/detail/CVE-2025-38677 https://vigilance.fr/vulnerability/Linux-kernel-out-of-bounds-memory-reading-via-F2fs-Dnode-Page-48097

Patch

https://www.kernel.org/

Share on: