CNNVD-202509-3707 Information

CNNVD ID

CNNVD-202509-3707

CVE-2025-39886

  • CNNVD Published: 2025-09-23

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于bpf_timer_init函数中memcg使用不当,可能导致双重获取锁和硬锁定问题。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole that stems from the inappropriate use of memcg in the bpf timer init function, which may lead to double-access locking and hard locking problems.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Liquidfiles

Published

2025-09-23

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/449682e76f32601f211816d3e2100bed87e67a4c https://git.kernel.org/stable/c/6d78b4473cdb08b74662355a9e8510bde09c511e https://git.kernel.org/stable/c/ac70cd446f83ccb25532b343919ab86eacdcd06a https://git.kernel.org/stable/c/cd1fd26bb13473c1734e3026b2b97025a0a4087b

Patch

https://www.kernel.org/

Share on: