CNNVD-202509-545 Information

CNNVD ID

CNNVD-202509-545

CVE-2025-38729

  • CNNVD Published: 2025-09-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于usb-audio未验证UAC3电源域描述符长度,可能导致越界访问。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the fact that the UAC3 power domain description is not verified by usb-audio and may lead to cross-border visits.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-09-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/29b415ec09f5b9d1dfa2423b826725a8c8796b9a https://git.kernel.org/stable/c/f03418bb9d542f44df78eec2eff4ac83c0a8ac0d https://git.kernel.org/stable/c/d832ccbc301fbd9e5a1d691bdcf461cdb514595f https://git.kernel.org/stable/c/40714daf4d0448e1692c78563faf0ed0f9d9b5c7 https://git.kernel.org/stable/c/ebc9e06b6ea978a20abf9b87d41afc51b2d745ac https://git.kernel.org/stable/c/07c8d78dbb5e0ff8b23f7fd69cd1d4e2ba22b3dc https://git.kernel.org/stable/c/452ad54f432675982cc0d6eb6c40a6c86ac61dbd https://git.kernel.org/stable/c/1666207ba0a5973735ef010812536adde6174e81 https://git.kernel.org/stable/c/cd08d390d15b204cac1d3174f5f149a20c52e61a https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-05-09-2025-48136

Patch

https://www.kernel.org/

Share on: