CNNVD-202510-1356 Information

CNNVD ID

CNNVD-202510-1356

CVE-2025-39957

  • CNNVD Published: 2025-10-09

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未考虑S1G能力元素的scan_ies_len长度,可能导致缓冲区长度验证失败。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the length of scan ies len, which does not take into account the S1G capability element, which could lead to the failure of verification of the length of the buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-09

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/0dbad5f5549e54ac269cc04ce89f212892a98cab https://git.kernel.org/stable/c/7e2f3213e85eba00acb4cfe6d71647892d63c3a1 https://git.kernel.org/stable/c/16c9244a62116fe148f6961753b68e7160799f97 https://git.kernel.org/stable/c/93e063f15e17acb8cd6ac90c8f0802c2624e1a74 https://git.kernel.org/stable/c/32adb020b0c32939da1322dcc87fc0ae2bc935d1 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-09-10-2025-48429

Patch

https://www.kernel.org/

Share on: