CNNVD-202510-2224 Information

CNNVD ID

CNNVD-202510-2224

CVE-2025-39985

  • CNNVD Published: 2025-10-15

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于mcba_usb驱动未实现ndo_change_mtu函数,可能导致缓冲区溢出攻击。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which originates from the mcba usb-driven non-realized Ndo change mtu function, which could lead to spill-over attacks in the buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-15

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/0fa9303c4b9493727e0d3a6ac3729300e3013930 https://git.kernel.org/stable/c/17c8d794527f01def0d1c8b7dc2d7b8d34fed0e6 https://git.kernel.org/stable/c/3664ae91b26d1fd7e4cee9cde17301361f4c89d5 https://git.kernel.org/stable/c/37aed407496bf6de8910e588edb04d2435fa7011 https://git.kernel.org/stable/c/6b9fb82df8868dbe9ffea5874b8d35f951faedbb https://git.kernel.org/stable/c/6eec67bfb25637f9b51e584cf59ddace59925bc8 https://git.kernel.org/stable/c/b638c3fb0f163e69785ceddb3b434a9437878bec https://git.kernel.org/stable/c/ca4e51359608e1f29bf1f2c33c3ddf775b6b7ed1

Patch

https://www.kernel.org/

Share on: