CNNVD-202510-3863 Information

CNNVD ID

CNNVD-202510-3863

CVE-2025-40057

  • CNNVD Published: 2025-10-28

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于max_vclocks_store函数中max参数过大导致kcalloc无法处理,可能导致内存分配失败。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux kelnel has a security loophole, which stems from the max vclocks store function ’ s excessive max parameter, which renders kcalloc unmanageable and may lead to memory distribution failure.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-28

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/e9f35294e18da82162004a2f35976e7031aaf7f9 https://git.kernel.org/stable/c/35ce5f163889dbce88eda1df661b357a09bbed87 https://git.kernel.org/stable/c/8dd446056336faa2283d62cefc2f576536845edc https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-28-10-2025-48601

Patch

https://www.kernel.org/

Share on: