CNNVD-202510-3884 Information

CNNVD ID

CNNVD-202510-3884

CVE-2025-40035

  • CNNVD Published: 2025-10-28

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未初始化uinput_ff_upload_compat结构体,可能导致信息泄露。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel had a security loophole, which originated from an uninitialized uinput ff upload compat structure, which could lead to a leak of information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-28

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/fd8a23ecbc602d00e47b27f20b07350867d0ebe5 https://git.kernel.org/stable/c/f5e1f3b85aadce74268c46676772c3e9fa79897e https://git.kernel.org/stable/c/933b87c4590b42500299f00ff55f555903056803 https://git.kernel.org/stable/c/d3366a04770eea807f2826cbdb96934dd8c9bf79 https://git.kernel.org/stable/c/48c96b7e9e03516936d6deba54b5553097eae817 https://git.kernel.org/stable/c/e63aade22a33e77b93c98c9f02db504d897a76b4 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-28-10-2025-48601

Patch

https://www.kernel.org/

Share on: