CNNVD-202510-3887 Information

CNNVD ID

CNNVD-202510-3887

CVE-2025-40036

  • CNNVD Published: 2025-10-28

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于copy_to_user失败时未清理fdlist,可能导致映射泄露。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the failure of the copy to user to clean up the fdlist, which could lead to a map leak.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-28

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/a085658264d0c8d4f795d4631f77d7289a021de9 https://git.kernel.org/stable/c/78d33a041555db03903e8037fd053ed74fbd88cb https://git.kernel.org/stable/c/3ad42dc66445df6977cf4be0c06f1a655299ce6c https://git.kernel.org/stable/c/da1ba64176e0138f2bfa96f9e43e8c3640d01e1e https://git.kernel.org/stable/c/c000f65f0ac93d9f9cc69a230d372f6ca93e4879 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-28-10-2025-48601

Patch

https://www.kernel.org/

Share on: