CNNVD-202510-4258 Information

CNNVD ID

CNNVD-202510-4258

CVE-2025-40092

  • CNNVD Published: 2025-10-30

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ncm_bind函数中未正确清理notify_req请求,可能导致空指针取消引用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the incorrect clean-up of the notify req request in the ncm bind function, which may lead to an empty pointer cancellation of the reference.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-30

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/ed78f4d6079d872432b1ed54f155ef61965d3137 https://git.kernel.org/stable/c/1cde4516295a030cb8ab4c93114ca3b6c3c6a1e2 https://git.kernel.org/stable/c/75a5b8d4ddd4eb6b16cb0b475d14ff4ae64295ef https://git.kernel.org/stable/c/f37de8dec6a4c379b4b8486003a1de00ff8cff3b https://git.kernel.org/stable/c/d3fe7143928d8dfa2ec7bac9f906b48bc75b98ee https://git.kernel.org/stable/c/185193a4714aa9c78437a7a1858fbe5771f0f45c https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-30-10-2025-48621

Patch

https://www.kernel.org/

Share on: