CNNVD-202510-678 Information

CNNVD ID

CNNVD-202510-678

CVE-2025-39946

  • CNNVD Published: 2025-10-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于TLS流未在发现无效记录头时及时中止,可能导致缓冲区溢出。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the fact that the TLS stream did not stop in time for the discovery of the invalid header, which could lead to spills in the buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/61ca2da5fb8f433ce8bbd1657c84a86272133e6b https://git.kernel.org/stable/c/b36462146d86b1f22e594fe4dae611dffacfb203 https://git.kernel.org/stable/c/4cefe5be73886f383639fe0850bb72d5b568a7b9 https://git.kernel.org/stable/c/0aeb54ac4cd5cf8f60131b4d9ec0b6dc9c27b20d https://git.kernel.org/stable/c/208640e6225cc929a05adbf79d1df558add3e231 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-06-10-2025-48395

Patch

https://www.kernel.org/

Share on: