CNNVD-202510-681 Information

CNNVD ID

CNNVD-202510-681

CVE-2025-39943

  • CNNVD Published: 2025-10-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未验证smb_direct_data_transfer结构体的data_offset和data_length字段,可能导致越界问题。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux kelnel has a security loophole, which stems from the non-validation of the data offset and data length fields of the smb direct data transfer structure, which could lead to cross-border problems.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/5282491fc49d5614ac6ddcd012e5743eecb6a67c https://git.kernel.org/stable/c/eb0378dde086363046ed3d7db7f126fc3f76fd70 https://git.kernel.org/stable/c/8be498fcbd5b07272f560b45981d4b9e5a2ad885 https://git.kernel.org/stable/c/bdaab5c6538e250a9654127e688ecbbeb6f771d5 https://git.kernel.org/stable/c/529b121b00a6ee3c88fb3c01b443b2b81f686d48 https://git.kernel.org/stable/c/773fddf976d282ef059c36c575ddb81567acd6bc https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-06-10-2025-48395

Patch

https://www.kernel.org/

Share on: