CNNVD-202511-1346 Information

CNNVD ID

CNNVD-202511-1346

CVE-2025-40186

  • CNNVD Published: 2025-11-12

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于tcp_conn_request中错误调用reqsk_fastopen_remove,可能导致引用计数下溢和双重释放。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which originates from an error in the tcp conn request calling reqsk fastopen remove, which could lead to a spill in the quoted count and double release.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-12

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/2e7cbbbe3d61c63606994b7ff73c72537afe2e1c https://git.kernel.org/stable/c/422c1c173c39bbbae1e0eaaf8aefe40b2596233b https://git.kernel.org/stable/c/643a94b0cf767325e953591c212be2eb826b9d7f https://git.kernel.org/stable/c/64dc47a13aa3d9daf7cec29b44dca8e22a6aea15 https://git.kernel.org/stable/c/c11ace909e873118295e9eb22dc8c58b0b50eb32 https://git.kernel.org/stable/c/e359b742eac1eac75cff4e38ee2e8cea492acd9b https://git.kernel.org/stable/c/eb85ad5f23268d64b037bfb545cbcba3752f90c7 https://git.kernel.org/stable/c/ff6a8883f96a5bc74241ce5b3d431a6dcfa2124d

Patch

https://www.kernel.org/

Share on: