CNNVD-202511-1434 Information

CNNVD ID

CNNVD-202511-1434

CVE-2025-40170

  • CNNVD Published: 2025-11-12

Description (Chinese)

Linux kernel是美国等都是美国(Linux)基金会的产品。Linux kernel是开源操作系统Linux所使用的内核。Nate Long p4等都是(Nate Long)个人开发者的产品。p4是一个用于处理 Perforce 的小型实用程序库。Symfony ux等都是(Symfony)开源的产品。ux是一个Symfony的JavaScript生态系统。 Linux kernel存在安全漏洞,该漏洞源于网络子系统未正确使用RCU保护dst->dev访问,可能导致内存损坏。

Description (English)

Linux Kernel is a product of the United States and so on. Linux Kernel is the kernel used in the open source operating system Linux. Nate Long P4 and others are products of the individual (Nate Long) developers. P4 is a small practical library used to process Perforce. Symfony ux and others are open-source products. ux is a JavaScript ecosystem of Symfony. There is a security gap in Linux Kernel, which stems from the incorrect use of RCU-protected dst->dev access by the network subsystem, which may result in memory damage.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-12

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/99a2ace61b211b0be861b07fbaa062fca4b58879 https://git.kernel.org/stable/c/a805729c0091073d8f0415cfa96c7acd1bc17a48 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-12-11-2025-48734

Patch

https://www.kernel.org/

Share on: