CNNVD-202511-1437 Information

CNNVD ID

CNNVD-202511-1437

CVE-2025-40168

  • CNNVD Published: 2025-11-12

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于smc_clc_prfx_match函数中未正确使用RCU保护,可能导致UAF攻击。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the incorrect use of RCU protection in the smc clc prfx march function, which could lead to UAF attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-12

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/235f81045c008169cc4e1955b4a64e118eebe61b https://git.kernel.org/stable/c/d26e80f7fb62d77757b67a1b94e4ac756bc9c658 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-12-11-2025-48734

Patch

https://www.kernel.org/

Share on: