CNNVD-202511-1446 Information

CNNVD ID

CNNVD-202511-1446

CVE-2025-40159

  • CNNVD Published: 2025-11-12

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于xsk未充分验证用户空间提供的xdp_desc,可能导致整数溢出。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which originates from an Xsk that does not adequately validate the xdp desc provided by the user space, which could result in an integer spill.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-12

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/1463cd066f32efd56ddfd3ac4e3524200f362980 https://git.kernel.org/stable/c/5b5fffa7c81e55d8c8edf05ad40d811ec7047e21 https://git.kernel.org/stable/c/07ca98f906a403637fc5e513a872a50ef1247f3b https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-12-11-2025-48734

Patch

https://www.kernel.org/

Share on: