CNNVD-202511-1447 Information

CNNVD ID

CNNVD-202511-1447

CVE-2025-40157

  • CNNVD Published: 2025-11-12

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于i10nm_edac驱动未跳过禁用内存控制器的DIMM枚举,可能导致越界访问。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole that originates from i10nm edac driving the DIM count without skipping the disabled memory controller, which could lead to cross-border access.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-12

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/2e6fe1bbefd9c059c3787d1c620fe67343a94dff https://git.kernel.org/stable/c/8100b6c0f9089d5b156642b81270ce27fff17490 https://git.kernel.org/stable/c/1652f14cf3bef5a4baa232de954fc22bdcaa78fe https://git.kernel.org/stable/c/c20da24272f1ac79e9f9083bba577d049cd02bbb https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-12-11-2025-48734

Patch

https://www.kernel.org/

Share on: