CNNVD-202511-1457 Information

CNNVD ID

CNNVD-202511-1457

CVE-2025-40148

  • CNNVD Published: 2025-11-12

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于dc_stream_set_cursor_attributes函数未检查stream指针及其嵌套成员,可能导致空指针取消引用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the fact that the dc stream set cut cursor attributes function does not check the sstream pointer and its embedded members, which may lead to an empty pointer cancellation.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-12

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/bf4e4b97d0fdc66f04fc19d807e24dd8421b8f11 https://git.kernel.org/stable/c/01e793e7d4d402c473f1a61ca5824f086693be65 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-12-11-2025-48734

Patch

https://www.kernel.org/

Share on: