CNNVD-202511-2592 Information

CNNVD ID

CNNVD-202511-2592

CVE-2025-40213

  • CNNVD Published: 2025-11-24

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于Bluetooth MGMT中set_mesh_sync和set_mesh_complete函数存在栈溢出和双重删除,可能导致崩溃。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which originates from the set mesh sync and set mesh complete functions of Bluetooth MGMT, which have spills and double deletions that could lead to collapse.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-11-24

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/1c9aca1787e8395a2c59fef20e914467958969c5 https://git.kernel.org/stable/c/5c19daa93d9af29f1f46251b47e1ea66bcc8d679 https://git.kernel.org/stable/c/e8785404de06a69d89dcdd1e9a0b6ea42dc6d327 https://access.redhat.com/security/cve/cve-2025-40213 https://vigilance.fr/vulnerability/Linux-kernel-two-vulnerabilities-dated-25-11-2025-48860

Patch

https://www.kernel.org/

Share on: