CNNVD-202512-1063 Information
CNNVD ID
CNNVD-202512-1063
Related CVE
- CNNVD Published: 2025-12-08
Description (Chinese)
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于xattr_key函数存在缓冲区溢出,可能导致内存损坏。
Description (English)
Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the presence of a buffer zone spill in the xattr key function, which may cause memory damage.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
Linux
Published
2025-12-08
Last Modified
2026-02-24
References
https://git.kernel.org/stable/c/c2ca015ac109fd743fdde27933d59dc5ad46658e https://git.kernel.org/stable/c/bc812574de633cf9a9ad6974490e45f6a4bb5126 https://git.kernel.org/stable/c/c6564ff6b53c9a8dc786b6f1c51ae7688273f931 https://git.kernel.org/stable/c/e09a096104fc65859422817fb2211f35855983fe https://git.kernel.org/stable/c/ef892d2bf4f3fa2c8de1677dd307e678bdd3d865 https://git.kernel.org/stable/c/025e880759c279ec64d0f754fe65bf45961da864 https://git.kernel.org/stable/c/9127d1e90c90e5960c8bc72a4ce2c209691a7021 https://git.kernel.org/stable/c/15afebb9597449c444801d1ff0b8d8b311f950ab https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40306 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-08-12-2025-49010