CNNVD-202512-533 Information

CNNVD ID

CNNVD-202512-533

CVE-2025-40245

  • CNNVD Published: 2025-12-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于nios2未正确设置memblock.current_limit,可能导致内存映射越界。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from Nios2 ’ s incorrect setup of memblock.current limit, which could lead to memory mapping across borders.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/90f5f715550e07cd6a51f80fc3f062d832c8c997 https://git.kernel.org/stable/c/8912814f14e298b83df072fecc1f7ed1b63b1b2c https://git.kernel.org/stable/c/a20b83cf45be2057f3d073506779e52c7fa17f94 https://git.kernel.org/stable/c/b1ec9faef7e36269ca3ec890972a78effbaeb975 https://git.kernel.org/stable/c/25f09699edd360b534ccae16bc276c3b52c471f3 https://git.kernel.org/stable/c/5c3e38a367822f036227dd52bac82dc4a05157e2 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40245 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-04-12-2025-48989

Patch

https://www.kernel.org/

Share on: