CNNVD-202512-535 Information

CNNVD ID

CNNVD-202512-535

CVE-2025-40242

  • CNNVD Published: 2025-12-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于gdlm_put_lock中释放glock时存在竞争条件,可能导致释放后重用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the competitive conditions in gdl put lock for the release of glock, which may lead to its reuse.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/64c61b4ac645222fa7b724cef616c1f862a72a40 https://git.kernel.org/stable/c/28c4d9bc0708956c1a736a9e49fee71b65deee81 https://git.kernel.org/stable/c/279bde3bbb0ac0bad5c729dfa85983d75a5d7641 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-04-12-2025-48989 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40242

Patch

https://www.kernel.org/

Share on: