CNNVD-202512-570 Information

CNNVD ID

CNNVD-202512-570

CVE-2025-40217

  • CNNVD Published: 2025-12-04

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未严格验证可扩展ioctl,可能导致权限问题。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security gap in Linux Kernel, which stems from a lack of rigorous verification of expansive octl, which may lead to problems of access.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-04

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/bf0fbf5e8b0aff8a4a0fb35e32b10083baa83c04 https://git.kernel.org/stable/c/3c17001b21b9f168c957ced9384abe969019b609 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40217 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-04-12-2025-48989

Patch

https://www.kernel.org/

Share on: