CNNVD-202512-750 Information

CNNVD ID

CNNVD-202512-750

CVE-2025-40288

  • CNNVD Published: 2025-12-06

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未初始化VRAM管理器中的bdev指针,可能导致空指针取消引用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel had a security loophole, which originated from the bdev pointer in the uninitialized VRAM manager, which could lead to the removal of the empty pointer.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-06

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/070bdce18fb12a49eb9c421e57df17d2ad29bf5f https://git.kernel.org/stable/c/e70113b741ba253886cd71dbadfe3ea444bb2f5c https://git.kernel.org/stable/c/43aa61c18a3a45042b098b7a1186ffb29364002c https://git.kernel.org/stable/c/1243e396148a65bb6c42a2b70fe43e50c16c494f https://git.kernel.org/stable/c/883f309add55060233bf11c1ea6947140372920f https://access.redhat.com/security/cve/cve-2025-40288 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40288 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-08-12-2025-49010

Patch

https://www.kernel.org/

Share on: