CNNVD-202512-752 Information

CNNVD ID

CNNVD-202512-752

CVE-2025-40285

  • CNNVD Published: 2025-12-06

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于smb server未正确释放ksmbd_session引用,可能导致内存泄漏。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the incorrect release of ksmbd session quoted by smb server, which could lead to a leak in the memory.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-06

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/e671f9bb97805771380c98de944e2ceab6949188 https://git.kernel.org/stable/c/379510a815cb2e64eb0a379cb62295d6ade65df0 https://git.kernel.org/stable/c/d37b2c81c83d6c0d5ca582f4fe73c672983f9e0d https://git.kernel.org/stable/c/6fc935f798d44a8eb8a5e6659198399fbf57b981 https://git.kernel.org/stable/c/dcc51dfe6ff26b52cac106865a172ac982d78401 https://access.redhat.com/security/cve/cve-2025-40285 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40285 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-08-12-2025-49010

Patch

https://www.kernel.org/

Share on: