CNNVD-202512-757 Information

CNNVD ID

CNNVD-202512-757

CVE-2025-40279

  • CNNVD Published: 2025-12-06

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于net sched act_connmark未初始化结构体,可能导致内核信息泄露。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the non-initiation of the structure of Net sched act connmark, which could lead to the disclosure of kernel information.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-06

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/218b67c8c8246d47a2a7910eae80abe4861fe2b7 https://git.kernel.org/stable/c/73cc56c608c209d3d666cc571293b090a471da70 https://git.kernel.org/stable/c/25837889ec062f2b7618142cd80253dff3da5343 https://git.kernel.org/stable/c/31e4aa93e2e5b5647fc235b0f6ee329646878f9e https://git.kernel.org/stable/c/62b656e43eaeae445a39cd8021a4f47065af4389 https://git.kernel.org/stable/c/51cb05d4fd632596816ba44e882e84db9fb28a7e https://access.redhat.com/security/cve/cve-2025-40279 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40279 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-08-12-2025-49010

Patch

https://www.kernel.org/

Share on: