CNNVD-202512-769 Information

CNNVD ID

CNNVD-202512-769

CVE-2025-40269

  • CNNVD Published: 2025-12-06

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ALSA usb-audio未正确限制PCM传输缓冲区大小,可能导致缓冲区溢出。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the fact that ALSA usb-Audio did not correctly limit the size of the PCM transmission buffer zone, which could lead to spills.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-06

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/217d47255a2ec8b246f2725f5db9ac3f1d4109d7 https://git.kernel.org/stable/c/d2c04f20ccc6c0d219e6d3038bab45bc66a178ad https://git.kernel.org/stable/c/6a5da3fa80affc948923f20a4e086177f505e86e https://git.kernel.org/stable/c/ece3b981bb6620e47fac826a2156c090b1a936a0 https://git.kernel.org/stable/c/ef592bf2232a2daa9fffa8881881fc9957ea56e9 https://git.kernel.org/stable/c/98e9d5e33bda8db875cc1a4fe99c192658e45ab6 https://git.kernel.org/stable/c/05a1fc5efdd8560f34a3af39c9cf1e1526cc3ddf https://access.redhat.com/security/cve/cve-2025-40269 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40269 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-08-12-2025-49010

Patch

https://www.kernel.org/

Share on: