CNNVD-202512-838 Information

CNNVD ID

CNNVD-202512-838

CVE-2025-40301

  • CNNVD Published: 2025-12-08

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未验证skb长度,可能导致使用未初始化内存。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel had a security loophole, which originated in unverified skb length, which could lead to the use of uninitialized memory.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-12-08

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/5c5f1f64681cc889d9b13e4a61285e9e029d6ab5 https://git.kernel.org/stable/c/779f83a91d4f1bf5ddfeaf528420cbb6dbf03fa8 https://git.kernel.org/stable/c/fea895de78d3bb2f0c09db9f10b18f8121b15759 https://git.kernel.org/stable/c/1a0ddaaf97405dbd11d4cb5a961a3f82400e8a50 https://git.kernel.org/stable/c/cf2c2acec1cf456c3d11c11a7589e886a0f963a9 https://access.redhat.com/security/cve/cve-2025-40301 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40301 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-08-12-2025-49010

Patch

https://www.kernel.org/

Share on: