CNNVD-202601-2230 Information

CNNVD ID

CNNVD-202601-2230

CVE-2025-68806

  • CNNVD Published: 2026-01-13

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于验证扩展属性缓冲区时未计入空终止符大小,可能导致缓冲区验证错误。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which stems from the fact that empty terminations are not taken into account when verifying an extended buffer zone, which may lead to an error in the verification of the buffer zone.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2026-01-13

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/6dc8cf6e7998ef7aeb9383a4c2904ea5d22fa2e4 https://git.kernel.org/stable/c/95d7a890e4b03e198836d49d699408fd1867cb55 https://git.kernel.org/stable/c/a28a375a5439eb474e9f284509a407efb479c925 https://git.kernel.org/stable/c/cae52c592a07e1d3fa3338a5f064a374a5f26750 https://git.kernel.org/stable/c/d26af6d14da43ab92d07bc60437c62901dc522e6

Patch

https://www.kernel.org/

Share on: