Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未清除conn->sk指针,可能导致释放后重用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | ccf74f2390d60a2f9a75ef496d2564abb478f46a< eba6d787ec117a5d2c60f9644e0a39c18542b6be |
affected |
ccf74f2390d60a2f9a75ef496d2564abb478f46a< 5319145a07d8bf5b0782b25cb3115825689d42bb |
affected | ||
ccf74f2390d60a2f9a75ef496d2564abb478f46a< 80689777919f02328eb873769de4647c9dd3e371 |
affected | ||
ccf74f2390d60a2f9a75ef496d2564abb478f46a< c92ad1a155ccfa38b87bd1d998287e1c0a24248d |
affected | ||
ccf74f2390d60a2f9a75ef496d2564abb478f46a< 9950f095d6c875dbe0c9ebfcf972ec88fdf26fc8 |
affected | ||
6.0 |
affected | ||
< 6.0 |
unaffected | ||
6.1.156≤ 6.1.* |
unaffected | ||
| … +4 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-40176 | 9.8 CRITICAL | tls: wait for pending async decryptions if tls_strp_msg_hold fails |
| CVE-2025-40140 | 8.8 HIGH | net: usb: Remove disruptive netif_wake_queue in rtl8150_set_multicast |
| CVE-2025-40135 | 8.1 HIGH | ipv6: use RCU in ip6_xmit() |
| CVE-2025-40158 | 8.1 HIGH | ipv6: use RCU in ip6_output() |
| CVE-2025-40204 | 8.1 HIGH | sctp: Fix MAC comparison to be constant-time |
| CVE-2025-40186 | 8.1 HIGH | tcp: Don't call reqsk_fastopen_remove() in tcp_conn_request(). |
| CVE-2025-40133 | 8.1 HIGH | mptcp: Use __sk_dst_get() and dst_dev_rcu() in mptcp_active_enable(). |
| CVE-2025-40168 | 8.1 HIGH | smc: Use __sk_dst_get() and dst_dev_rcu() in smc_clc_prfx_match(). |
| CVE-2025-40149 | 7.8 HIGH | tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). |
| CVE-2025-40190 | 7.8 HIGH | ext4: guard against EA inode refcount underflow in xattr update |
| CVE-2025-40139 | 7.8 HIGH | smc: Use __sk_dst_get() and dst_dev_rcu() in in smc_clc_prfx_set(). |
| CVE-2025-40151 | 7.8 HIGH | LoongArch: BPF: No support of struct argument in trampoline programs |
| CVE-2025-40182 | 7.8 HIGH | crypto: skcipher - Fix reqsize handling |
| CVE-2025-40173 | 7.8 HIGH | net/ip6_tunnel: Prevent perpetual tunnel growth |
| CVE-2025-40165 | 7.8 HIGH | media: nxp: imx8-isi: m2m: Fix streaming cleanup on release |
| CVE-2025-40174 | 7.8 HIGH | x86/mm: Fix SMP ordering in switch_mm_irqs_off() |
| CVE-2025-40172 | 7.8 HIGH | accel/qaic: Treat remaining == 0 as error in find_and_map_user_pages() |
| CVE-2025-40170 | 7.8 HIGH | net: use dst_dev_rcu() in sk_setup_caps() |
| CVE-2025-40169 | 7.8 HIGH | bpf: Reject negative offsets for ALU ops |
| CVE-2025-40167 | 7.8 HIGH | ext4: detect invalid INLINE_DATA + EXTENTS flag combination |
Showing top 20 of 96 CVEs. View all on vendor page → →
No comments yet