目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2025-68313— Linux kernel 安全漏洞

CVSS 7.1 · High EPSS 0.14% · P4

Possible ATT&CK Techniques 1AI

T1548.001 · Setuid and Setgid

Affected Version Matrix 8

ベンダープロダクトVersion Rangeステータス
LinuxLinux3e4147f33f8b647775357bae0248b9a2aeebfcd2< e980de2ff109dacb6d9d3a77f01b27c467115ecbaffected
3e4147f33f8b647775357bae0248b9a2aeebfcd2< 36ff93e66d0efc46e39fab536a9feec968daa766affected
3e4147f33f8b647775357bae0248b9a2aeebfcd2< 607b9fb2ce248cc5b633c5949e0153838992c152affected
6.8affected
< 6.8unaffected
6.12.58≤ 6.12.*unaffected
6.17.8≤ 6.17.*unaffected
6.18≤ *unaffected
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2025-68313の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
x86/CPU/AMD: Add RDSEED fix for Zen5
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Add RDSEED fix for Zen5 There's an issue with RDSEED's 16-bit and 32-bit register output variants on Zen5 which return a random value of 0 "at a rate inconsistent with randomness while incorrectly signaling success (CF=1)". Search the web for AMD-SB-7055 for more detail. Add a fix glue which checks microcode revisions. [ bp: Add microcode revisions checking, rewrite. ]
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于RDSEED指令实现问题,可能导致随机数生成失败。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux 3e4147f33f8b647775357bae0248b9a2aeebfcd2 ~ e980de2ff109dacb6d9d3a77f01b27c467115ecb -
LinuxLinux 6.8 -

II. CVE-2025-68313の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2025-68313のインテリジェンス情報

登录查看更多情报信息。

CVE-2025-68313 其他参考 (3)

Same Patch Batch · Linux · 2025-12-16 · 157 CVEs total

CVE-2025-681929.8 CRITICALnet: usb: qmi_wwan: initialize MAC header offset in qmimux_rx_fixup
CVE-2025-682639.8 CRITICALksmbd: ipc: fix use-after-free in ipc_msg_send_request
CVE-2025-683019.8 CRITICALnet: atlantic: fix fragment overflow handling in RX path
CVE-2025-403509.8 CRITICALnet/mlx5e: RX, Fix generating skb from non-linear xdp_buff for striding RQ
CVE-2025-682849.8 CRITICALlibceph: prevent potential out-of-bounds writes in handle_auth_session_key()
CVE-2025-682859.8 CRITICALlibceph: fix potential use-after-free in have_mon_and_osd_map()
CVE-2025-683159.8 CRITICALf2fs: fix to detect potential corrupted nid in free_nid_list
CVE-2025-682268.8 HIGHsmb: client: fix incomplete backport in cfids_invalidation_worker()
CVE-2025-683148.8 HIGHdrm/msm: make sure last_fence is always updated
CVE-2025-683048.8 HIGHBluetooth: hci_core: lookup hci_conn on RX path on protocol side
CVE-2025-682558.8 HIGHstaging: rtl8723bs: fix stack buffer overflow in OnAssocReq IE parsing
CVE-2025-682568.8 HIGHstaging: rtl8723bs: fix out-of-bounds read in rtw_get_ie() parser
CVE-2025-403628.8 HIGHceph: fix multifs mds auth caps issue
CVE-2025-682508.2 HIGHhung_task: fix warnings caused by unaligned lock pointers
CVE-2025-681797.8 HIGHs390: Disable ARCH_WANT_OPTIMIZE_HUGETLB_VMEMMAP
CVE-2025-681717.8 HIGHx86/fpu: Ensure XFD state on signal delivery
CVE-2025-681757.8 HIGHmedia: nxp: imx8-isi: Fix streaming cleanup on release
CVE-2025-682347.8 HIGHio_uring/cmd_net: fix wrong argument types for skb_queue_splice()
CVE-2025-681897.8 HIGHdrm/msm: Fix GEM free for imported dma-bufs
CVE-2025-681817.8 HIGHdrm/radeon: Remove calls to drm_put_dev()

Showing 20 of 157 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2025-68313へのコメント

まだコメントはありません


コメントを残す