目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2025-38047— Linux kernel 安全漏洞

AI 预测 5.3 利用难度: 中等 EPSS 0.16% · P5

可能的 ATT&CK 技术 1AI

T1059.004 · Unix Shell

影响版本矩阵 8

厂商产品版本范围状态
LinuxLinuxff45746fbf005f96e42bea466698e3fdbf926013< c42f740a07eea4807e98d2d8febc549c957a7b49affected
ff45746fbf005f96e42bea466698e3fdbf926013< e7090fe75a2826363c71ad1fb4e95e58141478dfaffected
ff45746fbf005f96e42bea466698e3fdbf926013< e5f1e8af9c9e151ecd665f6d2e36fb25fec3b110affected
6.9affected
< 6.9unaffected
6.12.31≤ 6.12.*unaffected
6.14.9≤ 6.14.*unaffected
6.15≤ *unaffected
获取后续新漏洞提醒登录后订阅

一、 漏洞 CVE-2025-38047 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
x86/fred: Fix system hang during S4 resume with FRED enabled
来源: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: x86/fred: Fix system hang during S4 resume with FRED enabled Upon a wakeup from S4, the restore kernel starts and initializes the FRED MSRs as needed from its perspective. It then loads a hibernation image, including the image kernel, and attempts to load image pages directly into their original page frames used before hibernation unless those frames are currently in use. Once all pages are moved to their original locations, it jumps to a "trampoline" page in the image kernel. At this point, the image kernel takes control, but the FRED MSRs still contain values set by the restore kernel, which may differ from those set by the image kernel before hibernation. Therefore, the image kernel must ensure the FRED MSRs have the same values as before hibernation. Since these values depend only on the location of the kernel text and data, they can be recomputed from scratch.
来源: CVE Program / CVE List V5
CVSS Information
N/A
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于x86 FRED在S4恢复期间未正确重置MSR值。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商产品影响版本CPE订阅
LinuxLinux ff45746fbf005f96e42bea466698e3fdbf926013 ~ c42f740a07eea4807e98d2d8febc549c957a7b49 -
LinuxLinux 6.9 -

二、漏洞 CVE-2025-38047 的公开POC

#POC 描述源链接神龙链接
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2025-38047 的情报信息

登录查看更多情报信息。

同批安全公告 · Linux · 2025-06-18 · 共 362 条

CVE-2025-380759.8 CRITICALLinux kernel 安全漏洞
CVE-2022-500988.8 HIGHLinux kernel 安全漏洞
CVE-2025-380528.8 HIGHLinux kernel 安全漏洞
CVE-2022-499348.8 HIGHLinux kernel 安全漏洞
CVE-2022-501648.8 HIGHLinux kernel 安全漏洞
CVE-2025-380748.8 HIGHLinux kernel 安全漏洞
CVE-2025-380168.8 HIGHLinux kernel 安全漏洞
CVE-2022-499748.8 HIGHLinux kernel 安全漏洞
CVE-2022-499688.0 HIGHLinux kernel 安全漏洞
CVE-2022-500357.8 HIGHLinux kernel 安全漏洞
CVE-2022-499447.8 HIGHLinux kernel 安全漏洞
CVE-2022-500287.8 HIGHLinux kernel 安全漏洞
CVE-2022-499397.8 HIGHLinux kernel 安全漏洞
CVE-2022-501827.8 HIGHLinux kernel 安全漏洞
CVE-2022-499357.8 HIGHLinux kernel 安全漏洞
CVE-2025-380827.8 HIGHLinux kernel 安全漏洞
CVE-2025-380807.8 HIGHLinux kernel 安全漏洞
CVE-2025-380607.8 HIGHLinux kernel 安全漏洞
CVE-2022-501017.8 HIGHLinux kernel 安全漏洞
CVE-2025-380627.8 HIGHLinux kernel 安全漏洞

显示前 20 条,共 362 条。 查看全部 &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-38047

暂无评论


发表评论