目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2025-39764— Linux kernel 安全漏洞

AI Predicted 5.3 Difficulty: Theoretical EPSS 0.15% · P5

Affected Version Matrix 16

ベンダープロダクトVersion Rangeステータス
LinuxLinuxcf6994c2b9812a9f02b99e89df411ffc5db9c779< b05500444b8eb97644efdd180839a04a706be97caffected
cf6994c2b9812a9f02b99e89df411ffc5db9c779< bada48ad5b0590e318d0f79636ff62a2ef9f4955affected
cf6994c2b9812a9f02b99e89df411ffc5db9c779< 64b7684042246e3238464c66894e30ba30c7e851affected
cf6994c2b9812a9f02b99e89df411ffc5db9c779< 9e5021a906532ca16e2aac69c0607711e1c70b1faffected
cf6994c2b9812a9f02b99e89df411ffc5db9c779< 078d33c95bf534d37aa04269d1ae6158e20082d5affected
cf6994c2b9812a9f02b99e89df411ffc5db9c779< a4d634ded4d3d400f115d84f654f316f249531c9affected
cf6994c2b9812a9f02b99e89df411ffc5db9c779< 1492e3dcb2be3aa46d1963da96aa9593e4e4db5aaffected
2.6.23affected
… +8 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2025-39764の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
netfilter: ctnetlink: remove refcounting in expectation dumpers
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: remove refcounting in expectation dumpers Same pattern as previous patch: do not keep the expectation object alive via refcount, only store a cookie value and then use that as the skip hint for dump resumption. AFAICS this has the same issue as the one resolved in the conntrack dumper, when we do if (!refcount_inc_not_zero(&exp->use)) to increment the refcount, there is a chance that exp == last, which causes a double-increment of the refcount and subsequent memory leak.
ソース: CVE Program / CVE List V5
CVSS情報
N/A
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ctnetlink中的期望转储器存在引用计数问题,可能导致内存泄漏。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux cf6994c2b9812a9f02b99e89df411ffc5db9c779 ~ b05500444b8eb97644efdd180839a04a706be97c -
LinuxLinux 2.6.23 -

II. CVE-2025-39764の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2025-39764のインテリジェンス情報

登录查看更多情报信息。

CVE-2025-39764 补丁与修复 (3)

Same Patch Batch · Linux · 2025-09-11 · 54 CVEs total

CVE-2025-39774iio: adc: rzg2l_adc: Set driver data before enabling runtime PM
CVE-2025-39791dm: dm-crypt: Do not partially accept write BIOs with zoned targets
CVE-2025-39785drm/hisilicon/hibmc: fix irq_request()'s irq name variable is local
CVE-2025-39788scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXUS_TYPE
CVE-2025-39787soc: qcom: mdt_loader: Ensure we don't read past the ELF header
CVE-2025-39786iio: adc: ad7173: fix channels index for syscalib_mode
CVE-2025-39789crypto: x86/aegis - Add missing error checks
CVE-2025-39777crypto: acomp - Fix CFI failure due to type punning
CVE-2025-39776mm/debug_vm_pgtable: clear page table entries at destroy_args()
CVE-2025-39775mm/mremap: fix WARN with uffd that has remap events disabled
CVE-2025-39779btrfs: subpage: keep TOWRITE tag until folio is cleaned
CVE-2025-39773net: bridge: fix soft lockup in br_multicast_query_expired()
CVE-2025-39772drm/hisilicon/hibmc: fix the hibmc loaded failed bug
CVE-2025-39771regulator: pca9450: Use devm_register_sys_off_handler
CVE-2025-39770net: gso: Forbid IPv6 TSO with extensions on devices with only IPV6_CSUM
CVE-2025-39769bnxt_en: Fix lockdep warning during rmmod
CVE-2025-39768net/mlx5: HWS, fix complex rules rehash error flow
CVE-2025-39766net/sched: Make cake_enqueue return NET_XMIT_CN when past buffer_limit
CVE-2025-39767LoongArch: Optimize module load time by optimizing PLT/GOT counting
CVE-2025-39765ALSA: timer: fix ida_free call while not allocated

Showing 20 of 54 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2025-39764へのコメント

まだコメントはありません


コメントを残す