Логотип exploitDog
bind:"BDU:2025-08999" OR bind:"CVE-2025-38212"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2025-08999" OR bind:"CVE-2025-38212"

Количество 75

Количество 75

fstec логотип

BDU:2025-08999

6 месяцев назад

Уязвимость функции idr_for_each() ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2025-38212

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

EPSS: Низкий
redhat логотип

CVE-2025-38212

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2025-38212

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

EPSS: Низкий
msrc логотип

CVE-2025-38212

3 месяца назад

ipc: fix to protect IPCS lookups using RCU

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2025-38212

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: i ...

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03221-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP7)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03214-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP6)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03183-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP4)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03149-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 59 for SLE 15 SP3)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03146-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 70 for SLE 12 SP5)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03110-1

около 2 месяцев назад

Security update for the Linux Kernel RT (Live Patch 2 for SLE 15 SP7)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03105-1

около 2 месяцев назад

Security update for the Linux Kernel RT (Live Patch 13 for SLE 15 SP6)

EPSS: Низкий
github логотип

GHSA-6c9x-j9r2-vpw8

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03188-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 28 for SLE 15 SP5)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03143-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 68 for SLE 12 SP5)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03138-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 62 for SLE 12 SP5)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03222-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP7)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03213-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP6)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03182-1

около 2 месяцев назад

Security update for the Linux Kernel (Live Patch 41 for SLE 15 SP4)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-08999

Уязвимость функции idr_for_each() ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2025-38212

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-38212

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

CVSS3: 7
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-38212

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

0%
Низкий
4 месяца назад
msrc логотип
CVE-2025-38212

ipc: fix to protect IPCS lookups using RCU

CVSS3: 7.8
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-38212

In the Linux kernel, the following vulnerability has been resolved: i ...

0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:03221-1

Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP7)

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03214-1

Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP6)

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03183-1

Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP4)

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03149-1

Security update for the Linux Kernel (Live Patch 59 for SLE 15 SP3)

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03146-1

Security update for the Linux Kernel (Live Patch 70 for SLE 12 SP5)

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03110-1

Security update for the Linux Kernel RT (Live Patch 2 for SLE 15 SP7)

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03105-1

Security update for the Linux Kernel RT (Live Patch 13 for SLE 15 SP6)

0%
Низкий
около 2 месяцев назад
github логотип
GHSA-6c9x-j9r2-vpw8

In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, [0] [0]: https://lore.kernel.org/all/67af13f8.050a0220.21dd3.0038.GAE@google.com/ idr_for_each() is protected by rwsem, but this is not enough. If it is not protected by RCU read-critical region, when idr_for_each() calls radix_tree_node_free() through call_rcu() to free the radix_tree_node structure, the node will be freed immediately, and when reading the next node in radix_tree_for_each_slot(), the already freed memory may be read. Therefore, we need to add code to make sure that idr_for_each() is protected within the RCU read-critical region when we call it in shm_destroy_orphaned().

0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:03188-1

Security update for the Linux Kernel (Live Patch 28 for SLE 15 SP5)

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03143-1

Security update for the Linux Kernel (Live Patch 68 for SLE 12 SP5)

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03138-1

Security update for the Linux Kernel (Live Patch 62 for SLE 12 SP5)

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03222-1

Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP7)

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03213-1

Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP6)

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03182-1

Security update for the Linux Kernel (Live Patch 41 for SLE 15 SP4)

около 2 месяцев назад

Уязвимостей на страницу