VDB
BDU%3A2025-00922
BDU%3A2025-00922
PUBLISHED
CVSS 6.199999809265137 MEDIUM
Уязвимость функции br_dev_xmit() в модуле net/bridge/br_device.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации
Risk Scores
CVSS 2.0
6.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», АО «ИВК», Canonical Ltd., АО "НППКТ", ООО «Открытая мобильная платформа», АО «НТЦ ИТ РОСА» | OpenSUSE Leap, Red Hat Enterprise Linux, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), Альт 8 СП (запись в едином реестре российских программ №4305), Ubuntu, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Real Time, АЛЬТ СП 10, SUSE Linux Enterprise Workstation Extension, openSUSE Leap Micro, SUSE Real Time Module, Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), ОС Аврора (запись в едином реестре российских программ №1543), ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308) |
Timeline
- Jan 31, 2025 CVE Published
- Aug 19, 2025 CVE Updated
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Security Advisory
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Security Advisory
- Mar 21, 2026 Security Advisory
References
- https://git.kernel.org/stable/c/1abb371147905ba250b4cc0230c4be7e90bea4d5 url
- https://git.kernel.org/stable/c/5b5d669f569807c7ab07546e73c0741845a2547a url
- https://git.kernel.org/stable/c/3e01fc3c66e65d9afe98f1489047a1b2dd8741ca url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.33 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.172 url
- https://cve.basealt.ru/ url
- https://security-tracker.debian.org/tracker/CVE-2024-38538 url
- https://access.redhat.com/security/cve/CVE-2024-38538 url
- https://ubuntu.com/security/notices/USN-7121-1 url
- https://git.kernel.org/stable/c/28126b83f86ab9cc7936029c2dff845d3dcedba2 advisory
- https://git.kernel.org/stable/c/b2b7c43cd32080221bb233741bd6011983fe7c11 advisory
- https://ubuntu.com/security/notices/USN-6952-1 advisory
- https://altsp.su/obnovleniya-bezopasnosti/ advisory
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-0319SE17 advisory
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0411SE18 advisory
- https://git.kernel.org/stable/c/82090f94c723dab724b1c32db406091d40448a17 url
- https://www.cve.org/CVERecord?id=CVE-2024-38538 url
- https://git.kernel.org/linus/8bd67ebb50c0145fd2ca8681ab65eb7e8cde1afc url
- https://lore.kernel.org/linux-cve-announce/2024061947-CVE-2024-38538-e28a@gregkh/ url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.93 url
…and 20 more