VDB
BDU%3A2025-01571
BDU%3A2025-01571
PUBLISHED
CVSS 5 MEDIUM
Уязвимость функции cachefiles_ondemand_clean_object() (fs/cachefiles/ondemand.c) ядра операционной системы Linux, позволяющая нарушителю повысить свои привилегии.
Risk Scores
CVSS 2.0
5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», Canonical Ltd., АО "НППКТ" | Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), Ubuntu, Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913) |
Timeline
- Feb 14, 2025 CVE Published
- May 6, 2025 CVE Updated
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
References
- https://git.kernel.org/linus/12e009d60852f7bce0afc373ca0b320f14150418 url
- https://git.linuxtesting.ru/pub/scm/linux/kernel/git/lvc/linux-stable.git/commit/?h=v6.1.106-lvc1&id=ec9289369259d982e735a71437e32e6b4035290c url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.41 url
- https://lore.kernel.org/linux-cve-announce/2024072927-CVE-2024-41051-f511@gregkh/ url
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-kernel-lt-220125/?sphrase_id=703728 url
- https://ubuntu.com/security/notices/USN-7089-1 url
- https://ubuntu.com/security/notices/USN-7089-3 url
- https://ubuntu.com/security/notices/USN-7089-5 url
- https://ubuntu.com/security/notices/USN-7090-1 url
- https://ubuntu.com/security/notices/USN-7095-1 url
- https://ubuntu.com/security/notices/USN-7156-1 url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0411SE18 url
- https://git.kernel.org/stable/c/d3179bae72b1b5e555ba839d6d9f40a350a4d78a advisory
- https://git.kernel.org/stable/c/ec9289369259d982e735a71437e32e6b4035290c advisory
- https://git.kernel.org/stable/c/12e009d60852f7bce0afc373ca0b320f14150418 advisory
- https://security-tracker.debian.org/tracker/CVE-2024-41051 advisory
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-0422SE47 advisory
- https://git.kernel.org/stable/c/b26525b2183632f16a3a4108fe6a4bfa8afac6ed url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.100 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.9.10 url
…and 9 more