VDB
BDU%3A2025-01854
BDU%3A2025-01854
PUBLISHED
CVSS 4.599999904632568 MEDIUM
Уязвимость функций input_action_end_dx4() и input_action_end_dx6() модуля net/ipv6/seg6_local.c ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании.
Risk Scores
CVSS 2.0
4.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», Canonical Ltd., Red Hat Inc., Novell Inc., АО "НППКТ" | Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), Ubuntu, Red Hat Enterprise Linux, Astra Linux Common Edition (запись в едином реестре российских программ №4433), SUSE Liberty Linux, Suse Linux Enterprise Desktop, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Module for Basesystem, SUSE Linux Enterprise Workstation Extension, OpenSUSE Leap, SUSE Linux Enterprise Module for Development Tools, Linux, SUSE Linux Enterprise High Availability Extension, SUSE Linux Enterprise Live Patching, SUSE Linux Enterprise Module for Public Cloud, SUSE Linux Enterprise Real Time, SUSE Real Time Module, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913) |
Timeline
- Feb 20, 2025 CVE Published
- Jan 20, 2026 CVE Updated
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 20, 2026 Distribution Patch
- Mar 21, 2026 Distribution Patch
References
- https://access.redhat.com/security/cve/CVE-2024-40957 url
- https://git.kernel.org/linus/9a3bc8d16e0aacd65c31aaf23a2bced3288a7779 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.36 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.9.7 url
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-kernel-lt-150125/?sphrase_id=723746 url
- https://security-tracker.debian.org/tracker/CVE-2024-40957 url
- https://ubuntu.com/security/notices/USN-6999-1 url
- https://ubuntu.com/security/notices/USN-7004-1 url
- https://ubuntu.com/security/notices/USN-7005-1 url
- https://ubuntu.com/security/notices/USN-7005-2 url
- https://ubuntu.com/security/notices/USN-7007-2 url
- https://ubuntu.com/security/notices/USN-7007-3 url
- https://ubuntu.com/security/notices/USN-7009-2 url
- https://ubuntu.com/security/notices/USN-7019-1 url
- https://ubuntu.com/security/notices/USN-7029-1 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-0422SE47 url
- https://git.kernel.org/stable/c/af90e3d73dc45778767b2fb6e7edd57ebe34380d advisory
- https://git.kernel.org/stable/c/ec4d970b597ee5e17b0d8d73b7875197ce9a04d4 advisory
- https://ubuntu.com/security/CVE-2024-40957 advisory
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-0319SE17 advisory
…and 16 more