VDB
BDU%3A2025-04553
BDU%3A2025-04553
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции cifs_strndup_from_utf16() модуля /fs/smb/client/reparse.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения, ООО «РусБИТех-Астра», АО "НППКТ", ООО «Открытая мобильная платформа» | Ubuntu, OpenSUSE Leap, Red Hat Enterprise Linux, openSUSE Tumbleweed, Debian GNU/Linux, Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise Server for SAP Applications, Suse Linux Enterprise Server, Suse Linux Enterprise Desktop, openSUSE Leap Micro, Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), ОС Аврора (запись в едином реестре российских программ №1543) |
Timeline
- Apr 15, 2025 CVE Published
- Jan 20, 2026 CVE Updated
- Mar 22, 2026 Distribution Patch
- Mar 22, 2026 Distribution Patch
References
- https://git.kernel.org/stable/c/7b222d6cb87077faf56a687a72af1951cf78c8a9 url
- https://git.kernel.org/stable/c/c6db81c550cea0c73bd72ef55f579991e0e4ba07 url
- https://git.kernel.org/stable/c/e2a8910af01653c1c268984855629d71fb81f404 url
- https://git.kernel.org/stable/c/01cdddde39b065074fd48f07027757783cbf5b7d url
- https://git.kernel.org/stable/c/c173d47b69f07cd7ca08efb4e458adbd4725d8e9 url
- https://git.kernel.org/stable/c/ec79e6170bcae8a6036a4b6960f5e7e59a785601 url
- https://git.kernel.org/stable/c/803b3a39cb096d8718c0aebc03fd19f11c7dc919 url
- https://git.kernel.org/stable/c/73b078e3314d4854fd8286f3ba65c860ddd3a3dd url
- https://www.cve.org/CVERecord?id=CVE-2024-49996 url
- https://lore.kernel.org/linux-cve-announce/2024102138-CVE-2024-49996-0d29@gregkh/ url
- https://git.kernel.org/linus/e2a8910af01653c1c268984855629d71fb81f404 url
- https://ubuntu.com/security/notices/USN-7276-1 url
- https://ubuntu.com/security/notices/USN-7277-1 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.287 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.231 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.174 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.120 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.55 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.10.14 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.11.3 url
…and 8 more