VDB
BDU%3A2025-09670
BDU%3A2025-09670
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции unix_stream_read_generic() модуля net/unix/af_unix.c ядра операционных систем Linux, позволяющая нарушителю повысить свои привилегии, обойти существующие механизмы безопасности и выполнить произвольный код
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», Canonical Ltd., Novell Inc. | Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), Ubuntu, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, OpenSUSE Leap, Linux |
Timeline
- Aug 13, 2025 CVE Published
- Feb 16, 2026 CVE Updated
References
- https://git.kernel.org/stable/c/a12237865b48a73183df252029ff5065d73d305e url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE245 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-1202SE17 advisory
- https://wiki.astralinux.ru/astra-linux-se38-bulletin-2026-0126SE38 advisory
- https://ubuntu.com/security/CVE-2025-38236 url
- https://security-tracker.debian.org/tracker/CVE-2025-38236 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://git.kernel.org/stable/c/32ca245464e1479bfea8592b9db227fdc1641705 advisory
- https://www.suse.com/security/cve/CVE-2025-38236.html advisory
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE47 advisory
- https://www.opennet.ru/opennews/art.shtml?num=63710 url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-1113SE18 url
- https://git.kernel.org/stable/c/61a9ad7b69ce688697e5f63332f03e17725353bc advisory
- https://git.kernel.org/stable/c/8db4d2d026e6e3649832bfe23b96c4acff0756db advisory
- https://git.kernel.org/stable/c/fad0a2c16062ac7c606b93166a7ce9d265bab976 advisory