VDB
BDU%3A2025-14574
BDU%3A2025-14574
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции ext4_xattr_inode_update_ref() ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Red Hat Inc., Сообщество свободного программного обеспечения | Ubuntu, Red Hat Enterprise Linux, Debian GNU/Linux, Linux |
Timeline
- Nov 24, 2025 CVE Published
References
- https://git.kernel.org/stable/c/440b003f449a4ff2a00b08c8eab9ba5cd28f3943 url
- https://git.kernel.org/stable/c/57295e835408d8d425bef58da5253465db3d6888 url
- https://git.kernel.org/stable/c/ea39e712c2f5ae148ee5515798ae03523673e002 url
- https://access.redhat.com/security/cve/cve-2025-40190 url
- https://lore.kernel.org/linux-cve-announce/2025111244-CVE-2025-40190-b6bc@gregkh/ advisory
- https://ubuntu.com/security/CVE-2025-40190 advisory
- https://www.cybersecurity-help.cz/vulnerabilities/118495/ url
- https://git.kernel.org/stable/c/1cfb3e4ddbdc8e02e637b8852540bd4718bf4814 url
- https://git.kernel.org/stable/c/3d6269028246f4484bfed403c947a114bb583631 url
- https://git.kernel.org/stable/c/505e69f76ac497e788f4ea0267826ec7266b40c8 url
- https://git.kernel.org/stable/c/6b879c4c6bbaab03c0ad2a983953bd1410bb165e url
- https://git.kernel.org/stable/c/79ea7f3e11effe1bd9e753172981d9029133a278 url
- https://security-tracker.debian.org/tracker/CVE-2025-40190 advisory