VDB
BDU%3A2025-15160
BDU%3A2025-15160
PUBLISHED
CVSS 6.199999809265137 MEDIUM
Уязвимость функции clone_private_mnt() ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на целостность и доступность защищамой информации
Risk Scores
CVSS 2.0
6.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Сообщество свободного программного обеспечения, Red Hat Inc., ООО «РусБИТех-Астра» | Ubuntu, Debian GNU/Linux, Red Hat Enterprise Linux, Astra Linux Special Edition (запись в едином реестре российских программ №369), Linux |
Timeline
- Dec 4, 2025 CVE Published
- Dec 17, 2025 PoC Published
- Feb 16, 2026 CVE Updated
References
- https://git.kernel.org/stable/c/36fecd740de2d542d2091d65d36554ee2bcf9c65 url
- https://git.kernel.org/stable/c/c28f922c9dcee0e4876a2c095939d77fe7e15116 url
- https://git.kernel.org/stable/c/d717325b5ecf2a40daca85c61923e17f32306179 url
- https://git.kernel.org/stable/c/dc6a664089f10eab0fb36b6e4f705022210191d2 url
- https://git.kernel.org/stable/c/e77078e52fbf018ab986efb3c79065ab35025607 url
- https://nvd.nist.gov/vuln/detail/CVE-2025-38499 url
- https://security-tracker.debian.org/tracker/CVE-2025-38499 url
- https://wiki.astralinux.ru/astra-linux-se38-bulletin-2026-0126SE38 advisory
- https://git.kernel.org/linus/c28f922c9dcee0e4876a2c095939d77fe7e15116 url
- https://git.kernel.org/stable/c/38628ae06e2a37770cd794802a3f1310cf9846e3 url
- https://github.com/torvalds/linux/commit/c28f922c9dcee0e4876a2c095939d77fe7e15116 url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-1113SE18 url
- https://access.redhat.com/security/cve/cve-2025-38499 url
- https://lore.kernel.org/linux-cve-announce/2025081112-CVE-2025-38499-4572@gregkh/ advisory
- https://ubuntu.com/security/CVE-2025-38499 advisory