VDB
BDU%3A2025-15213
BDU%3A2025-15213
PUBLISHED
CVSS 5 MEDIUM
Уязвимость функции usb_parse_ss_endpoint_companion() компонента drivers/usb/core/config.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации
Risk Scores
CVSS 2.0
5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Canonical Ltd., Сообщество свободного программного обеспечения, АО «ИВК», ООО «РусБИТех-Астра» | Red Hat Enterprise Linux, Ubuntu, Debian GNU/Linux, АЛЬТ СП 10, Astra Linux Special Edition (запись в едином реестре российских программ №369), Linux |
Timeline
- Dec 5, 2025 CVE Published
- Feb 16, 2026 CVE Updated
References
- https://git.kernel.org/stable/c/058ad2b722812708fe90567875704ae36563e33b url
- https://git.kernel.org/stable/c/5c3097ede7835d3caf6543eb70ff689af4550cd2 url
- https://git.kernel.org/stable/c/9843bcb187cb933861f7805022e6873905f669e4 url
- https://git.kernel.org/stable/c/b10e0f868067c6f25bbfabdcf3e1e6432c24ca55 url
- https://git.kernel.org/stable/c/cf16f408364efd8a68f39011a3b073c83a03612d url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-1113SE18 url
- https://security-tracker.debian.org/tracker/CVE-2025-39760 advisory
- https://ubuntu.com/security/CVE-2025-39760 advisory
- https://wiki.astralinux.ru/astra-linux-se38-bulletin-2026-0126SE38 advisory
- https://git.kernel.org/linus/cf16f408364efd8a68f39011a3b073c83a03612d url
- https://git.kernel.org/stable/c/4fe6f472f0beef4281e6f03bc38a910a33be663f url
- https://git.kernel.org/stable/c/5badd56c711e2c8371d1670f9bd486697575423c url
- https://git.kernel.org/stable/c/9512510cee7d1becdb0e9413fdd3ab783e4e30ee url
- https://github.com/torvalds/linux/commit/cf16f408364efd8a68f39011a3b073c83a03612d url
- https://lore.kernel.org/linux-cve-announce/2025091145-CVE-2025-39760-2d5f@gregkh/ url
- https://nvd.nist.gov/vuln/detail/CVE-2025-39760 url
- https://access.redhat.com/security/cve/cve-2025-39760 advisory
- https://altsp.su/obnovleniya-bezopasnosti/ advisory