CVE-2025-39964: Linux Kernel
Linux Kernel 包含一個種族條件脆弱性,允許同時寫到相同的 AF_ ALG 套接字,導致資料無法預測地互頁,並造成套接字內部狀態的不一致 。
CISA (English)
Linux Kernel contains a race condition vulnerability which allows concurrent writes to the same AF_ALG socket causing data to be unpredictably interleaved and creating inconsistencies in the socket's internal state.
- 廠商
- Linux
- 產品
- Kernel
- 漏洞
- Linux Kernel Race Condition Vulnerability
- 加入日期
- 2026年9月18日
- CISA 修補期限(美國聯邦機關)
- 2026年9月21日
- 已知用於勒索軟體攻擊
- 未知
- 弱點(CWE)
- CWE-362
參考資料
- NVD — CVE-2025-39964
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- www.cisa.gov
本站僅為資訊目的整理 CISA 目錄,並非資安建議。請遵循廠商指引與官方公告。
最後更新: · 目錄版本 2026.10.02