PT-2025-42264 · Linux+1 · Linux Kernel+1

CVE-2025-39990

·

Publicado

2025-10-15

·

Atualizado

2026-08-30

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw in the BPF (Berkeley Packet Filter) subsystem related to helper function validation within the get helper proto function. A kernel test robot identified a verifier bug where the helper function pointer could become NULL due to a disabled configuration option. The tail call helper function is marked with BPF PTR POISON as it is intentionally unused.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

AZL-68519
CVE-2025-39990
ECHO-E340-3D7B-F09C
OPENSUSE-SU-2025:20172-1
SUSE-SU-2026:20012-1
SUSE-SU-2026:20015-1
SUSE-SU-2026:20021-1
SUSE-SU-2026:20562-1

Produtos afetados

Debian
Linux Kernel