CVE-2025-39945: cnic: Fix use-after-free bugs in cnic_delete_task
Published Oct 4, 2025
·Updated
cnic: Fix use-after-free bugs in cnicdeletetask
Affected Software
16 affected componentsFixes available
Linux Kernel
Microsoft azl3 kernel 6.6.96.2-2
Microsoft azl3 kernel 6.6.104.2-4
Linux Linux kernel>=2.6.37<5.4.300
Linux Linux kernel>=5.5<5.10.245
Linux Linux kernel>=5.11<5.15.194
Linux Linux kernel>=5.16<6.1.154
Linux Linux kernel>=6.2<6.6.108
Linux Linux kernel>=6.7<6.12.49
Linux Linux kernel>=6.13<6.16.9
Linux Linux kernel=6.17-rc1
Linux Linux kernel=6.17-rc2
Linux Linux kernel=6.17-rc3
Linux Linux kernel=6.17-rc4
Linux Linux kernel=6.17-rc5
Linux Linux kernel=6.17-rc6
Event History
Oct 4, 2025
CVE Published
via MITRE·07:31 AM
Data Sourced
via MITRE·07:31 AM
DescriptionSeverity
Data Sourced
via NVD·08:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Oct 5, 2025
Data Sourced
via Microsoft·01:02 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·01:02 AM
Affected Software
Updated
via Microsoft·01:02 AM
DescriptionSeverity
Updated
via Microsoft·01:02 AM
Affected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-39945?
CVE-2025-39945 is classified as a medium severity vulnerability affecting the Linux kernel.
2
How do I fix CVE-2025-39945?
To fix CVE-2025-39945, you should update your Linux kernel to the latest stable version that addresses this vulnerability.
3
What does CVE-2025-39945 affect?
CVE-2025-39945 affects the Linux kernel, specifically the cnic component dealing with network tasks.
4
What are the consequences of exploiting CVE-2025-39945?
Exploiting CVE-2025-39945 could lead to a use-after-free condition, potentially allowing an attacker to execute arbitrary code.
5
When was CVE-2025-39945 resolved?
CVE-2025-39945 was resolved in a recent update to the Linux kernel following the discovery of the vulnerability.