ID:12012 - Exploit for Out-of-bounds read in Linux kernel - CVE-2025-39946

 
Main Vulnerability Database Exploits ID:12012 - Exploit for Out-of-bounds read in Linux kernel - CVE-2025-39946

ID:12012 - Exploit for Out-of-bounds read in Linux kernel - CVE-2025-39946

Published: October 8, 2025


Vulnerability identifier: #VU116461
Vulnerability risk: Low
CVE-ID: CVE-2025-39946
CWE-ID: CWE-125
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the tls_rx_msg_size() function in net/tls/tls_sw.c. A local user can perform a denial of service (DoS) attack.


Remediation

Install update from vendor's repository.