Main
Vulnerability Database
Exploits
ID:12012 - Exploit for Out-of-bounds read in Linux kernel - CVE-2025-39946
ID:12012 - Exploit for Out-of-bounds read in Linux kernel - CVE-2025-39946
Published: October 8, 2025
Vulnerability identifier: #VU116461
Vulnerability risk: Low
CVE-ID: CVE-2025-39946
CWE-ID: CWE-125
Exploitation vector: Local access
Vulnerable software:
Linux kernel
Linux kernel
Link to public exploit:
Vulnerability description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to an out-of-bounds read error within the tls_rx_msg_size() function in net/tls/tls_sw.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's repository.