← Back to CVEs
CVE-2025-1272
HIGH7.7
Description
The Linux Kernel lockdown mode for kernel versions starting on 6.12 and above for Fedora Linux has the lockdown mode disabled without any warning. This may allow an attacker to gain access to sensitive information such kernel memory mappings, I/O ports, BPF and kprobes. Additionally unsigned modules can be loaded, leading to execution of untrusted code breaking breaking any Secure Boot protection. This vulnerability affects only Fedora Linux.
CVE Details
CVSS v3.1 Score7.7
SeverityHIGH
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Attack VectorLOCAL
ComplexityLOW
Privileges RequiredHIGH
User InteractionREQUIRED
Published2/18/2026
Last Modified2/26/2026
Sourcenvd
Honeypot Sightings0
Weaknesses (CWE)
CWE-306
References
https://access.redhat.com/errata/RHSA-2025:6966(patrick@puiterwijk.org)
https://access.redhat.com/security/cve/CVE-2025-1272(patrick@puiterwijk.org)
https://bugzilla.redhat.com/show_bug.cgi?id=2345615(patrick@puiterwijk.org)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.