PT-2025-51605 · Linux+3 · Linux Kernel+3
CVE-2025-68192
·
Publicado
2025-12-16
·
Atualizado
2026-07-18
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.12.34-gbe78e49cb433
Description
The Linux kernel contains a flaw within the USB qmi wwan component related to the initialization of the MAC header offset in the qmimux rx fixup function. Raw IP packets lack a MAC header, potentially leaving
skb->mac header uninitialized. This can lead to kernel panics on ARM64 systems when subsystems like xfrm access this offset due to strict alignment checks. Specifically, kernel panics may occur on ARM when running IPsec over the qmimux0 interface. The xfrm input function is implicated in the crash trace.Recommendations
Update to Linux kernel version 6.12.34-gbe78e49cb433 or later.
Exploit
Correção
Access of Uninitialized Pointer
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Debian
Linuxmint
Linux Kernel
Ubuntu