PT-2025-16698 · Linux+11 · Linux Kernel+11

Matt Dowling

·

Published

2025-04-03

·

Updated

2026-05-07

·

CVE-2025-22058

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory accounting leak issue has been identified in the Linux kernel, specifically related to UDP memory usage. The problem occurs when the application sets INT MAX to SO RCVBUF, triggering an integer overflow in udp rmem release(). This causes the total size of the receive queue to wrap around, resulting in an overflow. As a consequence, the released amount is miscalculated, leading to a doubling of the UDP memory usage. This issue can cause further memory allocation to fail, resulting in packet drops.
Recommendations To prevent this issue, it is recommended to use unsigned int for the calculation and call sk forward alloc add() only once for the small delta. Additionally, consider reviewing the first packet length() function for potential similar problems. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Integer Overflow

Weakness Enumeration

Related Identifiers

ALSA-2025:14420
ALSA-2025:14438
ALSA-2025:14439
ALSA-2025:15005
ALT-PU-2025-14092
ALT-PU-2025-14721
AZL-69542
BDU:2025-11911
CESA-2025_14438
CESA-2025_14439
CVE-2025-22058
DLA-4193-1
DLA-4404-1
DSA-5907-1
ECHO-8EF5-2BDA-A578
INFSA-2025_14420
INFSA-2025_14438
INFSA-2025_14439
MGASA-2025-0142
MGASA-2025-0146
OESA-2025-1465
OESA-2025-1878
OESA-2025-1879
OESA-2025-1880
OESA-2025-2081
OESA-2025-2082
OPENSUSE-SU-2025_01614-1
OPENSUSE-SU-2025_01707-1
RHSA-2025:14420
RHSA-2025:14438
RHSA-2025:14439
RHSA-2025:15005
RHSA-2025:15657
RHSA-2025:15669
RHSA-2025:17009
RHSA-2025_14420
RHSA-2025_14438
RHSA-2025_14439
SUSE-SU-2025:01614-1
SUSE-SU-2025:01707-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:01951-1
SUSE-SU-2025:01964-1
SUSE-SU-2025:01967-1
SUSE-SU-2025:01972-1
SUSE-SU-2025:01983-1
SUSE-SU-2025:20343-1
SUSE-SU-2025:20344-1
SUSE-SU-2025:20354-1
SUSE-SU-2025:20355-1
SUSE-SU-2025_01614-1
SUSE-SU-2025_01707-1
SUSE-SU-2025_01951-1
SUSE-SU-2025_01964-1
SUSE-SU-2025_01967-1
SUSE-SU-2025_01972-1
SUSE-SU-2025_01983-1
USN-7594-1
USN-7594-2
USN-7594-3
USN-7605-1
USN-7605-2
USN-7606-1
USN-7628-1
USN-7835-1
USN-7835-2
USN-7835-3
USN-7835-4
USN-7835-5
USN-7835-6
USN-7887-1
USN-7887-2
USN-7940-1
USN-7940-2
USN-8033-1
USN-8033-2
USN-8033-3
USN-8033-4
USN-8033-5
USN-8033-6
USN-8033-7
USN-8033-8
USN-8034-1
USN-8034-2
USN-8141-1
USN-8163-1
USN-8163-2
USN-8243-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu