PT-2025-36297 · Linux+4 · Linux Kernel+4
Syzkaller
·
Published
2025-01-01
·
Updated
2026-05-26
·
CVE-2025-39703
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.15.0 #12
Description
A flaw exists in the Linux kernel related to the handling of High-Speed Resilient (HSR) frames. Receiving an HSR frame without sufficient space to accommodate the HSR tag within the skb (socket buffer) can lead to a kernel crash, specifically a kernel BUG triggered by an invalid opcode. This issue arises from unintended transformations applied to the skb by the HSR layer when processing a corrupted HSR frame with an incomplete TAG. The reproducer utilizes AF PACKET, but the vulnerability could potentially be triggered by frames received over a network.
Recommendations
Update to a version newer than 6.15.0 #12 to resolve this issue.
Exploit
Fix
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu