PT-2025-42248 · Linux+4 · Linux Kernel+4
Published
2025-10-15
·
Updated
2026-05-07
·
CVE-2025-39973
CVSS v2.0
4.0
Medium
| Vector | AV:A/AC:H/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The
ring len parameter, received from a virtual function (VF), was directly assigned to the hardware memory context (HMC) without validation. This allowed for potential issues due to unvalidated input. To resolve this, upper boundary checks were implemented for both transmit (Tx) and receive (Rx) queue lengths, limiting them to a maximum of 8160 descriptors. Additionally, alignment constraints were enforced, requiring Tx rings to be a multiple of 8 and Rx rings to be a multiple of 32. The vulnerable parameter is ring len.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu