PT-2025-52898 · Rtl818X+6 · Rtl818X+6
Published
2025-11-21
·
Updated
2026-05-11
·
CVE-2025-68362
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A flaw exists in the Linux kernel’s wifi subsystem, specifically within the
rtl818x and rtl8187 drivers. The rtl8187 rx cb() function calculates the receive descriptor header address by subtracting its size from the skb tail pointer without validating if the received packet is large enough to contain this header. Receiving a truncated packet can lead to a buffer underflow, resulting in reading memory before the start of the skb data area and potentially causing a kernel panic. The issue is addressed by adding length checks for both rtl8187 and rtl8187b descriptor headers before accessing them, and dropping the packet if the check fails.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Debian
Linuxmint
Linux Kernel
Ubuntu
Rtl8187
Rtl8187B
Rtl818X