In the Linux kernel, the following vulnerability has been resolved: seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors input_action_end_dx4() and input_action_end_d…
High CVSS 7.5
Summary
In the Linux kernel, the following vulnerability has been resolved: seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors input_action_end_dx4() and input_action_end_dx6() are called NF_HOOK() for PREROUTING hook, in PREROUTING hook, we should passing a valid indev, and a NULL outdev to NF_HOOK(), otherwise may trigger a NULL pointer dereference, as below: [74830.647293] BUG: kernel NULL pointer dereference, address: 0000000000000090 [74830.655633] #PF: …
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/561475d53aa7e4511ee7cdba8728ded81cf1db1c Patch
- https://git.kernel.org/stable/c/9a3bc8d16e0aacd65c31aaf23a2bced3288a7779 Patch
- https://git.kernel.org/stable/c/af90e3d73dc45778767b2fb6e7edd57ebe34380d Patch
- https://git.kernel.org/stable/c/d62df86c172033679d744f07d89e93e367dd11f6 Patch
- https://git.kernel.org/stable/c/ec4d970b597ee5e17b0d8d73b7875197ce9a04d4 Patch
- https://git.kernel.org/stable/c/561475d53aa7e4511ee7cdba8728ded81cf1db1c Patch
- https://git.kernel.org/stable/c/9a3bc8d16e0aacd65c31aaf23a2bced3288a7779 Patch
- https://git.kernel.org/stable/c/af90e3d73dc45778767b2fb6e7edd57ebe34380d Patch
- https://git.kernel.org/stable/c/d62df86c172033679d744f07d89e93e367dd11f6 Patch
- https://git.kernel.org/stable/c/ec4d970b597ee5e17b0d8d73b7875197ce9a04d4 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
Timeline
- nvd_ingest NVD