In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow Syzkaller reported this splat: =====================================…
Critical CVSS 9.8
Summary
In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow Syzkaller reported this splat: ================================================================== BUG: KASAN: slab-use-after-free in mptcp_pm_nl_rm_addr_or_subflow+0xb44/0xcc0 net/mptcp/pm_netlink.c:881 Read of size 4 at addr ffff8880569ac858 by task syz.1.2799/14662 CPU: 0 UID: 0 PID: 14662 Comm: syz.1.2799 Not tainted 6.12.0-rc2-syzkaller-00307-g36c254515dc…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/35301636439138b821f1f6169bd00d348ebd388a Patch
- https://git.kernel.org/stable/c/7b2e478abab0b3a33515433a6af563aebba773c1 Patch
- https://git.kernel.org/stable/c/7decd1f5904a489d3ccdcf131972f94645681689 Patch
- https://git.kernel.org/stable/c/a8c36ea4ef9a350816f6556c5c5b63810f84b538 Patch
- https://git.kernel.org/stable/c/da3343bc0839b180fd9af9c27fa456d8231409f9 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
Timeline
- nvd_ingest NVD