5.5
CVE-2025-38587
- EPSS 0.01%
- Veröffentlicht 19.08.2025 17:15:36
- Zuletzt bearbeitet 07.01.2026 18:45:52
- Quelle 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Unerledigt
In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible infinite loop in fib6_info_uses_dev() fib6_info_uses_dev() seems to rely on RCU without an explicit protection. Like the prior fix in rt6_nlmsg_size(), we need to make sure fib6_del_route() or fib6_add_rt2node() have not removed the anchor from the list, or we risk an infinite loop.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 6.1.128 < 6.1.148
Linux ≫ Linux Kernel Version >= 6.6.75 < 6.6.102
Linux ≫ Linux Kernel Version >= 6.11.11 < 6.12
Linux ≫ Linux Kernel Version >= 6.12.2 < 6.12.42
Linux ≫ Linux Kernel Version >= 6.13 < 6.15.10
Linux ≫ Linux Kernel Version >= 6.16 < 6.16.1
Debian ≫ Debian Linux Version11.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.015 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.