-

CVE-2025-40149

In the Linux kernel, the following vulnerability has been resolved:

tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock().

get_netdev_for_sock() is called during setsockopt(),
so not under RCU.

Using sk_dst_get(sk)->dev could trigger UAF.

Let's use __sk_dst_get() and dst_dev_rcu().

Note that the only ->ndo_sk_get_lower_dev() user is
bond_sk_get_lower_dev(), which uses RCU.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 2b1bef126bbb8d0da51491357559126d567c1dee
Version e8f69799810c32dd40c6724d829eccc70baad07f
Status affected
Version < e37ca0092ddace60833790b4ad7a390408fb1be9
Version e8f69799810c32dd40c6724d829eccc70baad07f
Status affected
Version < 13159c7125636371543a82cb7bbae00ab36730cc
Version e8f69799810c32dd40c6724d829eccc70baad07f
Status affected
Version < f09cd209359a23f88d4f3fa3d2379d057027e53c
Version e8f69799810c32dd40c6724d829eccc70baad07f
Status affected
Version < feb474ddbf26b51f462ae2e60a12013bdcfc5407
Version e8f69799810c32dd40c6724d829eccc70baad07f
Status affected
Version < c65f27b9c3be2269918e1cbad6d8884741f835c5
Version e8f69799810c32dd40c6724d829eccc70baad07f
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 4.18
Status affected
Version < 4.18
Version 0
Status unaffected
Version <= 5.15.*
Version 5.15.199
Status unaffected
Version <= 6.1.*
Version 6.1.161
Status unaffected
Version <= 6.6.*
Version 6.6.121
Status unaffected
Version <= 6.12.*
Version 6.12.66
Status unaffected
Version <= 6.17.*
Version 6.17.3
Status unaffected
Version <= *
Version 6.18
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.106
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.