7.5
CVE-2025-68182
- EPSS 0.21%
- Veröffentlicht 16.12.2025 13:43:00
- Zuletzt bearbeitet 30.07.2026 06:24:32
- Erkennungen
wifi: iwlwifi: fix potential use after free in iwl_mld_remove_link()
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix potential use after free in iwl_mld_remove_link() This code frees "link" by calling kfree_rcu(link, rcu_head) and then it dereferences "link" to get the "link->fw_id". Save the "link->fw_id" first to avoid a potential use after free.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
d1e879ec600f9b3bdd253167533959facfefb17b
Version <
5b4a239c9f94e1606435f1842fc6fd426d607dbb
Status
affected
Version
d1e879ec600f9b3bdd253167533959facfefb17b
Version <
77e67d5daaf155f7d0f99f4e797c4842169ec19e
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
6.15
Status
affected
Version
0
Version <
6.15
Status
unaffected
Version <=
6.17.*
Version
6.17.8
Status
unaffected
Version <=
*
Version
6.18
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.118 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | 7.5 | 1.6 | 5.9 |
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
|
https://git.kernel.org/stable/c/5b4a239c9f94e1606435f1842fc6fd426d607dbb
https://git.kernel.org/stable/c/77e67d5daaf155f7d0f99f4e797c4842169ec19e