๐Ÿ” CVE Alert

CVE-2025-38568

UNKNOWN 0.0

net/sched: mqprio: fix stack out-of-bounds write in tc entry parsing

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: net/sched: mqprio: fix stack out-of-bounds write in tc entry parsing TCA_MQPRIO_TC_ENTRY_INDEX is validated using NLA_POLICY_MAX(NLA_U32, TC_QOPT_MAX_QUEUE), which allows the value TC_QOPT_MAX_QUEUE (16). This leads to a 4-byte out-of-bounds stack write in the fp[] array, which only has room for 16 elements (0โ€“15). Fix this by changing the policy to allow only up to TC_QOPT_MAX_QUEUE - 1.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 19, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
f62af20bed2d9e824f51cfc97ff01bc261f40e58 < 39491e859fd494d0b51adc5c7d54c8a7dcf1d198 f62af20bed2d9e824f51cfc97ff01bc261f40e58 < d00e4125680f7074c4f42ce3c297336f23128e70 f62af20bed2d9e824f51cfc97ff01bc261f40e58 < 66fc2ebdd9d5dd6e5a9c7edeace5a61a0ab2cd86 f62af20bed2d9e824f51cfc97ff01bc261f40e58 < f1a9dbcb7d17bf0abb325cdc984957cfabc59693 f62af20bed2d9e824f51cfc97ff01bc261f40e58 < ffd2dc4c6c49ff4f1e5d34e454a6a55608104c17
Linux / Linux
6.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/39491e859fd494d0b51adc5c7d54c8a7dcf1d198 git.kernel.org: https://git.kernel.org/stable/c/d00e4125680f7074c4f42ce3c297336f23128e70 git.kernel.org: https://git.kernel.org/stable/c/66fc2ebdd9d5dd6e5a9c7edeace5a61a0ab2cd86 git.kernel.org: https://git.kernel.org/stable/c/f1a9dbcb7d17bf0abb325cdc984957cfabc59693 git.kernel.org: https://git.kernel.org/stable/c/ffd2dc4c6c49ff4f1e5d34e454a6a55608104c17