VDB

DEBIAN-CVE-2025-68188

DEBIAN-CVE-2025-68188 PUBLISHED

In the Linux kernel, the following vulnerability has been resolved: tcp: use dst_dev_rcu() in tcp_fastopen_active_disable_ofo_check() Use RCU to avoid a pair of atomic operations and a potential UAF on dst_dev()->flags.

Affected Products

VendorProductVersions
Debian:13linux6.12.38-1, 0, 6.12.63-1
Debian:14linux6.13.7-1~exp1, 6.13.8-1~exp1, 6.13.9-1~exp1
Debian:11linux6.12.35-1, 6.18.14-1, 6.18.15-1
Debian:12linux6.1.162-1, 6.1.27-1, 6.1.37-1

Timeline

  • Dec 16, 2025 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›