In the Linux kernel, the following vulnerability has been resolved:
net_sched: keep alloc_hash updated after hash allocation
In commit 599be01ee567 ("net_sched: fix an OOB access in cls_tcindex") I moved cp->hash calculation before the first tcindex_alloc_perfect_hash(), but cp->alloc_hash is left untouched. This difference could lead to another out of bound access.
cp->alloc_hash should always be the size allocated, we should update it after this tcindex_alloc_perfect_hash().
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade kernel-headersUpgrade kernel-livepatch-4.14.177-139.253Upgrade kernel-debuginfo-common-aarch64Upgrade kernel-tools-debuginfoUpgrade python-perfUpgrade kernel-tools-develUpgrade perf-debuginfoUpgrade perfUpgrade kernel-debuginfoUpgrade python-perf-debuginfoUpgrade kernelUpgrade kernel-debuginfo-common-x86_64Upgrade kernel-develUpgrade kernel-tools | May 20, 2026 | May 20, 2026 |
| Debian | — | Upgrade linux | May 9, 2025 | May 7, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | May 7, 2025 |
| Ubuntu | — | Upgrade linuxUpgrade linux-gcpUpgrade linux-fipsUpgrade linux-awsUpgrade linux-aws-hweUpgrade linux-lts-xenialUpgrade linux-kvmUpgrade linux-oracleUpgrade linux-azureUpgrade linux-hwe | May 9, 2025 | May 7, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub