SB20250502122 - Memory leak in Linux kernel tipc
Published: May 2, 2025 Updated: May 10, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2025-37757)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the tipc_link_xmit() function in net/tipc/link.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/09c2dcda2c551bba30710c33f6ac678ae7395389
- https://git.kernel.org/stable/c/24e6280cdd7f8d01fc6b9b365fb800c2fb7ea9bb
- https://git.kernel.org/stable/c/69ae94725f4fc9e75219d2d69022029c5b24bc9a
- https://git.kernel.org/stable/c/7c5957f7905b4aede9d7a559d271438f3ca9e852
- https://git.kernel.org/stable/c/84895f5ce3829d9fc030e5ec2d8729da4c0c9d08
- https://git.kernel.org/stable/c/a40cbfbb8f95c325430f017883da669b2aa927d4
- https://git.kernel.org/stable/c/d0e02d3d27a0b4dcb13f954f537ca1dd8f282dcf
- https://git.kernel.org/stable/c/d4d40e437adb376be16b3a12dd5c63f0fa768247
- https://git.kernel.org/stable/c/ed06675d3b8cd37120b447646d53f7cd3e6fcd63
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.181