Description
In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer dereference on fastopen early fallback In case of early fallback to TCP, subflow_syn_recv_sock() deletes the subflow context before returning the newly allocated sock to the caller. The fastopen path does not cope with the above unconditionally dereferencing the subflow context.
Product status
36b122baf6a8bd46b4a591f12f4ed17b22257408 (git) before 95135835519b0ab931c39908b2c99e9fb3c9068b
36b122baf6a8bd46b4a591f12f4ed17b22257408 (git) before c0ff6f6da66a7791a32c0234388b1bdc00244917
6.2
Any version before 6.2
6.2.12 (semver)
6.3 (original_commit_for_fix)
References
git.kernel.org/...c/95135835519b0ab931c39908b2c99e9fb3c9068b
git.kernel.org/...c/c0ff6f6da66a7791a32c0234388b1bdc00244917
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.