We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-22117

ice: fix using untrusted value of pkt_len in ice_vc_fdir_parse_raw()



Description

In the Linux kernel, the following vulnerability has been resolved: ice: fix using untrusted value of pkt_len in ice_vc_fdir_parse_raw() Fix using the untrusted value of proto->raw.pkt_len in function ice_vc_fdir_parse_raw() by verifying if it does not exceed the VIRTCHNL_MAX_SIZE_RAW_PACKET value.

Reserved 2024-12-29 | Published 2025-04-16 | Updated 2025-05-26 | Assigner Linux

Product status

Default status
unaffected

99f419df8a5c5e1a58822203989f77712d01d410 before 362f704ba73a359db9cded567e891d9a8f081875
affected

99f419df8a5c5e1a58822203989f77712d01d410 before 1388dd564183a5a18ec4a966748037736b5653c5
affected

Default status
affected

6.12
affected

Any version before 6.12
unaffected

6.14.2
unaffected

6.15
unaffected

References

git.kernel.org/...c/362f704ba73a359db9cded567e891d9a8f081875

git.kernel.org/...c/1388dd564183a5a18ec4a966748037736b5653c5

cve.org (CVE-2025-22117)

nvd.nist.gov (CVE-2025-22117)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-22117

Support options

Helpdesk Chat, Email, Knowledgebase