We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-37997

netfilter: ipset: fix region locking in hash types



Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix region locking in hash types Region locking introduced in v5.6-rc4 contained three macros to handle the region locks: ahash_bucket_start(), ahash_bucket_end() which gave back the start and end hash bucket values belonging to a given region lock and ahash_region() which should give back the region lock belonging to a given hash bucket. The latter was incorrect which can lead to a race condition between the garbage collector and adding new elements when a hash type of set is defined with timeouts.

Reserved 2025-04-16 | Published 2025-05-29 | Updated 2025-05-29 | Assigner Linux

Product status

Default status
unaffected

f66ee0410b1c3481ee75e5db9b34547b4d582465 before 82c1eb32693bc48251d92532975e19160987e5b9
affected

f66ee0410b1c3481ee75e5db9b34547b4d582465 before aa77294b0f73bb8265987591460cd25b8722c3df
affected

f66ee0410b1c3481ee75e5db9b34547b4d582465 before a3dfec485401943e315c394c29afe2db8f9481d6
affected

f66ee0410b1c3481ee75e5db9b34547b4d582465 before e2ab67672b2288521a6146034a971f9a82ffc5c5
affected

f66ee0410b1c3481ee75e5db9b34547b4d582465 before 6e002ecc1c8cfdfc866b9104ab7888da54613e59
affected

f66ee0410b1c3481ee75e5db9b34547b4d582465 before 8478a729c0462273188263136880480729e9efca
affected

5dd9488ae41070b69d2f4acb580f77db5705f9ca
affected

a469bab3386aebff33c59506f3a95e35b91118fd
affected

Default status
affected

5.6
affected

Any version before 5.6
unaffected

5.15.183
unaffected

6.1.139
unaffected

6.6.91
unaffected

6.12.29
unaffected

6.14.7
unaffected

6.15
unaffected

References

git.kernel.org/...c/82c1eb32693bc48251d92532975e19160987e5b9

git.kernel.org/...c/aa77294b0f73bb8265987591460cd25b8722c3df

git.kernel.org/...c/a3dfec485401943e315c394c29afe2db8f9481d6

git.kernel.org/...c/e2ab67672b2288521a6146034a971f9a82ffc5c5

git.kernel.org/...c/6e002ecc1c8cfdfc866b9104ab7888da54613e59

git.kernel.org/...c/8478a729c0462273188263136880480729e9efca

cve.org (CVE-2025-37997)

nvd.nist.gov (CVE-2025-37997)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-37997

Support options

Helpdesk Chat, Email, Knowledgebase