Home

Description

In the Linux kernel, the following vulnerability has been resolved: io_uring/cmd_net: fix wrong argument types for skb_queue_splice() If timestamp retriving needs to be retried and the local list of SKB's already has entries, then it's spliced back into the socket queue. However, the arguments for the splice helper are transposed, causing exactly the wrong direction of splicing into the on-stack list. Fix that up.

PUBLISHED Reserved 2025-12-16 | Published 2025-12-16 | Updated 2025-12-16 | Assigner Linux

Product status

Default status
unaffected

9e4ed359b8efad0e8ad4510d8ad22bf0b060526a (git) before c85d2cfc5e24e6866b56c7253fd4e1c7db35986c
affected

9e4ed359b8efad0e8ad4510d8ad22bf0b060526a (git) before 46447367a52965e9d35f112f5b26fc8ff8ec443d
affected

Default status
affected

6.17
affected

Any version before 6.17
unaffected

6.17.10 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/c85d2cfc5e24e6866b56c7253fd4e1c7db35986c

git.kernel.org/...c/46447367a52965e9d35f112f5b26fc8ff8ec443d

cve.org (CVE-2025-68234)

nvd.nist.gov (CVE-2025-68234)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.