Home

Description

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy_verf A zero length gss_token results in pages == 0 and in_token->pages[0] is NULL. The code unconditionally evaluates page_address(in_token->pages[0]) for the initial memcpy, which can dereference NULL even when the copy length is 0. Guard the first memcpy so it only runs when length > 0.

PUBLISHED Reserved 2026-01-13 | Published 2026-01-14 | Updated 2026-02-09 | Assigner Linux

Product status

Default status
unaffected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before a8f1e445ce3545c90d69c9e8ff8f7821825fe810
affected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before 4dedb6a11243a5c9eb9dbb97bca3c98bd725e83d
affected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before f9e53f69ac3bc4ef568b08d3542edac02e83fefd
affected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before 7452d53f293379e2c38cfa8ad0694aa46fc4788b
affected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before a2c6f25ab98b423f99ccd94874d655b8bcb01a19
affected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before 1c8bb965e9b0559ff0f5690615a527c30f651dd8
affected

5866efa8cbfbadf3905072798e96652faf02dbe8 (git) before d4b69a6186b215d2dc1ebcab965ed88e8d41768d
affected

66ed7b413d31c6ff23901ac4443b1cc1af2f6113 (git)
affected

7be8c165dc81564705e8e0b72d398ef708f67eaa (git)
affected

Default status
affected

5.5
affected

Any version before 5.5
unaffected

5.10.248 (semver)
unaffected

5.15.198 (semver)
unaffected

6.1.160 (semver)
unaffected

6.6.120 (semver)
unaffected

6.12.64 (semver)
unaffected

6.18.3 (semver)
unaffected

6.19 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/a8f1e445ce3545c90d69c9e8ff8f7821825fe810

git.kernel.org/...c/4dedb6a11243a5c9eb9dbb97bca3c98bd725e83d

git.kernel.org/...c/f9e53f69ac3bc4ef568b08d3542edac02e83fefd

git.kernel.org/...c/7452d53f293379e2c38cfa8ad0694aa46fc4788b

git.kernel.org/...c/a2c6f25ab98b423f99ccd94874d655b8bcb01a19

git.kernel.org/...c/1c8bb965e9b0559ff0f5690615a527c30f651dd8

git.kernel.org/...c/d4b69a6186b215d2dc1ebcab965ed88e8d41768d

cve.org (CVE-2025-71120)

nvd.nist.gov (CVE-2025-71120)

Download JSON