CVE-2025-38491

mptcp: make fallback action and fallback decision atomic

References

Notes

 carnil> Introduced in 0530020a7c8f ("mptcp: track and update contiguous data status").
 carnil> Vulnerable versions: 5.10.228 5.15.169 5.19.

Bugs

Status

Branch Status
upstream released (6.16-rc7) [f8a1d9b18c5efc76784f5a326e905f641f839894]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.15-upstream-stable released (6.15.8) [1d82a8fe6ee4afdc92f4e8808c9dad2a6095bbc5]
6.12-upstream-stable released (6.12.40) [54999dea879fecb761225e28f274b40662918c30]
6.6-upstream-stable released (6.6.101) [75a4c9ab8a7af0d76b31ccd1188ed178c38b35d2]
6.1-upstream-stable released (6.1.149) [5586518bec27666c747cd52aabb62d485686d0bf]
5.10-upstream-stable needed
sid released (6.16.3-1)
6.12-trixie-security released (6.12.41-1)
6.1-bookworm-security released (6.1.153-1)
5.10-bullseye-security needed