CVE-2025-39873

can: xilinx_can: xcan_write_frame(): fix use-after-free of transmitted SKB

References

Notes

 carnil> Introduced in 1598efe57b3e ("can: xilinx_can: refactor code in preparation for
 carnil> CAN FD support"). Vulnerable versions: 4.19.

Bugs

Status

Branch Status
upstream released (6.17-rc6) [ef79f00be72bd81d2e1e6f060d83cf7e425deee4]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.16-upstream-stable released (6.16.8) [668cc1e3bb21101d074e430de1b7ba8fd10189e7]
6.12-upstream-stable released (6.12.48) [725b33deebd6e4c96fe7893f384510a54258f28f]
6.6-upstream-stable released (6.6.107) [94b050726288a56a6b8ff55aa641f2fedbd3b44c]
6.1-upstream-stable released (6.1.153) [1139321161a3ba5e45e61e0738b37f42f20bc57a]
5.10-upstream-stable needed
sid released (6.16.8-1)
6.12-trixie-security released (6.12.48-1)
6.1-bookworm-security released (6.1.153-1)
5.10-bullseye-security needed