CVE-2025-40075

tcp_metrics: use dst_dev_net_rcu()

References

Notes

 carnil> Introduced in 4a6ce2b6f2ec ("net: introduce a new function dst_dev_put()").
 carnil> Vulnerable versions: 4.13.

Bugs

Status

Branch Status
upstream released (6.18-rc1) [50c127a69cd6285300931853b352a1918cfa180f]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable released (6.17.3) [07613a95326ebad2d1b88d883cd72546025a4f3e]
6.12-upstream-stable released (6.12.63) [4b89397807eb04986427c4786d065e9442834ad4]
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.17.6-1)
6.12-trixie-security released (6.12.63-1)
6.1-bookworm-security needed
5.10-bullseye-security needed