CVE-2025-40170

net: use dst_dev_rcu() in sk_setup_caps()

References

Notes

 carnil> Introduced in 4a6ce2b6f2ec ("net: introduce a new function dst_dev_put()").
 carnil> Vulnerable versions: 4.13.

Bugs

Status

Branch Status
upstream released (6.18-rc1) [99a2ace61b211b0be861b07fbaa062fca4b58879]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable released (6.17.3) [a805729c0091073d8f0415cfa96c7acd1bc17a48]
6.12-upstream-stable needed
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.17.6-1)
6.12-trixie-security needed
6.1-bookworm-security needed
5.10-bullseye-security needed