CVE-2025-68325

net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop

References

Notes

 carnil> Introduced in 15de71d06a40 ("net/sched: Make cake_enqueue return NET_XMIT_CN
 carnil> when past buffer_limit"). Vulnerable versions: 5.4.297 5.10.241 5.15.190
 carnil> 6.1.149 6.6.103 6.12.44 6.16.4 6.17.

Bugs

Status

Branch Status
upstream released (6.19-rc1) [9fefc78f7f02d71810776fdeb119a05a946a27cc]
6.18-upstream-stable released (6.18.2) [3ed6c458530a547ed0c9ea0b02b19bab620be88b]
6.17-upstream-stable released (6.17.13) [529c284cc2815c8350860e9a31722050fe7117cb]
6.12-upstream-stable released (6.12.63) [0b6216f9b3d1c33c76f74511026e5de5385ee520]
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.17.13-1)
6.12-trixie-security released (6.12.63-1)
6.1-bookworm-security needed
5.10-bullseye-security needed