cbcvebase.
CVE-2025-39922
published 2025-10-01

CVE-2025-39922: In the Linux kernel, the following vulnerability has been resolved: ixgbe: fix incorrect map used in eee linkmode incorrectly used ixgbe_lp_map in loops…

PriorityP431high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.14%
3.6th percentile
In the Linux kernel, the following vulnerability has been resolved: ixgbe: fix incorrect map used in eee linkmode incorrectly used ixgbe_lp_map in loops intended to populate the supported and advertised EEE linkmode bitmaps based on ixgbe_ls_map. This results in incorrect bit setting and potential out-of-bounds access, since ixgbe_lp_map and ixgbe_ls_map have different sizes and purposes. ixgbe_lp_map[i] -> ixgbe_ls_map[i] Use ixgbe_ls_map for supported and advertised linkmodes, and keep ixgbe_lp_map usage only for link partner (lp_advertised) mapping.

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.16.6-1 (forky)linux 6.16.6-1 (forky)
linuxlinux
linuxlinux>= 9356b6db9d051e9d939dd0f9ae7a0514103ef228 < 682105ab63826fb7ca7c112b42b478d156fbb19f682105ab63826fb7ca7c112b42b478d156fbb19f
linuxlinux>= 9356b6db9d051e9d939dd0f9ae7a0514103ef228 < 129c1cb8a081a02d99267cb51708f1326395f4e8129c1cb8a081a02d99267cb51708f1326395f4e8
linuxlinux>= 9356b6db9d051e9d939dd0f9ae7a0514103ef228 < b7e5c3e3bfa9dc8af75ff6d8633ad7070e1985e4b7e5c3e3bfa9dc8af75ff6d8633ad7070e1985e4
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.48-16.12.48-1
linuxlinux_kernel>= 0 < 6.16.6-16.16.6-1
linuxlinux_kernel>= 6.13 < 6.16.66.16.6
linuxlinux_kernel>= 6.9 < 6.12.466.12.46
msrccbl2_wireshark_3.4.14-1_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_msrc7.5HIGH
vendor_debian7.1LOW
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.