cbcvebase.
CVE-2025-39931
published 2025-10-04

CVE-2025-39931: In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Set merge to zero early in af_alg_sendmsg If an error causes…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.7th percentile
In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Set merge to zero early in af_alg_sendmsg If an error causes af_alg_sendmsg to abort, ctx->merge may contain a garbage value from the previous loop. This may then trigger a crash on the next entry into af_alg_sendmsg when it attempts to do a merge that can't be done. Fix this by setting ctx->merge to zero near the start of the loop.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
debianlinux-6.1< linux 6.1.158-1 (bookworm)linux 6.1.158-1 (bookworm)
linuxlinux
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < 28f6f37abca7c5c9eb3959c66310f1d4d98b8aaf28f6f37abca7c5c9eb3959c66310f1d4d98b8aaf
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < db2b42425dfbde4983b0c20fb7cfa05f70e6a745db2b42425dfbde4983b0c20fb7cfa05f70e6a745
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < 6241b9e2809b12da9130894cf5beddf088dc1b8a6241b9e2809b12da9130894cf5beddf088dc1b8a
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < 2374c11189ef704a3e4863646369f1b8e6a27d712374c11189ef704a3e4863646369f1b8e6a27d71
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < 24c1106504c625fabd3b7229611af617b4c27ac724c1106504c625fabd3b7229611af617b4c27ac7
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < 045ee26aa3920a47ec46d7fcb302420bf01fd753045ee26aa3920a47ec46d7fcb302420bf01fd753
linuxlinux>= 8ff590903d5fc7f5a0a988c38267a3d08e6393a2 < 9574b2330dbd2b5459b74d3b5e9619d39299fc6f9574b2330dbd2b5459b74d3b5e9619d39299fc6f
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.158-16.1.158-1
linuxlinux_kernel>= 0 < 6.12.57-16.12.57-1
linuxlinux_kernel>= 0 < 6.16.9-16.16.9-1
linuxlinux_kernel>= 0 < 6.8.0-106.1066.8.0-106.106
linuxlinux_kernel>= 2.6.38 < 6.1.1546.1.154
linuxlinux_kernel>= 6.13 < 6.16.96.16.9
linuxlinux_kernel>= 6.2 < 6.6.1086.6.108
linuxlinux_kernel>= 6.7 < 6.12.496.12.49
msrcazl3_kernel_6.6.104.2-4_on_azure_linux_3.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.