CVE-2025-68198 — Improper Update of Reference Count in Linux
Severity
3.2LOWOSV
No vectorEPSS
0.0%
top 90.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 16
Latest updateApr 9
Description
In the Linux kernel, the following vulnerability has been resolved:
crash: fix crashkernel resource shrink
When crashkernel is configured with a high reservation, shrinking its
value below the low crashkernel reservation causes two issues:
1. Invalid crashkernel resource objects
2. Kernel crash if crashkernel shrinking is done twice
For example, with crashkernel=200M,high, the kernel reserves 200MB of high
memory and some default low memory (say 256MB). The reservation appears
as:
cat /proc…
Affected Packages6 packages
▶CVEListV5linux/linux16c6006af4d4e70ecef93977a5314409d931020b — f01f9c348d76d40bf104a94449e3ce4057fdefee+4