cbcvebase.
CVE-2025-68210
published 2025-12-16

CVE-2025-68210: In the Linux kernel, the following vulnerability has been resolved: erofs: avoid infinite loop due to incomplete zstd-compressed data Currently, the…

PriorityP420
EPSS
0.18%
7.4th percentile
In the Linux kernel, the following vulnerability has been resolved: erofs: avoid infinite loop due to incomplete zstd-compressed data Currently, the decompression logic incorrectly spins if compressed data is truncated in crafted (deliberately corrupted) images.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.9-1 (forky)linux 6.17.9-1 (forky)
linuxlinux
linuxlinux>= 7c35de4df1056a5a1fb4de042197b8f5b1033b61 < 4d0e0bb1908acac5b27d30b45c450e8ead97eb004d0e0bb1908acac5b27d30b45c450e8ead97eb00
linuxlinux>= 7c35de4df1056a5a1fb4de042197b8f5b1033b61 < 1f86d73a0afe43b6a85d2aa8207853350b7e21111f86d73a0afe43b6a85d2aa8207853350b7e2111
linuxlinux>= 7c35de4df1056a5a1fb4de042197b8f5b1033b61 < f2a12cc3b97f062186568a7b94ddb7aa2ef68140f2a12cc3b97f062186568a7b94ddb7aa2ef68140
linuxlinux_kernel>= 0 < 6.12.63-16.12.63-1
linuxlinux_kernel>= 0 < 6.17.9-16.17.9-1
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 6.10.0 < 6.12.596.12.59
linuxlinux_kernel>= 6.13.0 < 6.17.96.17.9
ubuntulinux-aws
ubuntulinux-oracle
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.