CVE-2025-68325 — Linux vulnerability
39 documents7 sources
Severity
7.8HIGHOSV
OSV7.2
No vectorEPSS
0.1%
top 79.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 18
Latest updateApr 17
Description
In the Linux kernel, the following vulnerability has been resolved:
net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop
In cake_drop(), qdisc_tree_reduce_backlog() is used to update the qlen
and backlog of the qdisc hierarchy. Its caller, cake_enqueue(), assumes
that the parent qdisc will enqueue the current packet. However, this
assumption breaks when cake_enqueue() returns NET_XMIT_CN: the parent
qdisc stops enqueuing current packet, leaving the tree qlen/backlog
accounting incons…
Affected Packages13 packages
▶CVEListV5linux/linuxde04ddd2980b48caa8d7e24a7db2742917a8b280 — a3f4e3de41a3f115db35276c6b186ccbc913934a+10