CVE-2025-39695
MEDIUMLinux Kernel 6.10-6.12.43, 6.13-6.16.3, 6.17 - Use-After-Free in RDMA/rxe SKB Handling
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Flush delayed SKBs while releasing RXE resources When skb packets are sent out, these skb packets still depends on the rxe resources, for example, QP, sk, when these packets are destroyed. If these rxe resources are released when the skb packets are destroyed, the call traces will appear. To avoid skb packets hang too long time in some network devices, a timestamp is added when these skb packets are created. If these skb packets hang too long time in network devices, these network devices can free these skb packets to release rxe resources.
References (3)
Core 3
Scores
CVSS v3
5.5
EPSS
0.0014
EPSS Percentile
4.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
Status
published
Products (12)
linux/Kernel
6.10.0 - 6.12.44linux
linux/Kernel
6.13.0 - 6.16.4linux
Linux/Linux
< 6.10
Linux/Linux
1a633bdc8fd9e9e4a9f9a668ae122edfc5aacc86 - 3c3e9a9f2972b364e8c2cfbfdeb23c6d6be4f87f
Linux/Linux
1a633bdc8fd9e9e4a9f9a668ae122edfc5aacc86 - 732d4bd7b78a2752ad43cc39287ef41893c5eee2
Linux/Linux
1a633bdc8fd9e9e4a9f9a668ae122edfc5aacc86 - 8ead139a8edef485cc36d3a792e2ae5dd538339a
Linux/Linux
6.10
Linux/Linux
6.12.44 - 6.12.*
Linux/Linux
6.16.4 - 6.16.*
Linux/Linux
6.17
... and 2 more
Published
Sep 05, 2025
Tracked Since
Feb 18, 2026