Description
In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.
References (8)
Scores
CVSS v3
7.0
EPSS
0.0002
EPSS Percentile
6.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-203
Status
published
Products (25)
debian/debian_linux
11.0
linux/Kernel
4.10.0 - 5.10.249linux
linux/Kernel
5.11.0 - 5.15.190linux
linux/Kernel
5.16.0 - 6.1.149linux
linux/Kernel
6.13.0 - 6.16.4linux
linux/Kernel
6.2.0 - 6.6.103linux
linux/Kernel
6.7.0 - 6.12.44linux
Linux/Linux
< 4.10
Linux/Linux
4.10
Linux/Linux
5.10.249 - 5.10.*
... and 15 more
Published
Sep 05, 2025
Tracked Since
Feb 18, 2026