CVE-2025-68763
Linux Kernel 6.5.0-6.18.1 Buffer Overflow via sg_nents_for_len
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: crypto: starfive - Correctly handle return of sg_nents_for_len The return value of sg_nents_for_len was assigned to an unsigned long in starfive_hash_digest, causing negative error codes to be converted to large positive integers. Add error checking for sg_nents_for_len and return immediately on failure to prevent potential buffer overflows.
References (5)
Core 5
Core References
Scores
EPSS
0.0003
EPSS Percentile
10.5%
Details
Status
published
Products (16)
linux/Kernel
6.13.0 - 6.17.13linux
linux/Kernel
6.18.0 - 6.18.2linux
linux/Kernel
6.5.0 - 6.6.120linux
linux/Kernel
6.7.0 - 6.12.63linux
Linux/Linux
< 6.5
Linux/Linux
6.12.63 - 6.12.*
Linux/Linux
6.17.13 - 6.17.*
Linux/Linux
6.18.2 - 6.18.*
Linux/Linux
6.19
Linux/Linux
6.5
... and 6 more
Published
Jan 05, 2026
Tracked Since
Feb 18, 2026