Linux Kernel Vulnerability Affecting Networking Driver from Broadcom
CVE-2025-37873
Summary
A vulnerability in the Linux kernel's networking driver allows for buffer overflow under certain error conditions, particularly when DMA mapping fails. The issue arises from a failure to properly mask the transmission production index, leading to potential system crashes. This vulnerability highlights the importance of following error handling best practices in driver development. Affected systems running the relevant kernel versions should apply the available patches to mitigate this risk.
Affected Version(s)
Linux 6d1add95536bafe585c500ad8114af7ed4225a0f < 21e70f694bc0dcb40174b0940cc52a7769fc19e0
Linux 6d1add95536bafe585c500ad8114af7ed4225a0f < 3742c55de00266fa7c8fd2c5d61a453d223a9cd1
Linux 6d1add95536bafe585c500ad8114af7ed4225a0f < 12f2d033fae957d84c2c0ce604d2a077e61fa2c0
References
Timeline
Vulnerability published
Vulnerability Reserved