CVE Database
/

CVE-2025-68284

Back to search

CVE-2025-68284

Published: Dec 16, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: libceph: prevent potential out-of-bounds writes in handle_auth_session_key() The len field originates from untrusted network packets. Boundary checks have been added to prevent potential out-of-bounds writes when decrypting the connection secret or processing service tickets. [ idryomov: changelog ]

VendorProductVersions

Linux

Linux

affected
285ea34fc876aa0a2c5e65d310c4a41269e2e5f2 - < f22c55a20a2d9ffbbac57408d5d488cef8201e9d
affected
285ea34fc876aa0a2c5e65d310c4a41269e2e5f2 - < 8dfcc56af28cffb8f25fb9be37b3acc61f2a3d09
affected
285ea34fc876aa0a2c5e65d310c4a41269e2e5f2 - < ccbccfba25e9aa395daaea156b5e7790910054c4
affected
285ea34fc876aa0a2c5e65d310c4a41269e2e5f2 - < 5ef575834ca99f719d7573cdece9df2fe2b72424
affected
285ea34fc876aa0a2c5e65d310c4a41269e2e5f2 - < 6920ff09bf911bc919cd7a6b7176fbdd1a6e6850

+1 more versions

Linux

Linux

affected
5.11
unaffected
0 - < 5.11
unaffected
5.15.197 - <= 5.15.*
unaffected
6.1.159 - <= 6.1.*
unaffected
6.6.119 - <= 6.6.*

+3 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now