CVE-2025-68192
Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
16/12/2025
Última modificación:
16/12/2025
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
net: usb: qmi_wwan: initialize MAC header offset in qmimux_rx_fixup<br />
<br />
Raw IP packets have no MAC header, leaving skb->mac_header uninitialized.<br />
This can trigger kernel panics on ARM64 when xfrm or other subsystems<br />
access the offset due to strict alignment checks.<br />
<br />
Initialize the MAC header to prevent such crashes.<br />
<br />
This can trigger kernel panics on ARM when running IPsec over the<br />
qmimux0 interface.<br />
<br />
Example trace:<br />
<br />
Internal error: Oops: 000000009600004f [#1] SMP<br />
CPU: 0 UID: 0 PID: 0 Comm: swapper/0 Not tainted 6.12.34-gbe78e49cb433 #1<br />
Hardware name: LS1028A RDB Board (DT)<br />
pstate: 60000005 (nZCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)<br />
pc : xfrm_input+0xde8/0x1318<br />
lr : xfrm_input+0x61c/0x1318<br />
sp : ffff800080003b20<br />
Call trace:<br />
xfrm_input+0xde8/0x1318<br />
xfrm6_rcv+0x38/0x44<br />
xfrm6_esp_rcv+0x48/0xa8<br />
ip6_protocol_deliver_rcu+0x94/0x4b0<br />
ip6_input_finish+0x44/0x70<br />
ip6_input+0x44/0xc0<br />
ipv6_rcv+0x6c/0x114<br />
__netif_receive_skb_one_core+0x5c/0x8c<br />
__netif_receive_skb+0x18/0x60<br />
process_backlog+0x78/0x17c<br />
__napi_poll+0x38/0x180<br />
net_rx_action+0x168/0x2f0
Impacto
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/0aabccdcec1f4a36f95829ea2263f845bbc77223
- https://git.kernel.org/stable/c/4e6b9004f01d0fef5b19778399bc5bf55f8c2d71
- https://git.kernel.org/stable/c/8ab3b8f958d861a7f725a5be60769106509fbd69
- https://git.kernel.org/stable/c/ae811175cea35b03ac6d7c910f43a82a43b9c3b3
- https://git.kernel.org/stable/c/bf527b80b80a282ab5bf1540546211fc35e5cd42
- https://git.kernel.org/stable/c/d693c47fb902b988f5752182e4f7fbde5e6dcaf9
- https://git.kernel.org/stable/c/dd03780c29f87c26c0e0bb7e0db528c8109461fb
- https://git.kernel.org/stable/c/e120f46768d98151ece8756ebd688b0e43dc8b29



