CVE-2025-68303

Updated on 16 Dec 2025

Severity

Awaiting Analysis

Details

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel: punit_ipc: fix memory corruption This passes the address of the pointer “&punit_ipcdev” when the intent was to pass the pointer itself “punit_ipcdev” (without the ampersand). This means that the: complete(&ipcdev->cmd_complete); in intel_punit_ioc() will write to a wrong memory address corrupting it.

Details

KernelCare state

Live-patch status from KernelCare for each operating system.

Operating system Status Covered kernels
Debian 12 Planned
Debian 13 Will Not Fix
Ubuntu 22.04 Planned
Ubuntu 22.04 AWS Planned
Ubuntu 24.04 Planned
Ubuntu 24.04 AWS Planned