CVE-2025-68317

Updated on 16 Dec 2025

Severity

5.5 Medium severity

Details

CVSS score
5.5

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved: io_uring/zctx: check chained notif contexts Send zc only links ubuf_info for requests coming from the same context. There are some ambiguous syz reports, so let’s check the assumption on notification completion. A flaw was found in the Linux kernel. A local attacker could exploit an improper handling of chained notification contexts within the io_uring/zctx component. This could lead to a denial of service (DoS) on the system.

Details

KernelCare state

Live-patch status from KernelCare for each operating system.

Operating system Status Covered kernels
Debian 13 Will Not Fix