CVE-2025-37798

Updated: 2025-11-10 02:52:50.176757

Description:

In the Linux kernel, the following vulnerability has been resolved: codel: remove sch->q.qlen check before qdisc_tree_reduce_backlog() After making all ->qlen_notify() callbacks idempotent, now it is safe to remove the check of qlen!=0 from both fq_codel_dequeue() and codel_qdisc_dequeue().


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.8 HIGH Released 2025-11-11 13:43:37 Released in 5.14.0-284.1101.el9_2.tuxcare.7.els19
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1759431860 2025-10-15 20:22:47
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH Already Fixed 2025-11-12 11:27:04
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH Already Fixed 2025-11-12 11:27:04
CentOS Stream 8 ELS kernel 4.18.0 7.8 HIGH Already Fixed 2025-11-12 11:27:02
CloudLinux 7 ELS kernel 3.10.0 7.8 HIGH Needs Triage 2025-11-10 06:25:10
Oracle Linux 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1759431869 2025-10-02 23:03:55
Oracle Linux 7 ELS kernel-uek 5.4.17 7.8 HIGH Needs Triage 2025-11-10 05:30:50
RHEL 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1757922878 2025-09-16 00:40:06
TuxCare 9.6 ESU kernel 5.14.0 7.8 HIGH Needs Triage 2025-11-10 06:25:06
Total: 14