In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blamed commit missed that vcc_destroy_socket() calls clip_push() with a NULL skb. If clip_devs is NULL, clip_push() then crashes when reading skb->truesize.
2025-07-09T11:15:27.310
2025-12-18T17:08:17.267
Analyzed
416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVSSv3.1: 5.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | linux | linux_kernel | < 5.10.240 | Yes |
| Operating System | linux | linux_kernel | < 5.15.187 | Yes |
| Operating System | linux | linux_kernel | < 6.1.143 | Yes |
| Operating System | linux | linux_kernel | < 6.6.96 | Yes |
| Operating System | linux | linux_kernel | < 6.12.36 | Yes |
| Operating System | linux | linux_kernel | < 6.15.5 | Yes |
| Operating System | linux | linux_kernel | 5.7 | Yes |
| Operating System | linux | linux_kernel | 5.7 | Yes |
| Operating System | linux | linux_kernel | 5.7 | Yes |
| Operating System | linux | linux_kernel | 5.7 | Yes |
| Operating System | linux | linux_kernel | 6.16 | Yes |
| Operating System | linux | linux_kernel | 6.16 | Yes |
| Operating System | linux | linux_kernel | 6.16 | Yes |
| Operating System | debian | debian_linux | 11.0 | Yes |