CVE-2025-22107

Source
https://cve.org/CVERecord?id=CVE-2025-22107
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-22107.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-22107
Downstream
Related
Published
2025-04-16T14:12:55.109Z
Modified
2026-05-07T04:18:44.713505Z
Summary
net: dsa: sja1105: fix kasan out-of-bounds warning in sja1105_table_delete_entry()
Details

In the Linux kernel, the following vulnerability has been resolved:

net: dsa: sja1105: fix kasan out-of-bounds warning in sja1105tabledelete_entry()

There are actually 2 problems: - deleting the last element doesn't require the memmove of elements [i + 1, end) over it. Actually, element i+1 is out of bounds. - The memmove itself should move size - i - 1 elements, because the last element is out of bounds.

The out-of-bounds element still remains out of bounds after being accessed, so the problem is only that we touch it, not that it becomes in active use. But I suppose it can lead to issues if the out-of-bounds element is part of an unmapped page.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/22xxx/CVE-2025-22107.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6666cebc5e306f49a25bd20aa8c1cb8ef8950df5
Fixed
b52153da1f42e2f4d6259257a7ba027331671a93
Fixed
4584486cfcca24b7b586da3377eb3cffd48669ec
Fixed
031e00249e9e6bee72ba66701c8f83b45fc4b8a2
Fixed
59b97641de03c081f26b3a8876628c765b5faa25
Fixed
5f2b28b79d2d1946ee36ad8b3dc0066f73c90481

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-22107.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.2.0
Fixed
6.1.160
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.120
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.59
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.14.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-22107.json"