CVE-2025-39702

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-39702
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39702.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-39702
Downstream
Related
Published
2025-09-05T17:21:08.674Z
Modified
2025-11-28T02:35:01.788132Z
Summary
ipv6: sr: Fix MAC comparison to be constant-time
Details

In the Linux kernel, the following vulnerability has been resolved:

ipv6: sr: Fix MAC comparison to be constant-time

To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/39xxx/CVE-2025-39702.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
bf355b8d2c30a289232042cacc1cfaea4923936c
Fixed
3b348c9c8d2ca2c67559ffd0e258ae7e1107d4f0
Fixed
86b6d34717fe0570afce07ee79b8eeb40341f831
Fixed
3ddd55cf19ed6cc62def5e3af10c2a9df1b861c3
Fixed
b3967c493799e63f648e9c7b6cb063aa2aed04e7
Fixed
f7878d47560d61e3f370aca3cebb8f42a55b990a
Fixed
a458b2902115b26a25d67393b12ddd57d1216aaa

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
5.15.190
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.149
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.103
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.44
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.16.4