CVE-2025-68307

Source
https://cve.org/CVERecord?id=CVE-2025-68307
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68307.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-68307
Downstream
Related
Published
2025-12-16T15:06:24.271Z
Modified
2026-03-20T12:46:22.065602Z
Summary
can: gs_usb: gs_usb_xmit_callback(): fix handling of failed transmitted URBs
Details

In the Linux kernel, the following vulnerability has been resolved:

can: gsusb: gsusbxmitcallback(): fix handling of failed transmitted URBs

The driver lacks the cleanup of failed transfers of URBs. This reduces the number of available URBs per error by 1. This leads to reduced performance and ultimately to a complete stop of the transmission.

If the sending of a bulk URB fails do proper cleanup: - increase netdev stats - mark the echo_sbk as free - free the driver's context and do accounting - wake the send queue

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/68xxx/CVE-2025-68307.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d08e973a77d128b25e01a08c34d89593fdf222da
Fixed
f7a5560675bd85efaf16ab01a43053670ff2b000
Fixed
1a588c40a422a3663a52f1c5535e8fb6b044167d
Fixed
4a82072e451eacf24fc66a445e906f5095d215db
Fixed
9c8eb33b7008178b6ce88aa7593d12063ce60ca3
Fixed
516a0cd1c03fa266bb67dd87940a209fd4e53ce7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68307.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.16.0
Fixed
6.1.159
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.119
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.61
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.11

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68307.json"