CVE-2025-68744

Source
https://cve.org/CVERecord?id=CVE-2025-68744
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68744.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-68744
Downstream
Related
Published
2025-12-24T12:09:40.839Z
Modified
2026-03-12T04:31:54.515365Z
Summary
bpf: Free special fields when update [lru_,]percpu_hash maps
Details

In the Linux kernel, the following vulnerability has been resolved:

bpf: Free special fields when update [lru_,]percpu_hash maps

As [lru_,]percpuhash maps support BPFKPTR_{REF,PERCPU}, missing calls to 'bpfobjfreefields()' in 'pcpucopyvalue()' could cause the memory referenced by BPFKPTR_{REF,PERCPU} fields to be held until the map gets freed.

Fix this by calling 'bpfobjfreefields()' after 'copymapvalue,_long' in 'pcpucopy_value()'.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/68xxx/CVE-2025-68744.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
65334e64a493c6a0976de7ad56bf8b7a9ff04b4a
Fixed
994d6303ed0b84cbc795bb5becf7ed6de40d3f3c
Fixed
3bf1378747e251571e0de15e7e0a6bf2919044e7
Fixed
96a5cb7072cabbac5c66ac9318242c3bdceebb68
Fixed
4a03d69cece145e4fb527464be29c3806aa3221e
Fixed
6af6e49a76c9af7d42eb923703e7648cb2bf401a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68744.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.4.0
Fixed
6.6.120
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.63
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.13
Type
ECOSYSTEM
Events
Introduced
6.18.0
Fixed
6.18.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-68744.json"