CVE-2025-37798: codel: remove sch->q.qlen check before qdisc_tree_reduce_backlog()
Published May 2, 2025
·Updated
codel: remove sch->q.qlen check before qdisctreereducebacklog()
Affected Software
14 affected componentsFixes available
Linux Foundation Linux Kernel
Linux Linux kernel>=3.5<5.4.297
Linux Linux kernel>=5.5<5.10.241
Linux Linux kernel>=5.11<5.15.190
Linux Linux kernel>=5.16<6.1.135
Linux Linux kernel>=6.2<6.6.88
Linux Linux kernel>=6.7<6.12.24
Linux Linux kernel>=6.13<6.13.12
Linux Linux kernel>=6.14<6.14.3
Linux Linux kernel=6.15-rc1
Debian Debian Linux=11.0
Microsoft azl3 kernel 6.6.85.1-4
Microsoft azl3 kernel 6.6.92.2-1
Microsoft cbl2 kernel 5.15.186.1-1
Event History
May 2, 2025
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
DescriptionSeverity
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityAffected Software
Jul 11, 2025
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-37798?
The severity of CVE-2025-37798 is classified as moderate due to the potential impact on the Linux kernel's functionality.
2
How do I fix CVE-2025-37798?
To fix CVE-2025-37798, update to the latest version of the Linux kernel where this vulnerability has been patched.
3
What is the impact of CVE-2025-37798 on Linux systems?
CVE-2025-37798 could lead to improper queue management in Linux systems, potentially affecting network performance.
4
Is CVE-2025-37798 actively exploited in the wild?
As of now, there is no evidence that CVE-2025-37798 is actively exploited in the wild.
5
Who is affected by CVE-2025-37798?
CVE-2025-37798 affects users of the Linux kernel, specifically those using configurations that involve the fq_codel queue discipline.