CVE-2025-68795: ethtool: Avoid overflowing userspace buffer on stats query
Published Jan 13, 2026
·Updated
ethtool: Avoid overflowing userspace buffer on stats query
Affected Software
2 affected componentsFixes available
linux_kernel
Microsoft azl3 kernel 6.6.119.3-3
Event History
Jan 13, 2026
CVE Published
via MITRE·03:29 PM
Data Sourced
via MITRE·03:29 PM
DescriptionSeverity
Data Sourced
via NVD·04:16 PM
DescriptionSeverity
Jan 15, 2026
Data Sourced
via Microsoft·09:04 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·09:04 AM
Affected Software
Updated
via Microsoft·09:04 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-68795?
CVE-2025-68795 is classified as a high severity vulnerability due to the potential for a buffer overflow, which can lead to system crashes or arbitrary code execution.
2
How do I fix CVE-2025-68795?
To fix CVE-2025-68795, update your Linux kernel to the latest stable version where the vulnerability has been patched.
3
What systems are affected by CVE-2025-68795?
CVE-2025-68795 affects various versions of the Linux kernel that utilize the ethtool command for network statistics.
4
What impact does CVE-2025-68795 have on users?
The impact of CVE-2025-68795 includes the risk of buffer overflow that could allow attackers to crash the system or execute arbitrary code.
5
Is CVE-2025-68795 exploitable remotely?
CVE-2025-68795 may be exploitable remotely if the affected service is exposed to untrusted networks, making it a serious concern for network security.