Linux vulnerability

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg Issuing two writes to the same af_alg socket is bogus as the data will be interleaved in an unpredictable fashion. Furthermore, concurrent writes may create inconsistencies in the internal socket state. Disallow this by adding a new ctx->write field that indiciates exclusive ownership for writing.

Published 13 Oct 2025Updated 18 Sep 202610 sources
CVSS 7.8 △ CISA KEV

Source timeline

CVE record published by NVDView source ↗
Added to CISA Known Exploited Vulnerabilities catalogView source ↗