In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: reject mismatching sum of field_len with set key length
The field length description provides the length of each separated key
field in the concatenation, each field gets rounded up to 32-bits to
calculate the pipapo rule width from pipapo_init(). The set key length
provides the total size of the key aligned to 32-bits.
Register-based arithmetics still allows for combining mismatching set
key length and field length description, eg. set key length 10 and field
description [ 5, 4 ] leading to pipapo width of 12.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
History
                    03 Nov 2025, 21:19
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
03 Nov 2025, 20:17
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
30 Oct 2025, 21:39
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://git.kernel.org/stable/c/1b9335a8000fb70742f7db10af314104b6ace220 - Patch | |
| References | () https://git.kernel.org/stable/c/2ac254343d3cf228ae0738b2615fedf85d000752 - Patch | |
| References | () https://git.kernel.org/stable/c/49b7182b97bafbd5645414aff054b4a65d05823d - Patch | |
| References | () https://git.kernel.org/stable/c/5083a7ae45003456c253e981b30a43f71230b4a3 - Patch | |
| References | () https://git.kernel.org/stable/c/6b467c8feac759f4c5c86d708beca2aa2b29584f - Patch | |
| References | () https://git.kernel.org/stable/c/82e491e085719068179ff6a5466b7387cc4bbf32 - Patch | |
| References | () https://git.kernel.org/stable/c/ab50d0eff4a939d20c37721fd9766347efcdb6f6 - Patch | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 5.5  | 
| CWE | NVD-CWE-noinfo | |
| First Time | 
        
        Linux
         Linux linux Kernel  | 
13 Mar 2025, 13:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
        
        
  | 
|
| Summary | 
        
        
  | 
06 Mar 2025, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-03-06 16:15
Updated : 2025-11-03 21:19
NVD link : CVE-2025-21826
Mitre link : CVE-2025-21826
CVE.ORG link : CVE-2025-21826
JSON object : View
Products Affected
                linux
- linux_kernel
 
CWE
                