In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix overflow when accumulating packets Add a check to ensure that `x25_sock.fraglen` does not overflow. The `fraglen` also needs to be resetted when purging `fragment_queue` in `x25_clear_queues()`.
Update Linux/Linux to 96fc16370b0bceb289c7e0479bd0540b81e257aa; Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP to *; Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP to *; Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP to *; Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP to *; Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP to *; Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP to * if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scannet/x25: Fix overflow when accumulating packets affects Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (generic), Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (generic), Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (generic), Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (generic), Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP (generic), Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix overflow when accumulating packets Add a check to ensure that `x25_sock.fraglen` does not overflow. The `fraglen` also needs to be resetted when purging `fragment_queue` in `x25_clear_queues()`.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package |
|---|
In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix overflow when accumulating packets Add a check to ensure that `x25_sock.fraglen` does not overflow. The `fraglen` also needs to be resetted when purging `fragment_queue` in `x25_clear_queues()`.
Update Linux/Linux to 96fc16370b0bceb289c7e0479bd0540b81e257aa; Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP to *; Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP to *; Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP to *; Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP to *; Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP to *; Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP to * if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scannet/x25: Fix overflow when accumulating packets affects Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (generic), Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (generic), Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (generic), Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (generic), Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP (generic), Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFP (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix overflow when accumulating packets Add a check to ensure that `x25_sock.fraglen` does not overflow. The `fraglen` also needs to be resetted when purging `fragment_queue` in `x25_clear_queues()`.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package |
|---|
| Affected range |
|---|
| Fixed version |
|---|
| Linux/Linuxgeneric | >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <96fc16370b0bceb289c7e0479bd0540b81e257aa || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <798d613afb64b01a203f448fb0f43c37c6afe79d || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <6e568835ea54a3e1d08e310e34f95d434e739477 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <1734bd85c5e0a7a801295b729efb56b009cb8fc3 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <4e2d1bcef78d21247fe8fef13bc7ed95885df2b5 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <8c92969c197b91c134be27dc3afb64ab468853a9 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <f953f11ccf4afe6feb635c08145f4240d9a6b544 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <a1822cb524e89b4cd2cf0b82e484a2335496a6d9 | 96fc16370b0bceb289c7e0479bd0540b81e257aa, 798d613afb64b01a203f448fb0f43c37c6afe79d, 6e568835ea54a3e1d08e310e34f95d434e739477, 1734bd85c5e0a7a801295b729efb56b009cb8fc3, 4e2d1bcef78d21247fe8fef13bc7ed95885df2b5, 8c92969c197b91c134be27dc3afb64ab468853a9, f953f11ccf4afe6feb635c08145f4240d9a6b544, a1822cb524e89b4cd2cf0b82e484a2335496a6d9 |
|---|---|---|
| Linux/Linuxgeneric | 2.6.12 | Not reported |
| Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.6 <* | * |
| Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.5 <* | * |
| Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFPgeneric | >=V3.1.6 <* | * |
| Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFPgeneric | >=V3.1.5 <* | * |
| Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.6 <* | * |
| Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.5 <* | * |
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| Affected range |
|---|
| Fixed version |
|---|
| Linux/Linuxgeneric | >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <96fc16370b0bceb289c7e0479bd0540b81e257aa || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <798d613afb64b01a203f448fb0f43c37c6afe79d || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <6e568835ea54a3e1d08e310e34f95d434e739477 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <1734bd85c5e0a7a801295b729efb56b009cb8fc3 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <4e2d1bcef78d21247fe8fef13bc7ed95885df2b5 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <8c92969c197b91c134be27dc3afb64ab468853a9 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <f953f11ccf4afe6feb635c08145f4240d9a6b544 || >=1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 <a1822cb524e89b4cd2cf0b82e484a2335496a6d9 | 96fc16370b0bceb289c7e0479bd0540b81e257aa, 798d613afb64b01a203f448fb0f43c37c6afe79d, 6e568835ea54a3e1d08e310e34f95d434e739477, 1734bd85c5e0a7a801295b729efb56b009cb8fc3, 4e2d1bcef78d21247fe8fef13bc7ed95885df2b5, 8c92969c197b91c134be27dc3afb64ab468853a9, f953f11ccf4afe6feb635c08145f4240d9a6b544, a1822cb524e89b4cd2cf0b82e484a2335496a6d9 |
|---|---|---|
| Linux/Linuxgeneric | 2.6.12 | Not reported |
| Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.6 <* | * |
| Siemens/SIMATIC S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.5 <* | * |
| Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFPgeneric | >=V3.1.6 <* | * |
| Siemens/SIMATIC S7-1500 CPU 1518F-4 PN/DP MFPgeneric | >=V3.1.5 <* | * |
| Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.6 <* | * |
| Siemens/SIPLUS S7-1500 CPU 1518-4 PN/DP MFPgeneric | >=V3.1.5 <* | * |
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard