CVE-2025-68792 is a vulnerability in the Linux kernel's tpm2-sessions component, specifically affecting how 'name_size' is handled without proper range checks, which could lead to memory corruption. While no specific affected products are listed, it impacts the Linux kernel. The vulnerability has a FAUCET Risk Score of 39/100, indicating a moderate severity, and its potential impact includes memory corruption due to out-of-bounds indexing. There is no information on active exploitation, nor are there publicly available exploit codes in Metasploit, Nuclei, or ExploitDB. However, the CVE has garnered significant community discussion with 11 mentions and has been covered in one media article, suggesting awareness and potential interest.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 6.10CNA affecteddefault affected | |
| Linux | Linux | >= 1085b8276bb4239daa7008f0dcd5c973e4bd690f, < 04a3aa6e8c5f878cc51a8a1c90b6d3c54079bc43, >= 1085b8276bb4239daa7008f0dcd5c973e4bd690f, < 47e676ce4d68f461dfcab906f6aeb254f7276deb, >= 1085b8276bb4239daa7008f0dcd5c973e4bd690f, < 6e9722e9a7bfe1bbad649937c811076acf86e1fdCNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
Linux kernel (Raspberry Pi) vulnerabilities
May 7, 2026Linux kernel vulnerabilities
May 7, 2026Linux kernel vulnerabilities
Apr 23, 2026Linux kernel (GCP) vulnerabilities
Apr 17, 2026Linux kernel vulnerabilities
Apr 16, 2026kernel: tpm2-sessions: Fix out of range indexing in name_size
Jan 13, 2026