CVE-2025-71304

Description

A flaw was found in the Linux kernel's Smack module. A local user with privileges to modify Smack's Domain of Interpretation (DOI) values could cause a denial of service. By writing a previously used DOI value to /smack/doi, networking for non-ambient labels becomes disabled. This prevents network communication for processes operating under specific security contexts, leading to a denial of service for affected applications.

Understanding the Weakness (CWE)

Integrity,Other

Technical Impact: Varies by Context; Unexpected State

Frequently Asked Questions

Want to get errata notifications? Sign up here.