CVE-2025-71304
Description
A flaw was found in the Linux kernel's Smack module. A local user with privileges to modify Smack's Domain of Interpretation (DOI) values could cause a denial of service. By writing a previously used DOI value to /smack/doi, networking for non-ambient labels becomes disabled. This prevents network communication for processes operating under specific security contexts, leading to a denial of service for affected applications.
Understanding the Weakness (CWE)
Integrity,Other
Technical Impact: Varies by Context; Unexpected State
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.