HomeDefectsLIN1025-15991
Fixed

LIN1025-15991 : Security Advisory - linux - CVE-2026-53002

Created: Jun 25, 2026    Updated: Jul 31, 2026
Resolved Date: Jul 31, 2026
Found In Version: 10.25.33.2
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:  netfilter: conntrack: remove sprintf usage  Replace it with scnprintf, the buffer sizes are expected to be large enough to hold the result, no need for snprintf+overflow check.  Increase buffer size in mangle_content_len() while at it.  BUG: KASAN: stack-out-of-bounds in vsnprintf+0xea5/0x1270 Write of size 1 at addr [..]  vsnprintf+0xea5/0x1270  sprintf+0xb1/0xe0  mangle_content_len+0x1ac/0x280  nf_nat_sdp_session+0x1cc/0x240  process_sdp+0x8f8/0xb80  process_invite_request+0x108/0x2b0  process_sip_msg+0x5da/0xf50  sip_help_tcp+0x45e/0x780  nf_confirm+0x34d/0x990  [..]