ThreatCluster

Multiple CVEs Addressed in Network Scheduler Component

First seen 18 Feb 2026, 12:23 UTC Api.Msrc.Microsoft 46

Article Content

Browse articles
ThreatCluster

Three vulnerabilities in the network scheduler component have been documented, affecting the handling of gso_skb and perturb period configurations. The vulnerabilities, identified as CVE-2025-38115, CVE-2025-37992, and CVE-2025-38193, were published in mid-2025 and have been addressed in recent updates.

Timeline

2025-05-26
CVE-2025-37992 published
2025-07-03
CVE-2025-38115 published
2025-07-04
CVE-2025-38193 published
2026-02-18
Information published on CVE-2025-38115
2026-02-18
Information published on CVE-2025-37992
2026-02-18
Information published on CVE-2025-38193