ThreatCluster

Multiple CVEs Addressed in Networking Code Fixes

First seen 18 Feb 2026, 09:15 UTC Api.Msrc.Microsoft 41

Article Content

Browse articles
ThreatCluster

Two vulnerabilities in networking code have been published, affecting the Linux kernel. CVE-2025-39677, published on September 5, 2025, addresses backlog accounting issues, while CVE-2025-37798, published on May 2, 2025, removes a specific check in the codel queue discipline. These vulnerabilities may impact systems utilizing these networking components.

Timeline

2025-05-02
CVE-2025-37798 published
2025-09-05
CVE-2025-39677 published
2026-02-18
Information published regarding CVEs