Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2025-37963

Description

In the Linux kernel, the following vulnerability has been resolved:arm64: bpf: Only mitigate cBPF programs loaded by unprivileged usersSupport for eBPF programs loaded by unprivileged users is typicallydisabled. This means only cBPF programs need to be mitigated for BHB.In addition, only mitigate cBPF programs that were loaded by anunprivileged user. Privileged users can also load the same programvia eBPF, making the mitigation pointless.

POC

Reference

No PoCs from references.

Github

- https://github.com/runwhen-contrib/helm-charts

- https://github.com/w4zu/Debian_security