Description

In the Linux kernel, the following vulnerability has been resolved: smack: fix bug: unprivileged task can create labels If an unprivileged task is allowed to relabel itself (/smack/relabel-self is not empty), it can freely create new labels by writing their names into own /proc/PID/attr/smack/current This occurs because do_setattr() imports the provided label in advance, before checking "relabel-self" list. This change ensures that the "relabel-self" list is checked before importing the label.

INFO

Published Date :

2025-12-24T10:33:15.347Z

Last Modified :

2026-02-09T08:32:29.776Z

Source :

Linux
AFFECTED PRODUCTS

The following products are affected by CVE-2025-68733 vulnerability.

Vendors Products
Linux
  • Linux Kernel

CVSS Vulnerability Scoring System