A vulnerability in Binder, a core subsystem of the Linux kernel, written in Rust

In the inter-process communication mechanism Binder, which is part of the Linux kernel 6.18 and written in Rust, a vulnerability (CVE-2025-68260) has been addressed. This issue was caused by a race condition during operations in unsafe blocks that directly interact with pointers to the previous and next list elements. When successfully exploited, the vulnerability in Binder leads to a crash and does not result in memory corruption.

Greg Kroah-Hartman, who is responsible for maintaining the stable branch of the Linux kernel, commented on this vulnerability that Rust is not a panacea for all security issues, but it does help to defend against a certain class of vulnerabilities. Notably, in addition to the vulnerability in Binder, yesterday, information about 159 vulnerabilities in various components of the Linux kernel written in C was also published.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster