Linux Kernel CAN ID Sanitation Vulnerability in ISOTP Component

Vulnerability

A vulnerability in the Linux kernel's ISOTP (Inter-Segment Transport Protocol) component has been addressed. The issue arose because the isotp_bind() function did not properly sanitize CAN ID values before performing address checks. This flaw allowed for the creation of a state machine status that could not be reached with a compliant CAN ID configuration. The vulnerability was triggered using specific CAN ID values that, when processed, effectively reduced to an 11-bit CAN ID of 0x001 for both sending and receiving.

Impact

Exploitation of this vulnerability could lead to improper handling of CAN IDs, potentially causing communication issues or allowing for unintended interactions within the CAN network.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.