Home

Description

In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU in ip6_xmit() Use RCU in ip6_xmit() in order to use dst_dev_rcu() to prevent possible UAF.

PUBLISHED Reserved 2025-04-16 | Published 2025-11-12 | Updated 2025-12-01 | Assigner Linux

Product status

Default status
unaffected

4a6ce2b6f2ecabbddcfe47e7cf61dd0f00b10e36 (git) before f7f9e924f23684b4b23cd9f976cceab24a968e34
affected

4a6ce2b6f2ecabbddcfe47e7cf61dd0f00b10e36 (git) before 9085e56501d93af9f2d7bd16f7fcfacdde47b99c
affected

Default status
affected

4.13
affected

Any version before 4.13
unaffected

6.17.3 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/f7f9e924f23684b4b23cd9f976cceab24a968e34

git.kernel.org/...c/9085e56501d93af9f2d7bd16f7fcfacdde47b99c

cve.org (CVE-2025-40135)

nvd.nist.gov (CVE-2025-40135)

Download JSON