CVE-2025-40135
In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU in ip6_xmit() Use RCU in ip6_xmit() in order to use dst_dev_rcu() to prevent possible UAF.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.1
- CVSS vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS probability
- 0.55%
- Published
- 2025-11-12
- Last modified
- 2026-09-08
Affected products
- Linux Linux
- Linux Linux
- Linux Linux
- Linux Linux
- Linux Linux
- Linux Linux
- Linux Linux
- Linux Linux