CVE-2025-40215 - xfrm: delete x->tunnel as we delete x

CVE-2025-40215 - xfrm: delete x->tunnel as we delete x

CVE ID : CVE-2025-40215 Published : Dec. 4, 2025, 1:15 p.m. | 1 hour, 31 minutes ago Description : In the Linux kernel, the following vulnerability has been resolved: xfrm: delete x->tunnel as we delete x The ipcomp fallback tunnels currently get deleted (from the various lists and hashtables) as the last user state that needed that fallback is destroyed (not deleted). If a reference to that user state still exists, the fallback state will remain on the hashtables/lists, triggering the WARN in xfrm_state_fini. Because of those remaining references, the fix in commit f75a2804da39 (

CVE Details

Published
Dec. 4, 2025
Affected Product: Linux

Source: Telegram CVE Monitor