Vulnerabilities
CVE-2025-40215 - xfrm: delete x->tunnel as we delete x
CVE ID : CVE-2025-40215 Published : Dec. 4, 2025, 1:15 p.m. | 1 hour, 31 minutes ago Description : In the Linux kernel, the following vulnerability has been resolved: xfrm: delete x->tunnel as we delete x The ipcomp fallback tunnels currently get deleted (from the various lists and hashtables) as the last user state that needed that fallback is destroyed (not deleted). If a reference to that user state still exists, the fallback state will remain on the hashtables/lists, triggering the WARN in xfrm_state_fini. Because of those remaining references, the fix in commit f75a2804da39 (
Source: Telegram CVE Monitor