In the Linux kernel, the following vulnerability has been resolved:
ipv4: start using dst_dev_rcu()
Change icmpv4_xrlim_allow(), ip_defrag() to prevent possible UAF.
Change ipmr_prepare_xmit(), ipmr_queue_fwd_xmit(), ip_mr_output(),
ipv4_neigh_lookup() to use lockdep enabled dst_dev_rcu().
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-10-28 12:15
Updated : 2026-09-14 12:17
NVD link : CVE-2025-40074
Mitre link : CVE-2025-40074
CVE.ORG link : CVE-2025-40074
JSON object : View
Products Affected
No product.
CWE
No CWE.
