PT-2025-14307 · Linux+10 · Linux Kernel+10

Published

2025-04-01

·

Updated

2026-04-20

·

CVE-2025-21926

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the udp gso segment function. The issue occurs when the socket reference is not properly removed after the skb destructor is removed, potentially leading to a kernel bug when the original skb is later orphaned. This can happen in a sequence of events involving OpenVSwitch, specifically when an OVS ACTION ATTR USERSPACE action precedes an OVS ACTION ATTR OUTPUT action. The vulnerability is fixed by removing the reference to the socket in udp gso segment.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:8643
BDU:2025-11777
CVE-2025-21926
DLA-4178-1
DLA-4193-1
DSA-5900-1
ECHO-73FF-5618-F034
INFSA-2025_8643
OESA-2025-1874
OESA-2025-1879
OESA-2025-2005
OESA-2025-2006
OPENSUSE-SU-2025_01614-1
OPENSUSE-SU-2025_01707-1
RHSA-2025:8643
RHSA-2025:8669
RHSA-2025_8643
SUSE-SU-2025:01600-1
SUSE-SU-2025:01614-1
SUSE-SU-2025:01707-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:01951-1
SUSE-SU-2025:01964-1
SUSE-SU-2025:01967-1
SUSE-SU-2025:20343-1
SUSE-SU-2025:20344-1
SUSE-SU-2025:20354-1
SUSE-SU-2025:20355-1
SUSE-SU-2025_01600-1
SUSE-SU-2025_01614-1
SUSE-SU-2025_01707-1
SUSE-SU-2025_01951-1
SUSE-SU-2025_01964-1
SUSE-SU-2025_01967-1
USN-7510-1
USN-7510-2
USN-7510-3
USN-7510-4
USN-7510-5
USN-7510-6
USN-7510-7
USN-7510-8
USN-7511-1
USN-7511-2
USN-7511-3
USN-7512-1
USN-7516-1
USN-7516-2
USN-7516-3
USN-7516-4
USN-7516-5
USN-7516-6
USN-7516-7
USN-7516-8
USN-7516-9
USN-7517-1
USN-7517-2
USN-7517-3
USN-7518-1
USN-7539-1
USN-7540-1
USN-7593-1
USN-7602-1
USN-7605-1
USN-7605-2
USN-7606-1
USN-7628-1
USN-7640-1
USN-7764-1
USN-7764-2
USN-7765-1
USN-7766-1
USN-7767-1
USN-7767-2
USN-7779-1
USN-7790-1
USN-7800-1
USN-7801-1
USN-7801-2
USN-7801-3
USN-7802-1
USN-7809-1

Affected Products

Almalinux
Astra Linux
Debian
Linuxmint
Linux Kernel
Openvswitch
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu