PT-2025-16745 · Linux+6 · Linux Kernel+6

Published

2025-03-25

·

Updated

2026-05-07

·

CVE-2025-22105

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.14.0-rc4
Description A vulnerability in the Linux kernel has been resolved. The issue is related to the bonding mode and xdp program attachment. When the namespace is deleted, the dev xdp uninstall function is called to remove the xdp program on the bond device, and the bond xdp set function checks the bond mode. If the bond mode is changed after attaching the xdp program, a warning may occur. Some bond modes, such as broadcast, do not support native xdp. The vulnerability can be triggered by performing certain operations, including adding a network namespace, creating a bond link, setting the bond mode, and deleting the namespace.
Recommendations For Linux kernel versions prior to 6.14.0-rc4, consider updating to a newer version to resolve the issue. As a temporary workaround, avoid changing the bond mode after attaching an xdp program to minimize the risk of exploitation. Additionally, restrict access to the vulnerable bond modes, such as broadcast, to prevent potential attacks.

Exploit

Fix

Improper Resource Release

Weakness Enumeration

Related Identifiers

ALT-PU-2025-14626
ALT-PU-2025-14640
AZL-62642
AZL-69593
BDU:2026-02295
CVE-2025-22105
ECHO-190A-2CC0-6F09
OESA-2025-2077
OESA-2025-2078
OESA-2025-2079
OPENSUSE-SU-2025_01614-1
OPENSUSE-SU-2025_01707-1
RHSA-2025:20095
SUSE-SU-2025:01614-1
SUSE-SU-2025:01707-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:01951-1
SUSE-SU-2025:01964-1
SUSE-SU-2025:01967-1
SUSE-SU-2025:20343-1
SUSE-SU-2025:20344-1
SUSE-SU-2025:20354-1
SUSE-SU-2025:20355-1
SUSE-SU-2025_01614-1
SUSE-SU-2025_01707-1
SUSE-SU-2025_01951-1
SUSE-SU-2025_01964-1
SUSE-SU-2025_01967-1
USN-7594-1
USN-7594-2
USN-7594-3
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8100-1
USN-8125-1
USN-8126-1
USN-8165-1
USN-8261-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu