PT-2025-37331 · Linux+4 · Linux Kernel+4

Published

2025-01-01

·

Updated

2026-04-20

·

CVE-2025-39797

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: The Linux kernel contains a flaw related to the handling of Security Parameter Index (SPI) values within the XFRM framework. Specifically, the xfrm alloc spi() function may return success even when a requested SPI is already in use, leading to duplicate SPI assignments for inbound Security Associations (SAs). This occurs when SAs are differentiated only by their destination addresses. This inconsistency during SPI lookups can cause packet processing failures and packet drops, violating RFC 4301 section 4.4.2, which states that a unicast SA is uniquely identified by the SPI and protocol for inbound processing. The issue is consistently reproducible with a restricted SPI range. The xfrm spi hash() lookup function computes a hash using the destination address, protocol, and family, potentially leading to incorrect lookups when duplicate SPIs exist with different destination addresses.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

AZL-67334
AZL-70760
BDU:2026-02247
CVE-2025-39797
ECHO-BCCE-A12D-8211
OESA-2026-1341
OPENSUSE-SU-2025:20081-1
OPENSUSE-SU-2025:20091-1
SUSE-SU-2025:03600-1
SUSE-SU-2025:03601-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:03633-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:21040-1
SUSE-SU-2025:21052-1
SUSE-SU-2025:21056-1
SUSE-SU-2025:21064-1
SUSE-SU-2025:21074-1
SUSE-SU-2025:21080-1
SUSE-SU-2025:21139-1
SUSE-SU-2025:21147-1
SUSE-SU-2025:21179-1
SUSE-SU-2025:21180-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:3725-1
SUSE-SU-2025:3751-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4111-1
SUSE-SU-2025:4128-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4139-1
SUSE-SU-2025:4140-1
SUSE-SU-2025:4141-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4301-1
SUSE-SU-2025:4320-1
USN-8028-1
USN-8028-2
USN-8028-3
USN-8028-4
USN-8028-5
USN-8028-6
USN-8028-7
USN-8028-8
USN-8031-1
USN-8031-2
USN-8031-3
USN-8052-1
USN-8052-2
USN-8074-1
USN-8074-2
USN-8126-1

Affected Products

Debian
Linuxmint
Linux Kernel
Suse
Ubuntu